Ready to leave a lasting impact on Australia’s health industry?
Join HAMBS, a leading provider of software and information technology solutions to the private health insurance sector for over 30 years. Our dedicated team spans across Adelaide and Sydney, collaborating with over 60% of Australia’s private health funds, empowering them to deliver innovative and competitive services to their valued members. At HAMBS, “work” is a vibrant experience. Our culture is driven by values that define us as United, Good Humans, Brave, and Awesome.
For more information about HAMBS and to explore our current career opportunities, visit: https://jobs.swagapp.com/organisations/hamb-systems
About the Role
We are seeking a Cyber Security Analyst to join our team. This role is pivotal in ensuring the security of HAMBS’ IT environments, providing proactive, operational, and reactive cybersecurity support. You will play a crucial part in the implementation and maintenance of key security services, contributing to the protection of HAMBS systems and infrastructure.
Key Responsibilities
- Assist in structured threat modelling activities for applications, infrastructure and business processes, by identifying potential threat scenarios and attack paths. Contributing to documented outcomes and remediation.
- Perform control gap assessments against the relevant frames works, identifying gaps, residual risk and control effectiveness
- Administer the corporate security tools, including the EDR/antivirus solution, identifying potential threats and conducting risk assessments as to their likely impact.
- Support the Cyber Security Manager in implementing HAMBS Cyber Security Strategy.
- Ensure cyber security threats are actively monitored and managed.
- Liaise with the various Business Unit stakeholders, MSSP, and cybersecurity vendors, with regards to provision and maintenance of operational and monitoring tools.
- Review information security alerts and perform security event analysis across multiple source systems and various log formats.
- Develop and maintain various levels of documentation of cybersecurity operations including but not limited to executive reports, summaries, memos, runbooks, policies, plans, and procedures.
- Provide senior-level support to projects that have an IT systems component.
About You
- Relevant degree in Information Technology or Computer Science or related discipline.
- Minimum 3 years’ experience in information security.
- Demonstrated operational expertise: Vulnerability management; Endpoint Detection and Response; Logging and Monitoring (SIEM, User Behaviour Analytics); Windows client, server and hyper-visor operating systems; Cloud architecture (security controls and configurations)
- Experience with Microsoft and Linux operating systems.
- Good working knowledge of Internet and network security systems and tools including firewalls (IDS/IPS), load balancers, WAFs, IDP, PKI, endpoint security and remote access systems.
- Strong understanding of security incident response processes.
- Knowledge of industry security frameworks (NIST CSF, ISO, PCI DSS, etc.).
- Strong problem-solving and analytical skills.
- High-level communication and interpersonal skills.
- Scripting and automation skills (API, PowerShell, and/or Python).
- Desirable: Cyber security industry certifications (e.g., ITIL, Cisco, Microsoft).
- Most importantly, you are Awesome, Brave, and a Good Human!
Employee Benefits
- Flexible working options, both onsite and remote.
- Ability to set flexible hours according to individual needs.
- Paid volunteer and wellbeing leave, with the option to purchase additional leave.
- Salary sacrificing and novated lease options.
- Access to an online learning system and world-class internal and external training sessions.
- Study leaves and a study support program.
- Internal employee referral program.
As part of the recruitment process, candidates will need to complete satisfactory verification checks, including but not limited to a National Police Clearance Certificate, appropriate rights to work in Australia, and reference checks.
Our HR team and hiring managers kindly request no unsolicited resumes or approaches from recruitment agencies.