Cybersecurity Analyst
- nib Group
- Australia, Cuba
- A$115,000 – A$145,000
About this role
Join a team at the forefront of protecting and shaping the future of technology. As our Cybersecurity Analyst, you’ll sit at the point where new technology meets risk, advising project teams, reviewing solution designs, and making sure security is designed in rather than retrofitted.
This is a second line role. You won’t be building or operating controls. Your job is to review the work of delivery and engineering teams, form your own view of the risk, and say so. That independence is what makes the role useful, and it’s also what makes it demanding. You’ll be influencing teams you don’t control and holding a position when a program is under pressure to move.
A core part of the role is working out what assurance each project needs, from architecture review and penetration testing through to supplier assurance and control review. You’ll arrange the internal teams and vendors who carry that work out, review the quality of what they produce, and track findings through to closure. Where risk remains, you’ll put it in front of the people accountable for accepting it.
You’ll be part of a collaborative Cybersecurity Assurance team that helps guide secure decision-making, provides oversight of technology and cyber risk, and supports the adoption of new technologies in a way that balances innovation with strong security practices. It’s a highly visible role, with reporting that reaches delivery teams, management and Board risk forums.
What you'll be doing
- Partnering with project teams to discover and document security requirements early and embed them into key initiatives and business change.
- Scoping the security services each project needs, including security architecture review, penetration testing, vulnerability assessment, supplier assurance and control review, and maintaining the schedule that delivers them.
- Providing independent cybersecurity and technology risk oversight, assurance and reporting across projects and strategic programs.
- Coordinating internal teams and external delivery partners, including vendor-delivered testing and supplier assurance activity.
- Preparing reporting on assurance status, service demand, risk themes and remediation progress, including input to management and Board Risk Committee papers.
- Supporting internal and external audits through evidence collation and interviews and providing line 2 oversight of finding closure.
- Contributing to the maturity of nib’s Information Security Management System, security policies and control frameworks.
About you
You'll have at least three years' experience in cybersecurity or technology risk and, need to be comfortable reviewing other people's work, forming an independent view, and explaining it clearly to the people who built it.
You're organised. A large part of this role is knowing what assurance work is in flight, what it depends on, who's delivering it and when it lands, then making that visible to everyone from delivery teams through to the Board.
You'll have a strong understanding of cybersecurity principles, including security-by-design, control effectiveness, vulnerability management, access management, data protection and cloud security, and you enjoy partnering with project teams to deliver practical, secure outcomes without creating unnecessary friction.
You’ll bring:
- Excellent written, visual and verbal communication skills, including the ability to explain security requirements, assurance outcomes and risk decisions to technical and non-technical stakeholders.
- Experience scoping, coordinating or overseeing cybersecurity services such as security architecture review, penetration testing, vulnerability assessment, supplier assurance or control review.
- Experience assessing technical risk using a formal framework such as ISO 31000 and reviewing solution designs and assurance outputs to identify security implications, control gaps and remediation expectations.
- Working knowledge of cloud environments and shared responsibility models, particularly AWS and Azure, and the security considerations for SaaS, PaaS and AI-enabled services.
- Familiarity with secure software development lifecycle (SSDLC) practices, and how security controls are applied through development and deployment pipelines.
- Relevant experience and/or qualifications in cybersecurity, technology, risk or a related discipline. Industry certification achieved or in progress is well regarded (CISSP, CISM, CCSP, CRISC, SC-200, AZ-500 or similar).
- Experience working in a regulated or compliance-bound environment, including exposure to APRA expectations such as CPS 234 and CPS 230.
Don't tick every box? If this role excites you and you bring relevant experience, we'd still love to hear from you.
Who we are
nib is a leader in private health insurance, disability support and health services, reshaping the industry through bold innovation, strategic disruption and trusted partnerships. We deliver great value health insurance and support services to protect, connect and empower you to access healthcare when and where you need.
We have a mission and vision of people enjoying better health. Through our success, we aspire to more prosperous and sustainable communities, helping members and travellers make more informed healthcare decisions and generally live healthier lives.
Diversity, equity and inclusion
We embrace a flexible working environment and welcome candidates who reflect the diversity of the communities in which we operate. We're committed to an environment where everyone has the autonomy and freedom to be their authentic selves, every day. We encourage Aboriginal and Torres Strait Islander peoples, people living with disability, veterans, LGBTQIA+ as well as culturally diverse community members to apply for open roles.
We’re committed to creating an accessible recruitment process and employment experience. If you require adjustments to our online application, recruitment, selection and/or assessment process, or would like this advertisement in an alternative format, please contact us at nibemployment @nib.com.au.
Working at nib
Our hybrid working model offers flexibility to work from home or our purpose-built office Hubs, designed for focus, connection, and collaboration. We’re committed to coming together with purpose.
Other benefits to support you at work (and play) include:
- New starter benefit to help set up a functional home workspace
- 50% discount on employee health insurance
- Opportunity to give back with paid volunteering leave supported by the nib foundation
- Access to our nib Well Program and corporate fitness discounts
- Access to employee share plans, short-term incentive program and life and salary continuance insurance benefits
- 18 weeks paid parental leave for all new parents regardless of carer status
- 5 days paid cultural leave for First Nations peoples
- 4 weeks paid gender affirmation leave for trans, gender diverse and intersex employees
The fine print
All your information will be kept confidential according to EEO guidelines. Successful applicants will be required to complete a background check (including criminal history and bankruptcy check) prior to commencement of employment.
We acknowledge Aboriginal and Torres Strait Islander peoples as the Traditional Custodians of the lands where we live, learn and work.
Next steps: If successful, you will receive an email from Sapia.ai inviting you to complete an online, chat‑based assessment.
Skills
- Cybersecurity
- Risk assessment
- Security Architecture Review
- Penetration Testing
- Vendor Assurance
- Stakeholder Management
- Security Compliance



