Head of Cyber Defence
Melbourne Support Centre
Australia Post
Australia Post provides reliable and affordable postal, retail, financial and travel services.General information
Press space or enter keys to toggle section visibility
Name Head of Cyber Defence Site / Location Melbourne Support Centre Ref # 12370700 Entity Australia Post Opening Date 09-May-2025 Suburb Richmond Work Type Permanent Full TimeDescription & Requirements
Press space or enter keys to toggle section visibility
Help us deliver like never before
We’re looking for a Head of Technology Strategy and Innovation to join our diverse, talented and innovative digital technology team who together are helping our customers and communities build a better future. Together, we design, build and maintain products, services and experiences that Australian's love and trust, while delivering a sustainable future for Australia Post, and you could be part of that.
We're empowered to deliver for our teams and to delight our customers. We provide an inclusive and supportive environment that nurtures talented people, trusts our teams to deliver their best, and leverages modern work practices and technologies. It's an unexpectedly dynamic and collaborative culture that feels more like a start-up than a 213-year old icon.
What you’ll deliver with us
As our Head of Cyber Defence you will lead a team of security specialists that deliver cyber threat, security operations. The team continuously monitors and scans environments across Australia Post to identify threats and coordinates with key stakeholders including technology support teams to coordinate response activities including patching and mitigation. Reporting directly into the Chief information Security Office (CISO) you are responsible for the people management and outcome for the cyber defence of Australia Post. This role has 7 direct reports and 17 indirect reports. A key part of this position is providing direction to vendor managed services including 24x7 security operations.
You will manage and lead the vulnerability management program and ensure vulnerability management tooling is running the latest patch versions and up-to-date with the latest vulnerability information. Additionally, you will spearhead the application security program across the software development cycle including collaboration with engineering and dev teams to perform security testing, code reviews and scanning, and security training. The Head of Cyber Defence assists in the architecture, design, evaluation and implementation of new technologies across the organisation based on latest knowledge of the threat landscape. Engaging with
Government (ASD, ACSC, NCSC, NCIP, DHA) and auditors is a key aspect of this position.
You’ll also
- Monitor, detect and respond to cyber security threats and vulnerabilities across Australia Post
- Track relevant threat actors and develop countermeasures for their techniques
- Operate the CIRT 24x7 and develop business cases to support operational uplifts
- Update cyber security tooling and controls with the latest threat information and vulnerability detection logic
- Update cybersecurity tooling and controls to mitigate threats and vulnerabilities
- Identify and report on threat actors, vectors, vulnerabilities and information security risks across Australia Post
- Continuous monitoring of the threat landscape to maintain awareness of emerging vulnerabilities, threats, or attacks
- Develop and enable security use cases for the detection of threats, anomalies and security risks across the organisation
About you
We are seeking a strong communicator who can partner internally with the Enterprise Services teams including ISO, Cloud, Security Engineering, Governance & Compliance and Identity teams, Digital Delivery, IT development, project and support teams will be your key stakeholders. You will provide regular reporting and briefings to executive leadership, including threat trends, risk posture, and incident impacts. Externally you will participate in and liaise with government cyber groups including NCSC, NCIP and Home Affairs. This role also works with InfoSec vendors and contracted service providers for Australia Post, industry peers and government agencies. Service providers, Government agencies including Australia Cyber Security Centre (ACSC) and Law Enforcement are other stakeholder groups.
You’ll also need
- Experience managing security operations 24x7 teams in an operational environment
- Expertise in responding to cyber security incidents and operating a CSIRT within a large, complex organisation
- Knowledge of cyber security frameworks, technologies, operating systems, core technology services, common attack tools, and vulnerability detection/management tools
- Proven ability to foster a positive team environment that encourages knowledge sharing
- Detailed knowledge of Cyber threat landscape and reviewing and responding to cybersecurity advisories from vendors and government agencies
- Ability to influence and collaborate with remote team members, proven delivery, remediation and incident response background
- Understanding of cyber threat detection strategies, attack models, IT security technologies such as malware protection, firewall, IPS, SIEM, web and email gateways.
How we’ll deliver for you
- Play a key role in shaping what the future state of technology looks like at Australia Post
- Immerse yourself in the AP Way - where every single team member partakes in a learning module to help understand the vital role we play in delivering our strategy and purpose.
We’re delivering together
At Australia Post, we acknowledge the Traditional Custodians of the land on which we operate, live and gather as employees.
We believe our business should reflect the diverse communities we operate in and are proud to be an inclusive workplace for people from all walks of life. We encourage applications from people of all ages, genders and backgrounds including Aboriginal and Torres Strait Islander peoples, People with Disability, LGBTQIA+ and Refugees.
We are one of the largest organisations in Australia to successfully achieve Disability Confident Recruiter status. We are committed to providing an inclusive and barrier-free recruitment process and workplace for those living with a disability and are committed to reviewing and removing bias in our processes to create a gender-equitable recruitment experience and workplace. If you have any questions about accessibility, please contact our Diversity & Inclusion team on inclusivecareers@auspost.com.au.
We understand the importance of balancing work and personal life. Speak to us about what flexible work means to you.
See and hear what it's like to be part of our teams in digital tech:
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Application security CISO Cloud Compliance CSIRT Firewalls Governance Incident response IPS Malware Monitoring SIEM Strategy Threat detection Vulnerabilities Vulnerability management
Perks/benefits: Career development Startup environment
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.