Cybersecurity Analyst

nib Health Funds Limited

Newcastle City Council

Hybrid

AUD 100,000 - 140,000

Full time

7 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Hybrid work model
Health insurance discount
Volunteer leave
Well Program
Share plans

Job summary

Nib is seeking a Cybersecurity Analyst to join the Cybersecurity Assurance team in Australia. You will review designs, advise delivery teams, and ensure security is built in from the start rather than bolted on later.

This second-line role requires independence, collaboration, and the ability to influence programs under pressure, with exposure to AWS/Azure, SSDLC, and APRA expectations.

Qualifications

  • Minimum 3 years' experience in cybersecurity or technology risk.
  • Ability to review others' work and articulate independent risk views clearly.
  • Strong organisational skills to track assurance work and milestones.
  • Solid understanding of security-by-design, vulnerability management, access management, and data protection.
  • Experience with cloud security (AWS/Azure) and SSDLC practices.
  • Industry certifications (CISSP, CISM, CCSP, CRISC, SC-200, AZ-500) are advantageous.
  • Experience in regulated environment with APRA CPS 234/230 exposure.

Responsibilities

  • Partner with project teams to document security requirements early and embed them into initiatives.
  • Scope security services per project, including architecture reviews, testing, and supplier assurance.
  • Provide independent cybersecurity oversight and reporting across projects.
  • Coordinate internal teams and external delivery partners for testing and assurance.
  • Prepare reporting on assurance status, risk themes and remediation progress for management and Board papers.
  • Support audits through evidence collation and interviews and oversee finding closure.
  • Contribute to maturity of nib's Information Security Management System and control frameworks.

Skills

Experience in cybersecurity
Independent risk view
Security by design
Cloud security (AWS/Azure)
SSDLC practices
Regulated environment awareness
APRA CPS 234/230 familiarity

Job description

About this role

Join a team at the forefront of protecting and shaping the future of technology. As our Cybersecurity Analyst, you’ll sit at the point where new technology meets risk, advising project teams, reviewing solution designs, and making sure security is designed in rather than retrofitted.

This is a second line role. You won’t be building or operating controls. Your job is to review the work of delivery and engineering teams, form your own view of the risk, and say so. That independence is what makes the role useful, and it’s also what makes it demanding. You’ll be influencing teams you don’t control and holding a position when a program is under pressure to move.

A core part of the role is working out what assurance each project needs, from architecture review and penetration testing through to supplier assurance and control review. You’ll arrange the internal teams and vendors who carry that work out, review the quality of what they produce, and track findings through to closure. Where risk remains, you’ll put it in front of the people accountable for accepting it.

You’ll be part of a collaborative Cybersecurity Assurance team that helps guide secure decision-making, provides oversight of technology and cyber risk, and supports the adoption of new technologies in a way that balances innovation with strong security practices. It’s a highly visible role, with reporting that reaches delivery teams, management and Board risk forums.

What you'll be doing
  • Partnering with project teams to discover and document security requirements early and embed them into key initiatives and business change.
  • Scoping the security services each project needs, including security architecture review, penetration testing, vulnerability assessment, supplier assurance and control review, and maintaining the schedule that delivers them.
  • Providing independent cybersecurity and technology risk oversight, assurance and reporting across projects and strategic programs.
  • Coordinating internal teams and external delivery partners, including vendor-delivered testing and supplier assurance activity.
  • Preparing reporting on assurance status, service demand, risk themes and remediation progress, including input to management and Board Risk Committee papers.
  • Supporting internal and external audits through evidence collation and interviews and providing line 2 oversight of finding closure.
  • Contributing to the maturity of nib’s Information Security Management System, security policies and control frameworks.
About you

You'll have at least three years' experience in cybersecurity or technology risk and, need to be comfortable reviewing other people's work, forming an independent view, and explaining it clearly to the people who built it.

You're organised. A large part of this role is knowing what assurance work is in flight, what it depends on, who's delivering it and when it lands, then making that visible to everyone from delivery teams through to the Board.

You’ll have a strong understanding of cybersecurity principles, including security-by-design, control effectiveness, vulnerability management, access management, data protection and cloud security, and you enjoy partnering with project teams to deliver practical, secure outcomes without creating unnecessary friction.

You’ll bring:
  • Excellent written, visual and verbal communication skills, including the ability to explain security requirements, assurance outcomes and risk decisions to technical and non-technical stakeholders.
  • Experience scoping, coordinating or overseeing cybersecurity services such as security architecture review, penetration testing, vulnerability assessment, supplier assurance or control review.
  • Experience assessing technical risk using a formal framework such as ISO 31000 and reviewing solution designs and assurance outputs to identify security implications, control gaps and remediation expectations.
  • Working knowledge of cloud environments and shared responsibility models, particularly AWS and Azure, and the security considerations for SaaS, PaaS and AI-enabled services.
  • Familiarity with secure software development lifecycle (SSDLC) practices, and how security controls are applied through development and deployment pipelines.
  • Relevant experience and/or qualifications in cybersecurity, technology, risk or a related discipline. Industry certification achieved or in progress is well regarded (CISSP, CISM, CCSP, CRISC, SC-200, AZ-500 or similar).
  • Experience working in a regulated or compliance-bound environment, including exposure to APRA expectations such as CPS 234 and CPS 230.

