Job Description
Posting Start Date: 05/02/2025
Req ID: 2656
Job Title: Cybersecurity Engineer
Employment Status: Fixed Term Full Time
Job Location: Frankston
Job Description:
As Cybersecurity Engineer, you will play a pivotal role in securing the IT applications and infrastructure for a new hospital building, and its integration into the existing hospital systems. This role combines technical proficiency with a strong emphasis on governance, risk, and compliance (GRC) and development of cybersecurity maturity improvements. Your primary responsibility is to ensure new hospital IT systems, infrastructure and vendors are secure by design, comply with regulatory standards, and seamlessly integrate with cybersecurity requirements for current systems. Reporting directly to the Manager Cybersecurity and Risk Services, you will deliver GRC, actionable improvements and insights, and comprehensive compliance reporting to ensure cybersecurity outcomes and guarantee a secure transition.
Qualifications and/or experience
You are a technically skilled cybersecurity professional with a passion for creating secure systems and a deep interest in GRC. You have hands-on experience in cybersecurity for IT infrastructure, risk assessment, vendor controls and management, and GRC compliance. You are a problem-solver who thrives in collaborative environments, working with diverse teams to deliver secure, scalable, and compliant solutions. You will possess:
- 5+ years of experience in cybersecurity with expertise in IT infrastructure design, access management, and monitoring
- Expert knowledge of GRC frameworks
- Demonstratable experience with Security Information and Event Management (SIEM), Endpoint Detection and Response (EDR), Vulnerability Management, Privilege Access Management (PAM) and related enterprise security management tools.
- Excellent working knowledge of cybersecurity frameworks such as NIST, ISO27001, Essential 8, CIS V8, Department of Health 32 controls.
- Bachelor’s degree in Cybersecurity, Computer Science, or a related technical field (Desired).
- ICT Infrastructure certifications (CCNA, MCSA, etc.) (Desired).
- Microsoft Certifications (Azure Security Engineer Associate or Azure Administrator Associate) (Desired).
- Experience with large-scale IT integrations or similar projects (Desired).
- CISSP, Security+ or equivalent (Desired).
Capabilities
- Strong knowledge of Azure and M365 security tools and best practices for protecting cloud environments.
- Proactive in identifying vulnerabilities and implementing effective solutions.
- Skilled at working with cross-functional teams to embed security into workflows.
- Ability to convey technical concepts to both technical and non-technical stakeholders.
- Experience implementing controls to meet regulatory and organisational standards.
- Strong problem-solving skills.
- Ability to work independently, as part of a team.
- Excellent organisational and time-management skills.
- Proactive and self-motivated.
Key Responsibilities
- Design and deploy secure IT systems for the new hospital, ensuring scalability and compliance with industry standards.
- Ensure all IT infrastructure adheres to governance and legislation controls (such as Department of Health 32 controls, Security of Critical Infrastructure Act 2018 (Cth), Privacy and Data Protection Act 2014 (Vic), etc.)
- Perform risk assessments for all the third-party vendors.
- Collaborate with stakeholders to meet regulatory and compliance requirements.
- Implement and enforce role-based access control (RBAC) and least privilege policies.
- Oversee the identity and access management systems.
- Conduct periodic vulnerability assessments and prioritize remediation for identified risks.
- Deliver regular, detailed reports to the Cyber Manager on risks, compliance status, and project progress.
- Collaborate with IT, legal, project delivery teams, and hospital management teams to ensure alignment with expected outcomes.
- Maintain up-to-date documentation on all security measures, policies, and integration processes.
- Undertake any additional tasks or responsibilities as advised.