
Senior Test Analyst (Cyber Security)
- Melbourne, VIC
- $114,219-123,605 per year
- Permanent
- Full-time
- Join CSIRO - Australia's National Science & Innovation Agency
- Lead end-to-end testing for cutting-edge cyber security solutions
- 12 Month opportunity available
- Lead Testing Activities: Oversee and manage functional, regression, system, integration, and cyber security testing activities, ensuring thorough and effective validation of software against security requirements and threat models.
- Cyber Security Test Design: Develop and execute test cases and scenarios focused on security aspects such as vulnerability assessments, penetration testing, secure code reviews, and compliance validation.
- Strategic Planning: Develop and implement detailed plans to describe, explain, and schedule the anticipated testing approach, including security testing strategies, aligning with organisational risk management and strategic goals.
- Reporting: Produce comprehensive test reports in tandem with key product releases, including security test findings, risk assessments, and mitigation recommendations for stakeholders.
- Capability Building: Take responsibility for building the capability of test analysts, providing mentorship and guidance in security testing methodologies, tools, and best practices.
- Innovation and Improvement: Foster a culture of continuous review and improvement, encouraging innovation and the adoption of best practices in both functional and security testing domains.
- Collaboration: Work closely with interdisciplinary teams including testers, developers, business analysts, infrastructure specialists, cyber security professionals, data librarians, executive managers, and other stakeholders to ensure cohesive and effective collaboration.
- Extensive Experience: A minimum of 8 years' experience in testing software applications, including at least 2 years in cyber security testing, coupled with relevant tertiary qualifications in IT or equivalent relevant work experience.
- Advanced Knowledge: Demonstrated advanced knowledge and extensive experience in testing analysis techniques, processes, and methodologies, including security testing approaches such as vulnerability assessment, penetration testing, and secure code review.
- Comprehensive Testing Expertise: Extensive experience in all aspects of testing, including functional, system integration, regression, and security testing, both as a sole testing resource and within a team.
- Cyber Security Certification: Possession of or progress toward a recognised cyber security certification such as:
- Certified Information Systems Security Professional (CISSP) - preferred
- Certified Ethical Hacker (CEH) or Offensive Security Certified Professional (OSCP) - desirable
- Agile-Scrum Proficiency: Demonstrated extensive experience working in and/or exposure to an Agile-Scrum development environment, including secure development practices.
- Superior Communication Skills: Excellent communication skills, with the ability to work collaboratively across multi-disciplinary project teams and communicate effectively with staff and clients at all levels, including cyber security stakeholders.
- Agile Ceremonies Experience: Proven experience in backlog refinement, sprint review, retrospective, and planning ceremonies, with an understanding of integrating security considerations into Agile workflows.
- Experience testing both front-end and back-end web application systems with
- A focus on discovery and access of research data
- high throughput requirements for relational & file-based data processing