Team Lead, Vulnerability & Posture Management
Why This Role Stands Out
As a Team Lead in Vulnerability & Posture Management at the Reserve Bank of Australia, you'll drive critical cyber resilience initiatives and shape the future of Australia's central bank in a hybrid environment. This role is ideal for a motivated mid-senior professional passionate about leading a team, developing strategic security practices, and making a significant impact on national financial security. You will be instrumental in enhancing the Bank's cyber posture, making this a rewarding opportunity for growth and leadership.
Quick Overview
Job Description
Play an important part in shaping the future of Australia's central bank.
About the TeamThe Vulnerability & Posture Management (VPM) team is part of the Reserve Bank's Cyber Security function and plays a critical role in strengthening the Bank's cyber resilience. The team is responsible for vulnerability management, security posture management, compliance assessment, secure configuration governance, exposure management and the continual reduction of cyber risk across the Bank's technology environment.
Reporting to the Manager, Vulnerability & Posture Management, you will lead a team of Cyber Security Analysts and work closely with various technology teams including Infrastructure, Cloud, Identity, Security Architecture, and Project Delivery teams. Together, you will drive security posture improvements, mature cyber risk management practices and ensure security controls remain effective, sustainable and aligned with the Bank's risk appetite and regulatory obligations.
About the RoleAs Lead Cyber Security Analyst, you will provide technical and people leadership across vulnerability, exposure, compliance and security posture management. You will help shape the Bank's vulnerability and posture management strategy, working with cyber security, technology and business stakeholders to prioritise and remediate risks, drive strategic initiatives and strengthen cyber resilience.
Key Responsibilities- Lead the Bank's vulnerability management and security posture management capabilities, including vulnerability identification, assessment, prioritisation, remediation governance and executive reporting.
- Lead the vulnerability response to significant exposure events, including critical vulnerabilities, large-scale exploitation campaigns, and emerging threats.
- Drive the continual improvement of vulnerability management, compliance assessment and exposure management processes across enterprise technology environments.
- Provide technical leadership for vulnerability and posture management platforms, including Tenable and related security assessment technologies.
- Prioritise remediation mobilisation efforts using risk-based prioritisation based on exploitability, asset criticality, threat intelligence and business impact.
- Collaborate closely with Infrastructure, Cloud, End User Services, Identity, Security Architecture and Service & Asset Owners to deliver effective cyber risk reduction outcomes.
- Partner with business, technology and cyber teams to embed secure configuration standards and vulnerability management practices across the enterprise.
- Develop and maintain security standards, operational procedures, metrics and reporting frameworks that support cyber risk management objectives.
- Support audits, regulatory reviews, control assurance activities and risk assessments related to vulnerability and security posture management.
- Provide expert advice and guidance on cyber security risks, remediation strategies and security control effectiveness.
- Lead, mentor and develop Cyber Security Analysts, fostering a high-performing, collaborative and continuously improving team culture.
- Contribute to strategic cyber security initiatives and the ongoing maturity of the Bank's cyber security capabilities.
You are an experienced cyber security professional with a strong background in vulnerability and posture management and cyber risk reduction within complex enterprises. You combine deep technical expertise with strong leadership and stakeholder engagement skills to drive measurable security and risk reduction outcomes by partnering with business technology and cyber security teams.
To be successful in this role, you will demonstrate:
- Extensive experience leading enterprise Vulnerability and Posture Management programs within large and complex environments as well as leading large-scale vulnerability response campaigns.
- Excellent stakeholder engagement and communication skills, with the ability to translate complex technical risks into business-focused recommendations to influence remediation outcomes and drive cross-functional collaboration across large organisations.
- Hands-on expertise with vulnerability management platforms such as Tenable, Qualys, Rapid7 or equivalent technologies.
- Working knowledge of Microsoft security technologies, including Microsoft Defender Vulnerability Management, Microsoft Sentinel or equivalent enterprise security platforms.
- Strong knowledge of vulnerability assessment, remediation governance, risk-based vulnerability prioritisation methodologies and cyber exposure management practices.
- Experience with Exposure Management, External Attack Surface Management (EASM), Identity Posture Management, Cloud Security Posture Management (CSPM), and Continuous Threat Exposure Management (CTEM) methodologies.
- Strong understanding of secure configuration standards, system hardening and security baseline governance including working knowledge of security frameworks and standards such as Essential Eight, ASD ISM and CIS Benchmarks.
- Experience working across on-premises, cloud and hybrid technology environments.
- Strong understanding of cyber risk assessment methodologies and risk-based decision making.
- Experience supporting internal audits, regulatory reviews and control assurance activities.
- Working knowledge of ITSM tools such as ServiceNow to automate remediation workflows, improve risk visibility and accelerate vulnerability management outcomes.
- Tertiary qualifications in Cyber Security, Information Technology, Computer Science or a related discipline is preferred.
- Industry certifications such as CISSP, CISM, CRISC, GIAC, Tenable Certified Professional or Microsoft Security certifications is highly regarded.
Be More Working for an organisation that truly makes a difference to the people of Australia, we can offer development and career opportunities in a collaborative environment that supports your growth, wellbeing and promotes flexibility. Your individual growth and success drive the RBA forward as an organisation. Be more means you can do more, for yourself and for Australia.
Why RBA? The RBA makes an important contribution to the Australian economy through the pursuit of national economic policy objectives and associated activities in financial markets and banking. We also issue Australia's banknotes and operate infrastructure critical to the payments system, all of which contribute to the welfare of the Australian people. Made up of specialists across a wide range of fields, our people, values, and culture play a critical role in achieving our objectives. Striving to be Open & Dynamic, we consider and incorporate different perspectives, work across teams and are transparent with each other, whilst delivering quality together effectively and focusing on outcomes by prioritising, testing, learning, and refining as we go. We know it is the growth and success of our people that drives the RBA forward. Come and make a bigger contribution while you build and develop your own skills too, because being more means you can do more, for yourself and for Australia.
The Reserve Bank of Australia is committed to equity, diversity and inclusion through key initiatives. We welcome and encourage applicants from diverse backgrounds to apply, including Aboriginal and Torres Strait Islander peoples, culturally and linguistically diverse background, those living with a disability and from the LGBTQ+ community. We are committed to making the recruitment process fair and equitable for all our candidates.
Application Close : October 05, 2026 .
Similar jobs
- BI
Project Manager
NewBrennan IT Intranet
Sydney, New South Wales🇦🇺Hybrid21 minutes agoOperations & Project Management - VI
Project Manager
NewVirtual IT Group
Melbourne, Victoria🇦🇺Hybrid21 minutes agoOperations & Project Management - AS
Hybrid Business Analyst for Regulatory Tech & Transformation
NewAustralian Securities & Investments Commission
Melbourne, Victoria🇦🇺A$136.2k - A$149.3k/yrHybrid21 minutes agoOperations & Project Management - JO
Senior IT Program Manager - Delivery & Transformation
NewJobtailor
Brisbane, Queensland🇦🇺Hybrid21 minutes agoContinuous ImprovementStakeholder ManagementOperations & Project Management - AS
Senior Business Analyst - Hybrid Work, Regulatory Tech
NewAustralian Securities & Investments Commission
Melbourne, Victoria🇦🇺A$136.2k - A$149.3k/yrHybrid21 minutes agoOperations & Project Management - TN
Payments Business Analyst
NewTNS
Adelaide, South Australia🇦🇺Hybrid21 minutes agoScrumAgileOperations & Project Management