Cyber Security Analyst

Snowy Hydro

City of Melbourne

On-site

AUD 100,000 - 150,000

Full time

7 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Snowy Hydro is seeking a mid-level operational Cyber Security Analyst to join our team in Melbourne. This hands-on role focuses on vulnerability management, assurance and risk management across IT and OT environments, protecting our information systems, networks and data.

You will lead end-to-end vulnerability lifecycle activities, collaborate with project teams to embed security controls, and work with stakeholders to improve our security posture in a compliant, safety-conscious organisation.

Qualifications

  • Hands-on experience with vulnerability management across IT/OT.
  • Familiarity with AESCSF, ISO 27001 or similar frameworks.
  • Ability to lead remediation with minimal supervision.

Responsibilities

  • End-to-End Vulnerability Management (60% Focus): lead discovery, risk assessment, prioritisation and remediation.
  • Compliance & Risk Assessments: support audits and ensure framework alignment.
  • Project Security Alignment: embed security controls in projects.
  • Cyber Security Assurance: assess systems and vendors, identify gaps and provide improvements.
  • Risk Assessments: evaluate risks and define treatment plans with stakeholders.

Skills

Vulnerability management
Threat analysis
Stakeholder management
Communication
Autonomy

Tools

Tenable
Qualys
EDR
SIEM
PAM
SASE/Netskope
Firewalls
IDAM

Job description

About the position:

We are seeking a mid-level operational Cyber Security Analyst to join our team at Snowy. This hands‑on "doer" role sits on the operational side of the team, focusing on vulnerability management, assurance, and risk management activities.

You will be responsible for protecting the organisation's information systems, networks, and data by monitoring, identifying, analysing, and responding to security vulnerabilities, while supporting the ongoing improvement of cybersecurity controls across our IT and Operational Technology (OT) environments.

Key Responsibilities:
  • End-to-End Vulnerability Management (60% Focus): Lead and execute the full vulnerability management lifecycle, encompassing discovery, risk assessment, prioritisation, and remediation across technology teams and the business.
  • Compliance & Risk Assessments: Support ongoing internal and external security audits, ensuring alignment and compliance against key industry frameworks and standards, such as the Australian Energy Sector Cyber Security Framework (AESCSF), ISO 27001 and the Security of Critical Infrastructure.
  • Project Security Alignment: Collaborate with project teams to establish clear cybersecurity requirements, ensuring all projects deliver in accordance with established security controls and standards.
  • Cyber Security Assurance: Conduct security assessments and assurance activities across systems, applications, and third‑party vendors, identify control gaps, and provide recommendations to strengthen the organisation's overall security posture.
  • Risk Assessments: Conduct security risk assessments across systems, processes, and third parties; identify, evaluate, and document risks; and work with stakeholders to define appropriate treatment plans and residual risk acceptance.
About the location:

This role can be based in Sydney or Melbourne.

About you:
  • Functional Leadership & Autonomy: High degree of self‑sufficiency, self‑management, and ability to think on your feet. Proven ability to independently lead and drive the vulnerability management function to its next iteration with minimal supervision.
  • Technical Experience & Capability: Strong hands‑on background across vulnerability management lifecycle tools, as well as technical toolsets in two or more cybersecurity domains (e.g., Tenable, Qualys, EDR, SIEM, PAM, SASE/Netskope, Firewalls, IDAM). A background transitioning from systems engineering or systems administration is highly regarded.
  • Communication & Stakeholder Management: Excellent communication skills to work effectively across all levels of the organisation, build constructive relationships with business teams to drive remediations, and present technical concepts clearly.
  • Framework Familiarity (Favourable): Knowledge or experience with industry cybersecurity frameworks and legislation—such as the AESCSF, ISO 27001, NIST, IEC 62443, and the Security of Critical Infrastructure Act (SOCI)—is considered a favourable addition.
  • Discretion & Safety Focus: Ability to act with absolute discretion when handling sensitive company information, coupled with a commitment to demonstrate and drive the highest level of focus on workplace safety.
About our workforce:

Snowy Hydro has a culture of decency and inclusion, with a commitment to the health and wellbeing of our people and a supportive environment to ensure that everyone - regardless of background - feels included and can succeed. At Snowy Hydro, we recognise that we are made stronger by the unique capabilities and qualities that each individual brings, and we believe in providing an environment that allows that uniqueness to thrive.

Snowy Hydro is proud to be an Equal Opportunity employer. We are committed to the values of Equal Employment Opportunity and provide accessibility accommodations to applicants with physical and/or mental disabilities. If you are interested in applying for a role with Snowy Hydro and are in need of accommodation or special assistance to navigate our website or to complete your application, please send an email with your request to the Snowy Hydro recruitment team at recruitment@snowyhydro.com.au

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Analyst
Cyber Security Analyst

Snowy Hydro • Sydney

On-site
AUD 110,000 - 140,000
Vulnerability Management Cyber Security Analyst
Vulnerability Management Cyber Security Analyst

Snowy Hydro • Sydney

On-site
AUD 110,000 - 140,000
Vulnerability Management Cyber Analyst
Vulnerability Management Cyber Analyst

Snowy Hydro • City of Melbourne

On-site
AUD 100,000 - 150,000
Senior Network Engineer
Senior Network Engineer

Snowy Hydro • Cooma

Hybrid
AUD 150,000 - 210,000
Relocation assistance
Cyber Security Analyst
Cyber Security Analyst

Water-Corporation • City Of Vincent

Hybrid
AUD 110,000 - 150,000
Work from home options
Flexible hours
Well-being days
+3
Cyber Security Analyst
Cyber Security Analyst

Lifeline Australia • Sydney

On-site
AUD 120,000 - 180,000
Salary Packaging and not-for-profit*/
Paid Parental Leave – 14 weeks
Flexible working
+2
Safety Business Partner
Safety Business Partner

Lumea • Cooma

On-site
AUD 120,000 - 180,000
Cyber Security SOC Analyst
Cyber Security SOC Analyst

C4i Solutions • Sydney

On-site
AUD 90,000 - 120,000
Long Service Leave
Health & wellbeing allowance
First year leave (5 days)
+6
Cyber Defense SOC Analyst – Onsite Sydney, NV1 Eligible
Cyber Defense SOC Analyst – Onsite Sydney, NV1 Eligible

C4I Solutions Pty • Sydney

On-site
AUD 110,000 - 160,000
Long Service Leave
Health & wellbeing allowance
First year leave (5 days)
+6
Cyber Security SOC Analyst
Cyber Security SOC Analyst

C4I Solutions Pty • Sydney

On-site
AUD 110,000 - 160,000
Long Service Leave
Health & wellbeing allowance
First year leave (5 days)
+6