Cyber Security Analyst

Snowy Hydro

Cooma

On-site

AUD 120,000 - 150,000

Full time

8 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Snowy Hydro is seeking a mid-level operational Cyber Security Analyst to join our team. The role focuses on vulnerability management, assurance, and risk management activities across IT and OT environments.

You will monitor, identify, analyze, and respond to security vulnerabilities, supporting continuous improvement of cybersecurity controls and ensuring alignment with AESCSF, ISO 27001, and SOCI obligations.

Qualifications

  • Hands-on vulnerability management experience across IT/OT environments.
  • Experience with cybersecurity toolsets in two or more domains (e.g., vulnerability mgmt, SIEM, EDR).
  • Strong communication and stakeholder management skills.

Responsibilities

  • Lead end-to-end vulnerability management lifecycle across technology and business teams.
  • Support internal/external security audits and alignment with AESCSF, ISO 27001 and critical infrastructure standards.
  • Collaborate with project teams to define and implement cybersecurity requirements and controls.
  • Conduct security assessments across systems, applications, and third-party vendors; identify gaps and provide remediation recommendations.
  • Perform security risk assessments and work with stakeholders to define treatment plans and residual risk acceptance.

Skills

Vulnerability management
Security tooling
Risk assessment
Stakeholder management
AESCSF
SIEM/EDR familiarity

Tools

Tenable
Qualys
EDR
SIEM
PAM
Netskope

Job description

Snowy Hydro is a dynamic, integrated energy business that has been providing on-demand, reliable energy to Australia for generations. Snowy Hydro owns and operates a powerful combination of generation assets, including the mighty Snowy Mountains Scheme, gas and diesel plants, and contracted wind and solar energy.

We also provide electricity and gas to over 1.5 million retail customers through our retail brands Red Energy and Lumo Energy. Snowy 2.0 is Australia's largest committed renewable energy project. This nation-building project will provide on-demand energy and large-scale storage for many generations to come.

About the position

We are seeking a mid-level operational Cyber Security Analyst to join our team at Snowy. This hands-on "doer" role sits on the operational side of the team, focusing on vulnerability management, assurance, and risk management activities.

You will be responsible for protecting the organisation's information systems, networks, and data by monitoring, identifying, analysing, and responding to security vulnerabilities, while supporting the ongoing improvement of cybersecurity controls across our IT and Operational Technology (OT) environments.

Key Responsibilities
  • End-to-End Vulnerability Management (60% Focus): Lead and execute the full vulnerability management lifecycle, encompassing discovery, risk assessment, prioritisation, and remediation across technology teams and the business.
  • Compliance & Risk Assessments: Support ongoing internal and external security audits, ensuring alignment and compliance against key industry frameworks and standards, such as the Australian Energy Sector Cyber Security Framework (AESCSF), ISO 27001 and the Security of Critical Infrastructure.
  • Project Security Alignment: Collaborate with project teams to establish clear cybersecurity requirements, ensuring all projects deliver in accordance with established security controls and standards.
  • Cyber Security Assurance: Conduct security assessments and assurance activities across systems, applications, and third-party vendors, identify control gaps, and provide recommendations to strengthen the organisation's overall security posture.
  • Risk Assessments: Conduct security risk assessments across systems, processes, and third parties; identify, evaluate, and document risks; and work with stakeholders to define appropriate treatment plans and residual risk acceptance.
About the location

This role can be based in Sydney or Melbourne.

About you
  • Functional Leadership & Autonomy: High degree of self-sufficiency, self-management, and ability to think on your feet. Proven ability to independently lead and drive the vulnerability management function to its next iteration with minimal supervision.
  • Technical Experience & Capability: Strong hands‑on background across vulnerability management lifecycle tools, as well as technical toolsets in two or more cybersecurity domains (e.g., Tenable, Qualys, EDR, SIEM, PAM, SASE/Netskope, Firewalls, IDAM). A background transitioning from systems engineering or systems administration is highly regarded.
  • Communication & Stakeholder Management: Excellent communication skills to work effectively across all levels of the organisation, build constructive relationships with business teams to drive remediations, and present technical concepts clearly.
  • Framework Familiarity (Favourable): Knowledge or experience with industry cybersecurity frameworks and legislation—such as the AESCSF, ISO 27001, NIST, IEC 62443, and the Security of Critical Infrastructure Act (SOCI)—is considered a favourable addition.
  • Discretion & Safety Focus: Ability to act with absolute discretion when handling sensitive company information, coupled with a commitment to demonstrate and drive the highest level of focus on workplace safety.
About our workforce

Snowy Hydro has a culture of decency and inclusion, with a commitment to the health and wellbeing of our people and a supportive environment to ensure that everyone - regardless of background - feels included and can succeed. At Snowy Hydro, we recognise that we are made stronger by the unique capabilities and qualities that each individual brings, and we believe in providing an environment that allows that uniqueness to thrive.

Snowy Hydro is proud to be an Equal Opportunity employer. We are committed to the values of Equal Employment Opportunity and provide accessibility accommodations to applicants with physical and/or mental disabilities.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Security Analyst
Cyber Security Analyst

Snowy Hydro • Sydney

On-site
AUD 120,000 - 170,000
Cyber Security Analyst
Cyber Security Analyst

Snowy Hydro • City of Melbourne

On-site
AUD 100,000 - 150,000
Hands-On Cyber Security Analyst – Vulnerability & Risk Lead
Hands-On Cyber Security Analyst – Vulnerability & Risk Lead

Snowy Hydro • Sydney

On-site
AUD 120,000 - 170,000
Safety Business Partner
Safety Business Partner

Snowy Hydro • Canberra

On-site
AUD 110,000 - 140,000
Safety Business Partner
Safety Business Partner

Snowy Hydro • City of Brisbane

On-site
AUD 120,000 - 180,000
Vulnerability Management Cyber Analyst
Vulnerability Management Cyber Analyst

Snowy Hydro • City of Melbourne

On-site
AUD 100,000 - 150,000
Governance Coordinator
Governance Coordinator

Snowy Hydro • City of Brisbane

Hybrid
AUD 90,000 - 120,000
Annual bonus
Parental leave
Additional leave beyond NES
+3
Governance Coordinator
Governance Coordinator

CSL Limited • Cooma

On-site
AUD 90,000 - 120,000
Safety Advisor
Safety Advisor

Snowy Hydro • City of Melbourne

On-site
AUD 120,000 - 160,000
Annual performance bonus
Parental leave options
Additional leave
+3
Vulnerability-Focused Cyber Security Analyst
Vulnerability-Focused Cyber Security Analyst

Snowy Hydro • Cooma

On-site
AUD 120,000 - 150,000