
Cyber Security Administrator | Financial Services
- Sydney, NSW
- $110,000 per year
- Permanent
- Full-time
- Network and Systems Security Monitoring: collaborate with external security teams to regularly assess and monitor traffic for suspicious activity and potential threats.
- SASE, Firewall and Security System Administration: configure, administer and optimise SASE product suite (SWG, ZTNA, CASB) from security perspective, firewalls, intrusion detection/prevention systems (IDS/IPS), and other security systems to ensure continuous improvement on cyber security posture.
- Policies and Procedures Enhancement: collaborate with external security teams to develop, improve and enforce security policies and procedures
- User Access Control and Identity Management: control user access to network, private resources and external sites by utilising SASE, ensuring that permissions are granted appropriately. Perform regular identity audits to ensure compliance with access control policies
- Incident Response & Threat Mitigation: collaborate with external security teams to execute incident response procedures to promptly respond to and mitigate security incidents. Document findings and provide recommendations to improve security controls.
- Vulnerability Assessments & Security Audits: conduct regular security audits, vulnerability scans and coordinate external penetration tests to identify security weaknesses in systems, networks, and applications. Collaborate with system administrators and stakeholders to remediate vulnerabilities and maintain a secure environment.
- Security Policy & Compliance Enforcement: ensure adherence to security policies, industry standards (e.g., ISO 27001, NIST, CIS, APRA 234), and regulatory requirements through audits and documentation.
- Disaster Recovery & Business Continuity Planning: contribute to the development and testing of disaster recovery plans to ensure rapid restoration of services during cyber incidents.
- Threat Intelligence: stay up-to-date with the latest cybersecurity threats, vulnerabilities, and attack vectors. Leverage threat intelligence sources to identify emerging threats and proactively adjust security controls and procedures accordingly.
- Collaboration and Communication: collaborate with IT teams, management and external stakeholders to report security risks, trends and improvement initiatives.
- Demonstrated experience in security operations, incident response, or a related cybersecurity role.
- Knowledge of security technologies, including SIEM, IDS/IPS, firewalls, antivirus, and endpoint protection solutions.
- Good knowledge & experience with network security tools and technologies such as SASE, SWG, CASB, firewalls, VPNs and IDS/IPS.
- EDR tool experience e.g. Defender, CrowdStrike etc
- Experience with Vulnerability Management tools - e.g. as Tenable, Rapid7, Qualys.
- Cloud security experience with Azure or AWS is beneficial.
- Security framework knowledge is beneficial (e.g. NIST, ISO 27001)
- Strong analytical and problem-solving skills
- Attention to detail and a methodical approach to tasks
- Excellent written and verbal communication skills