Senior Cyber Analyst

vor 2 Monaten


Sydney, Österreich TAL Vollzeit
Senior Cyber Analyst - Third Party Tech & Cyber Risk

TAL We offer flexibility by letting you tailor your cover to suit your individual needs. Quick and easy to apply. Get An Online Quote.

View company page

From the millions of Australians we protect, to those that make it happen every day at TAL, people really are what we’re all about.We want to grow with you. Achieve with you. And support you to do your best work. That's why we're focused on developing leadership, promoting diversity, rewarding excellence and retaining great talent.

We're always looking for people who want to go further with us. People who do what’s right, aim high, and work smart.Why not see where we can go?

Job Description

The Senior Cyber Analyst is part of the Third-Party Tech & Cyber Risk which is part of the Technology & Cyber Risk function within the Technology Business Unit. This role will support the manager in aligning to the strategy and execution of our third-party technology risk management, third party cyber security management, relevant technology and cyber clauses within the contractual management process and overall governance of technology third parties. This role is responsible for adhering to and identifying improvements to relevant frameworks, policies, practices and controls to maintain the risk posture within the appetite.

Key accountabilities:

  • Adhere to theThird-Party Technology & Cyber Risk Management Framework and support the delivery of associated strategy, target state roadmap, and supporting processes and procedures.
  • Conduct in-depth risk assessments and due diligence on potential and existing third-parties to identify risks and compliance gaps.
  • Engage third-parties based on the non-compliance and potential cyber security issues identified via continuous passive security posture management technologies. Conduct risk assessments and develop a plan with the third-parties to remediate non-compliance and/or potential security issues.
  • Establish and maintain the governance structure for ongoing management of third-party relationships, including regular performance and compliance reviews.
  • Collaborate with all technology teams to embed effective vendor management practices aligned to the TAL Procurement Procedure and Vendor Management Model.
  • Identifying potential areas for improvement for vendor governance, enhancement and upgrade by maintaining a good working knowledge of all services provided to TAL business units.
  • Collaborate with the Cyber Threat Management function and engage material and high risk third-parties to determine their exposure to critical and actively exploited external-facing vulnerabilities, as well as their security posture against emerging attacker tactics and techniques.
  • Assist with the assurance and compliance activities to demonstrate the effectiveness of Third-Party Technology & Cyber Risk Management function. Address the corrective actions and resolve gaps identified during the assurance and compliance activities.
  • Support and assist with the negotiation, implementation, and management of technology and cyber clauses in the third-party contracts with the Legal. Uplift those technology and cyber clauses in the contractual terms in line with regulatory and threat environment changes, as needed.
  • Monitor and report on third-party compliance with technology and security requirements as well as their performance against contracts, and coordinate the corrective action, as needed.
  • Stay abreast of regulatory changes and industry best practices related to Third-Party Technology and Cyber Risk management to ensure the policies and procedures are up-to-date.
  • Develop and deliver training to internal stakeholders on Third-Party Technology & Cyber Risk Management practices.
  • Collaborate with cross-functional teams, including Technology, Risk (Line 2), Audit, Legal, Compliance, and Procurement, to ensure a cohesive and integrated approach to Third-Party Technology & Cyber Risk Management.
  • Support the TAL Cyber Security Report to Group Partners to demonstrate TAL’s security posture on an annual basis. Lead the activities required to complete the Report, including but not limited to engaging various parts of Technology and the wider Business Units, collecting supporting evidence, leading interviews/workshops with the independent assessor.
  • Respond to technology risk and cyber security related questions raised by Group Partners through the Business Units on an ongoing basis, and attend periodic governance meetings with the Group Partners as a representative of Technology & Cyber Risk function.
Qualifications
  • Bachelor's degree in Business, Finance, Information Technology, or a related field. Relevant professional certifications (e.g., CISM, CRISC, CISSP) is a plus.
  • Minimum of 2 years of experience in Third-Party Risk Management, Technology Risk, Cyber Security, or a related field with proven experience of supporting, implementing and managing third party risk management programs.
  • Strong understanding of regulatory compliance standards relevant to third-party risk and security (e.g., APRA CPS234 / CPS230, SOX, ISO 27001, NIST CSF, Privacy Act, SOCI, etc.).
  • Strong communication skills with the ability to translate risk into business impact.
  • Self-starter with strong organisational skills in a highly-adaptive and a fast-paced environment.
  • Customer-oriented mindset and ability to apply collaborative approach to achieving business outcomes.
  • Thinker and doer with a pragmatic approach to make decisions and at the same time focused on outcomes.
Additional Information

At TAL we value diversity in all its forms and are committed to fostering an inclusive and equitable culture for all our people. We encourage Aboriginal and Torres Strait Islander people, individuals from all backgrounds, including those with caring responsibilities, people living with disability, and individuals from the CALD and LGBTQI+ communities to apply. Even if you don’t check every box in the criteria above, we encourage you to apply today or get in touch with ushere.

