Cyber Security Analyst

Snowy Hydro

Sydney

On-site

AUD 120,000 - 170,000

Full time

9 days ago
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Snowy Hydro is seeking a mid-level operational Cyber Security Analyst to join our team in Australia. This hands-on role focuses on vulnerability management, assurance, and risk management across IT and OT environments.

You will monitor, analyse, and respond to security vulnerabilities, drive remediation with technology teams, and support audits against AESCSF, ISO 27001, and related standards. Based in Sydney or Melbourne, the role requires a proactive self-starter with practical security

Qualifications

  • Candidate must have practical cybersecurity experience.
  • Familiarity with vulnerability management concepts.

Responsibilities

  • End-to-End Vulnerability Management (60% Focus): lead discovery, risk assessment, prioritisation and remediation.
  • Compliance & Risk Assessments: support audits ensuring AESCSF, ISO 27001 alignment.
  • Project Security Alignment: work with project teams to embed security controls.
  • Cyber Security Assurance: conduct assessments across systems and third‑party vendors.
  • Risk Assessments: identify risks and define treatment plans with stakeholders.

Job description

Snowy Hydro is a dynamic, integrated energy business that has been providing on-demand, reliable energy to Australia for generations. Snowy Hydro owns and operates a powerful combination of generation assets, including the mighty Snowy Mountains Scheme, gas and diesel plants, and contracted wind and solar energy. We also provide electricity and gas to about 1 million retail customers through our retail brands Red Energy and Lumo Energy.

About the position:

We are seeking a mid-level operational Cyber Security Analyst to join our team at Snowy. This hands‑on "doer" role sits on the operational side of the team, focusing on vulnerability management, assurance, and risk management activities.

You will be responsible for protecting the organisation's information systems, networks, and data by monitoring, identifying, analysing, and responding to security vulnerabilities, while supporting the ongoing improvement of cybersecurity controls across our IT and Operational Technology (OT) environments.

Key Responsibilities:
  • End-to-End Vulnerability Management (60% Focus): Lead and execute the full vulnerability management lifecycle, encompassing discovery, risk assessment, prioritisation, and remediation across technology teams and the business.
  • Compliance & Risk Assessments: Support ongoing internal and external security audits, ensuring alignment and compliance against key industry frameworks and standards, such as the Australian Energy Sector Cyber Security Framework (AESCSF), ISO 27001 and the Security of Critical Infrastructure.
  • Project Security Alignment: Collaborate with project teams to establish clear cybersecurity requirements, ensuring all projects deliver in accordance with established security controls and standards.
  • Cyber Security Assurance: Conduct security assessments and assurance activities across systems, applications, and third-party vendors, identify control gaps, and provide recommendations to strengthen the organisation's overall security posture.
  • Risk Assessments: Conduct security risk assessments across systems, processes and third parties; identify, evaluate, and document risks; and work with stakeholders to define appropriate treatment plans and residual risk acceptance.
About the location:

This role can be based in Sydney or Melbourne.

About you:
  • Functional Leadership & Autonomy: High degree of self-sufficiency, self-management, and ability to think on your feet. Proven ability to independently lead and drive the vulnerability management function to its next iteration with minimal supervision.
  • Technical Experience & Capability: Strong hands‑on background across vulnerability management lifecycle tools, as well as technical toolsets in two or more cybersecurity domains (e.g., Tenable, Qualys, EDR, SIEM, PAM, SASE/Netskope, Firewalls, IDAM). A background transitioning from systems engineering or systems administration is highly regarded.
  • Communication & Stakeholder Management: Excellent communication skills to work effectively across all levels of the organisation, build constructive relationships with business teams to drive remediations, and present technical concepts clearly.
  • Framework Familiarity (Favourable): Knowledge or experience with industry cybersecurity frameworks and legislation—such as the AESCSF, ISO 27001, NIST, IEC 62443, and the Security of Critical Infrastructure Act (SOCI)—is considered a favourable addition.
  • Discretion & Safety Focus: Ability to act with absolute discretion when handling sensitive company information, coupled with a commitment to demonstrate and drive the highest level of focus on workplace safety.
About our workforce:

Snowy Hydro has a culture of decency and inclusion, with a commitment to the health and wellbeing of our people and a supportive environment to ensure that everyone - regardless of background - feels included and can succeed. At Snowy Hydro, we recognise that we are made stronger by the unique capabilities and qualities that each individual brings, and we believe in providing an environment that allows that uniqueness to thrive.

Snowy Hydro is proud to be an Equal Opportunity employer. We are committed to the values of Equal Employment Opportunity and provide accessibility accommodations to applicants with physical and/or mental disabilities.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Security Analyst
Cyber Security Analyst

Snowy Hydro • Cooma

On-site
AUD 120,000 - 150,000
Cyber Security Analyst
Cyber Security Analyst

Snowy Hydro • City of Melbourne

On-site
AUD 100,000 - 150,000
Hands-On Cyber Security Analyst – Vulnerability & Risk Lead
Hands-On Cyber Security Analyst – Vulnerability & Risk Lead

Snowy Hydro • Sydney

On-site
AUD 120,000 - 170,000
Vulnerability Management Cyber Analyst
Vulnerability Management Cyber Analyst

Snowy Hydro • City of Melbourne

On-site
AUD 100,000 - 150,000
Vulnerability-Focused Cyber Security Analyst
Vulnerability-Focused Cyber Security Analyst

Snowy Hydro • Cooma

On-site
AUD 120,000 - 150,000
Safety Business Partner
Safety Business Partner

Snowy Hydro • City of Brisbane

On-site
AUD 120,000 - 180,000
Safety Business Partner
Safety Business Partner

Snowy Hydro • Canberra

On-site
AUD 110,000 - 140,000
Safety Advisor
Safety Advisor

Snowy Hydro • City of Melbourne

On-site
AUD 120,000 - 160,000
Annual performance bonus
Parental leave options
Additional leave
+3
Governance Coordinator
Governance Coordinator

CSL Limited • Cooma

On-site
AUD 90,000 - 120,000
Governance Coordinator
Governance Coordinator

Snowy Hydro • City of Brisbane

Hybrid
AUD 90,000 - 120,000
Annual bonus
Parental leave
Additional leave beyond NES
+3