Don't tick every box? If this role excites you and you bring relevant experience, we'd still love to hear from you.

Who we are

nib is a leader in private health insurance, disability support and health services, reshaping the industry through bold innovation, strategic disruption and trusted partnerships. We deliver great value health insurance and support services to protect, connect and empower you to access healthcare when and where you need.

We have a mission and vision of people enjoying better health. Through our success, we aspire to more prosperous and sustainable communities, helping members and travellers make more informed healthcare decisions and generally live healthier lives.

Diversity, equity and inclusion

We embrace a flexible working environment and welcome candidates who reflect the diversity of the communities in which we operate. We're committed to an environment where everyone has the autonomy and freedom to be their authentic selves, every day. We encourage Aboriginal and Torres Strait Islander peoples, people living with disability, veterans, LGBTQIA+ as well as culturally diverse community members to apply for open roles.

We’re committed to creating an accessible recruitment process and employment experience. If you require adjustments to our online application, recruitment, selection and/or assessment process, or would like this advertisement in an alternative format, please contact us at nibemployment @nib.com.au.

Working at nib

Our hybrid working model offers flexibility to work from home or our purpose-built office Hubs, designed for focus, connection, and collaboration. We’re committed to coming together with purpose.

Other benefits to support you at work (and play) include:
  • New starter benefit to help set up a functional home workspace
  • 50% discount on employee health insurance
  • Opportunity to give back with paid volunteering leave supported by the nib foundation
  • Access to our nib Well Program and corporate fitness discounts
  • Access to employee share plans, short-term incentive program and life and salary continuance insurance benefits
  • 18 weeks paid parental leavefor all new parents regardless of carer status
  • 5 days paid cultural leave for First Nations peoples
  • 4 weeks paid gender affirmation leave for trans, gender diverse and intersex employees
The fine print

All your information will be kept confidential according to EEO guidelines. Successful applicants will be required to complete a background check (including criminal history and bankruptcy check) prior to commencement of employment.

We acknowledge Aboriginal and Torres Strait Islander peoples as the Traditional Custodians of the lands where we live, learn and work.

Next steps

If successful, you will receive an email from Sapia.ai inviting you to complete an online,chat ‑ basedassessment.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cybersecurity Analyst
Cybersecurity Analyst

nib Group • Newcastle City Council

Hybrid
AUD 90,000 - 130,000
ISMS Manager
ISMS Manager

nib Group • Newcastle City Council

On-site
AUD 140,000 - 190,000
New starter benefit
50% health insurance discount
35% travel insurance discount
+6
Cybersecurity Analyst
Cybersecurity Analyst

nib • Newcastle City Council

Hybrid
AUD 110,000 - 150,000
New starter benefit
Health insurance discount
Volunteering leave
+1
Technical Product Analyst
Technical Product Analyst

nib Group • City of Melbourne

Hybrid
AUD 100,000 - 140,000
New starter home workspace setup
Health insurance discount
Volunteer leave
+5
Technical Product Analyst
Technical Product Analyst

nib Group • Newcastle City Council

Hybrid
AUD 110,000 - 140,000
Home workspace setup
Health insurance discount
Volunteer leave
+6
Senior Cloud Platform Engineer
Senior Cloud Platform Engineer

nib Health Funds Limited • Newcastle City Council

Hybrid
AUD 140,000 - 190,000
Hybrid work model
50% health insurance discount
Volunteer leave
+1
Group Head of Insurance Platforms
Group Head of Insurance Platforms

nib Group • Sydney

Hybrid
AUD 200,000 - 300,000
Hybrid working model
Employee health discount
Volunteer leave
+5
Customer Care Consultant
Customer Care Consultant

nib Group • Gosford

Hybrid
AUD 55,000 - 68,000
50% nib health insurance discount
Volunteer leave through nib Foundation
Well Program and fitness discounts
+1
Group Head of Insurance Platforms
Group Head of Insurance Platforms

nib health funds limited • Sydney

Hybrid
AUD 180,000 - 260,000
New starter benefit
50% health insurance discount
Paid volunteering leave
+8
Head of IT Risk & Controls
Head of IT Risk & Controls

nib Group • Sydney

Hybrid
AUD 180,000 - 260,000
Home workspace setup
Health insurance discount
Volunteer leave
+6