To provide you with the best experience, we can accommodate you at any stage of the recruitment process. Simply inform our Recruitment team at any time.

TAL is recognised by the Workplace Gender Equality Agency as an Employer of Choice. We are proud to be a member of Diversity Council Australia and the Australian Network on Disability. For information on our reconciliation journey, take a look at ourInnovate Reconciliation Action Plan.

We acknowledge the Traditional Custodians of the Land in which our Head Office is based, the land of the Gadigal people of the Eora Nation, and recognise their deep connections to the land, sea, and culture.
We extend this acknowledgment to the many Traditional Lands that we operate across and pay our respects to Elders past, present, and emerging.

Everyone at TAL has a responsibility to do the right thing and is accountable for the way they conduct themselves. Our expectations are that you follow the principles set out in our Code of Conduct when you come to work every day. Risk management is everyone’s responsibility.

If you are already a TAL employee please apply via the SmartRecruiters button in Workday and navigate to the Employee Portal. This is important to ensure that your application is recorded accurately.

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.

#J-18808-Ljbffr

  • Sydney, Österreich Cyber Crime Vollzeit

    Exciting opportunity to join a best-in-class cyber team!Develop broad experience in cyber security operationsWork alongside an inspiring, supportive, and collaborative Cyber team!Build Your Expertise: Become a Cyber Security ProfessionalLooking to launch your career in cyber security? Insignia Financial is building a world-class cyber security team, and...


  • Sydney, Österreich ClearCompany Vollzeit

    Join the University's ICT Cyber team as a Senior Business Analyst specializing in cybersecurity. In this role, you will work closely with the Lead Business Analyst and Cyber Program Director to drive the success of critical projects such as the PAM 2024 and IGA 2024 initiatives. Key Responsibilities: Contribute to detailed design, platform development,...


  • Sydney, Österreich ClearCompany Vollzeit

    Join the University's ICT Cyber team as a Senior Business Analyst specializing in cybersecurity. In this role, you will work closely with the Lead Business Analyst and Cyber Program Director to drive the success of critical projects such as the PAM 2024 and IGA 2024 initiatives. Key Responsibilities: Contribute to detailed design, platform development,...


  • Sydney, Österreich University of New South Wales Vollzeit

    At UNSW, we take pride in the broad range and high quality of our teaching programs. Our teaching gains strength and currency from our research activities, strong industry links and our international nature; UNSW has strong regional...Kensington based, Hybrid working environmentThe Senior Cyber Security Business Analyst will support the delivery of key...


  • Sydney, Österreich AI Talent Vollzeit

    We are seeking a highly skilled and experiencedSenior Cyber Security Analyst to join our team. As a Senior Cyber SecurityAnalyst, you will play a pivotal role in safeguarding our organization'ssystems, networks, and data from cyber threats. Your expertise in cybersecurityframeworks, risk assessment, incident response, and security operations will becrucial...

  • Cyber SOC Specialist

    vor 2 Monaten


    Sydney, Österreich Cyber Crime Vollzeit

    BT Group From Ultra Fast Full Fibre broadband to TV & Mobile, BT helps UK families, communities & companies reach their potential. Find more BT products here. View company page Our purpose is to use the power of communication to make a better world. For each other, for our customers, for society and our communities.Security incidents carry financial cost...


  • Sydney, Österreich Cuscal Vollzeit

    Cuscal – where curiosity and expertise are rewarded.Be part of a smaller team taking on a bigger role – a role where your curiosity, your energy, your ambition is rewarded. You’ll grow with us in an unconventional way where sideways develops you as much as up; where voices are heard and ideas are tested, and new things are created in fast-paced and...


  • Sydney, Österreich Cuscal Vollzeit

    Cuscal – where curiosity and expertise are rewarded.Be part of a smaller team taking on a bigger role – a role where your curiosity, your energy, your ambition is rewarded. You’ll grow with us in an unconventional way where sideways develops you as much as up; where voices are heard and ideas are tested, and new things are created in fast-paced and...


