Commonwealth Bank
Manager, Third Party Cyber Incident Response
To empower our people and the communities in which we work and making sustainable, transparent and balanced business decisions.
Software engineering
Full-time
Office | Sydney, NSW, Australia
Visa sponsorship · No
Mid Level · A role for someone with some well-developed knowledge and skills they can bring to the role and team. Typically within 2-5 years of experience.
·
Why Commonwealth Bank
We really love working here, and we think you will too. Diversity, flexibility and innovation are just some of the reasons why our people come to work every day.
Our team includes around 45,000 people from all walks of life, with different goals, experiences, and perspectives. At CommBank we’ll encourage and support you to be yourself. This is a place where you can feel confident expressing who you really are; where you belong because of your uniqueness.
About the role
See yourself in the team Cyber Security protects the Bank and our customers from theft, losses and risk events, through effective and proactive management of cyber security, privacy and operational risk. The Third Party Cyber Incident Management team protects the Group and our customers from theft, losses and risk events, through effective and proactive management of cyber security incidents, threats, privacy and operational risk. The team is passionate about identifying opportunities to leverage existing and new technologies to mitigate risks that span across cyber, fraud and protective security domains. Do work that matters You will be a member of a highly motivated team responsible for the consistent, transparent and sustainable implementation and maintenance of the Third Party Cyber Incident Response Plan within the Operational Risk Management Framework across the Group globally. Your impact and contribution You will be responsible for:
- Advising and supporting a diverse range of stakeholders on management of Third Party cyber incidents in accordance with the Group’s Third Party Cyber Incident Response Plan.
- Maintaining and using your broad technology, cyber security, and management skills to effectively assess potential cyber impacts to the Group and coordinate and/or escalate to other cyber security teams and business units as required.
- Responding to and managing reported incidents, notifications and advisories of Third Party Cyber Incidents in a timely and consistent manner.
- Managing the implementation of corrective, mitigation and remediation for Third Party Cyber Incident Management and significant supply chain threats.
- Maintaining strong partnerships within Cyber Security, our stakeholders and suppliers, fostering a collaborative environment.
- Monitoring and analysing key intelligence points to ensure timely management of Third Party cyber incidents
- Building awareness of Cyber Security Third Party Incident Management across the Group, educating business stakeholders, delivery teams and internal response functions.
- Providing accurate and succinct reporting for management and governance oversight.
- Driving improvements in the operational response to third party cyber incidents. We are interested in people who have:
- Ideally technical experience of working on cyber incidents (and/or High Priority Incident Management).
- Degree / qualification in Cyber Security or a related discipline (eg. CISM or any GIAC certification).
- Clear oral and written communication skills, including the ability to influence across a range of stakeholder groups.
- Understanding and use of Risk Management Frameworks and ability to comprehend, interpret and apply complex legislative requirements .
- Have broad knowledge of relevant local and international legislation and regulations, including CPS 234, Privacy Act 1988, GDPR, and the SOCI Act.
- Decision making skills to deliver the right outcomes for the Group, its customers and the community.
- Strong technical ability across technology and cyber security to analyse and respond to trends, critical threats and opportunities. You will have experience of being able to analyse problems and issues and recommend appropriate actions.
What you'll be responsible for
- 🔀
Technology Solution Design and Development
Design and develop customized technology solutions, such as software applications, databases, networks, and platforms
- 🖥
Technology Implementation
Manage technology implementation projects, including budget, timeline, and resources
- 💬
Client Communication and Relationship Building
Communicate with clients and stakeholders to build relationships, gather feedback, and ensure satisfaction with services
Skills you'll need
- 🤔
Decision Making
Considers the costs and benefits of potential actions and determines the most appropriate one
- 💭
Critical thinking
Identifies and synthesizes patterns and trends amongst various sources of information to reach a meaningful conclusion, perspective or insight
- 💡
Problem solving
Identifies problems and develops logical solutions that address the problems