Privileged Access Management Response Lead
Eveleigh, NSW - 5-7 Central Ave, Australia
Commonwealth Bank
CommBank offers personal banking, business solutions, institutional banking, company information, and morePAM Response Lead
• You are a cybersecurity control professional with a background in Privileged account management, driving hygiene and cyber response
• We are one of the best and most advanced Cyber Security teams in Australia
• Together we can build the Cyber Controls Chapter Area and contribute to protecting the Group, its customers and community.
See yourself in our team:
The Privileged Access Management (PAM) crew plays a crucial function within the Group Security division being responsible for designing and deploying effective PAM capabilities and overseeing continuous improvement of the Group’s PAM controls and risk exposures.
As an organisation with a large IT estate servicing millions of customers everyday, we need to ensure effective mitigations are in place to defend our assets against an ever-evolving cyber threat environment. The PAM Response Lead will drive enforcement of appropriate privileged account usage and liaise with other teams to ensure adoption of the relevant policies and guidelines.
We support our people with the flexibility to balance where work is done with at least half your time each month connecting in office. We also have many other flexible working options available including changing start and finish times, part-time arrangements and job share to name a few. Talk to us about how these arrangements might work for you.
Do work that matters
Working with the PAM Crew Lead and collaborating with Control Leads, the PAM Response lead will focus on:
Providing subject-matter expertise to Technology Crew Leads, Product Owners and Service Owners.
Contributing to and driving the strategic roadmap for privileged user access monitoring control capabilities, overseeing control operation, and supporting delivery of control remediation to achieve target risk outcomes.
Establishing and maintaining privileged account management control standards to align with changes in industry standards, technology strategy and threat intelligence.
Governing the Group’s compliance with PAM control requirements and supporting the business in tracking remediation of privileged user access events and improvement of overall risk posture.
You will also:
- Ensure privileged user access monitoring operations adhere to the information security policies and identity standards
- Build and run the responder model to investigate any incidents of unauthorized or suspicious activity.
- Carry out annual effectiveness assessments and drive appropriate risk remediation to address identified control weaknesses.
- Continuously evolve the Privileged User Access Monitoring capability to align to the latest threats to the Group (both internal and external)
We are interested in hearing from people who:
- Strong communication and collaboration skills and proven ability to manage complex work and lead cross-function teams
- Embody the leadership principle of ‘Curious and Humble’ by being willing to speak up and challenge the status quo, and continually expanding their skills and knowledge.
- Are knowledgeable about cyber threats and vulnerabilities relevant to user access monitoring.
- Can analyse threat intelligence, identify potential risks, prioritise use cases, and recommend appropriate mitigations.
- Can operate effectively in an agile working environment exemplifying high degrees of autonomy and self-initiative to achieve target outcomes.
- Have demonstrated ability to engage and influence stakeholders to build rapport, obtain buy-in and achieve target outcomes.
Technical Skills that will benefit you in the role:
- Experience with Splunk toolsets (Essential)
- Proficiency in user access monitoring tools (e.g., SOAR)
- Experience with PAM toolsets (CyberArk)
- Understanding of automation and self service capability development
- Experience with data visualisation tools (e.g., Power BI, Tableau) and proficiency in creating executive-level dashboards and reports.
- Security certifications: CISSP, CISM, or CRISC.(Desirable)
If you're already part of the Commonwealth Bank Group (including Bankwest, x15ventures), you'll need to apply through Sidekick to submit a valid application. We’re keen to support you with the next step in your career.
We're aware of some accessibility issues on this site, particularly for screen reader users. We want to make finding your dream job as easy as possible, so if you require additional support please contact HR Direct on 1800 989 696.
Advertising End Date: 04/02/2025* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Agile Automation Business Intelligence CISM CISSP Compliance CRISC Cyberark Monitoring SOAR Splunk Strategy Threat intelligence Vulnerabilities
Perks/benefits: Career development Equity / stock options Flex hours Startup environment Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.