  • Sydney, Österreich University of New South Wales Vollzeit

    Senior Technical Business Analyst - CyberUniversity of New South WalesAustralia, NSW Technology About University of New South Wales At UNSW, we take pride in the broad range and high quality of our teaching programs. Our teaching gains strength and currency from our research activities, strong industry links and our international nature; UNSW has strong...


  • Sydney, Österreich eFinancialCareers Ltd. Vollzeit

    Exciting opportunity to join a best-in-class cyber team!Develop broad experience in cyber security operationsWork alongside an inspiring, supportive, and collaborative Cyber team! Exciting opportunity to join a best-in-class cyber team!Develop broad experience in cyber security operationsWork alongside an inspiring, supportive, and collaborative Cyber...


  • Sydney, Österreich Cyber Crime Vollzeit

    KPMG Australia KPMG is a global network of professional firms providing Audit, Tax and Advisory services. View company page Immerse yourself in our inclusive, diverse and supportive cultureChoose the way you want to work by embracing our flexible work arrangementCollaborate with sector and technical experts to grow your knowledge and networkKPMG...


  • Sydney, Österreich eFinancialCareers Ltd. Vollzeit

    Job TitleCyber Security AnalystJob DescriptionDo you have a lab or virtualised environment at home and love to tinker and script on both Windows and Linux - bonus points if you are running Docker on WSL and want to work with like-minded individuals. This is the role for you!Rabobank is the world's leading specialist in food and agribusiness banking. One of...

  • Cyber Security Analyst

    vor 4 Wochen


    Sydney, Österreich eFinancialCareers Ltd. Vollzeit

    Job TitleCyber Security AnalystJob DescriptionDo you have a lab or virtualised environment at home and love to tinker and script on both Windows and Linux - bonus points if you are running Docker on WSL and want to work with like-minded individuals. This is the role for you!Rabobank is the world's leading specialist in food and agribusiness banking. One of...

  • Cyber Security Analyst

    vor 4 Wochen


    Sydney, Österreich eFinancialCareers Ltd. Vollzeit

    Job TitleCyber Security AnalystJob DescriptionDo you have a lab or virtualised environment at home and love to tinker and script on both Windows and Linux - bonus points if you are running Docker on WSL and want to work with like-minded individuals. This is the role for you!Rabobank is the world's leading specialist in food and agribusiness banking. One of...

  • Cyber Security Analyst

    vor 4 Wochen


    Sydney, Österreich Milestone Technologies Vollzeit

    Security (Information & Communication Technology) Minimum 2+ years of experience working with SIEM, including running investigations (correlating events on different aspects such as source/destination addresses, usernames, and process names)Demonstrable comprehension of Information Security including malware, emerging threats, attacks, and vulnerability...


  • Sydney, Österreich The Star Ent Group Vollzeit

    Cyber Resilience Operations Analyst – Cyber Security Resilience Apply now Job no: 529723 Work type: Permanent Full Time Location: Sydney Categories: Technology The Star Entertainment Group (TSEG) is a publicly listed company on the ASX. Our purpose is to create fun at trusted destinations and our aim is to deliver sustainable outcomes for our guests,...


  • Council of the City of Sydney, Österreich Endeavour Group Vollzeit

    Let’s create a more sociable future togetherAt Endeavour, we’re totally into what we do. With a portfolio that includes Dan Murphy’s, BWS, ALH Hotels, Pinnacle Drinks and more, we love to bring people together. Together we share our passion for our products and industry; it’s what inspires us to dream big, and continue to create new experiences for...


  • Sydney, Österreich Cyber Crime Vollzeit

    CulturalFlex to observe your cultural and religious days of significanceFlexible working optionsTraining and development - at Deloitte we believe in investing in our best assets, the people!What will your typical day look like?You will work with a variety of tools (primarily SIEM , SOAR & EDR) to monitor and respond to security events and will assist in...


  • Sydney, Österreich Cyber Crime Vollzeit

    CulturalFlex to observe your cultural and religious days of significanceFlexible working optionsTraining and development - at Deloitte we believe in investing in our best assets, the people!What will your typical day look like?You will work with a variety of tools (primarily SIEM , SOAR & EDR) to monitor and respond to security events and will assist in...


  • Sydney, Österreich Rabobank Gruppe Vollzeit

    Do you have a lab or virtualised environment at home and love to tinker and script on both Windows and Linux - bonus points if you are running Docker on WSL and want to work with like-minded individuals. This is the role for you!Rabobank is the world’s leading specialist in food and agribusiness banking. One of our key strengths lies in our people who have...