Senior Cyber Security Analyst
- Hybrid Sydney CBD
- Permanent full time
Join Avant's Cyber Defence team as a Senior Cyber Security Analyst and play a key role in safeguarding the systems, data and services relied upon by more than 90,000 medical professionals across Australia.
Reporting to the Senior Manager, Cyber Defence, you will combine deep technical expertise with a proactive, hands-on approach to lead threat detection and response, vulnerability management, threat intelligence and security operations activities. Working in a highly regulated environment, you'll help strengthen Avant's security posture while contributing to the ongoing evolution of our cyber defence capability.
Key responsibilities:
Threat Detection and Response & Threat Hunting
- Work with the Senior Manager, Cyber Defence as the escalation point for intrusion detection across hybrid on-premises and cloud environments, leading end-to-end incident response, post-incident review (PIR), and root-cause analysis.
- Conduct deep-dive forensic analysis, event and IOC correlation across multiple data sources to identify adversary TTPs and mitigate emerging threats.
- Manage and utilise threat intelligence feeds, incorporating intelligence into proactive threat hunting activities and analytics rules.
- Develop, maintain and continuously refine incident response plans, custom detections and playbooks to strengthen monitoring and response capabilities.
- Leverage scripting and AI enabled automation tools to build resilient detection use cases, accelerate risk reduction efforts and minimise manual operational effort.
Capability Ownership & Operational Governance
- Oversee vulnerability and exposure management activities. Identify, assess and prioritise vulnerabilities across systems, applications and infrastructure. Work with Platform Delivery teams to ensure timely remediation.
- Review configurations, maintain and optimise security tools whilst identifying opportunities for improvement with a deep focus on automation.
- Act as the primary technical contact for external security partners and MSSPs, facilitating operational escalations, monitoring SLAs and ensuring seamless handoffs during incident responses.
- Work with partner teams to improve detection coverage and feed operational learnings into system design and control implementation.
- Produce KRI reporting, dashboards and data insights to communicate security posture and operational performance to key stakeholders.
Skills and experience required:
- Minimum 5+ years of experience in Information Security, with at least 2 years in a senior analyst role.
- Experience within regulated industries (e.g. financial services, healthcare) subject to APRA CPS234 or ISO 27001 requirements is strongly preferred.
- Extensive hands-on experience with SIEM platforms, EDR tools and security monitoring technologies to perform threat detection, event correlation and root-cause investigations.
- Deep understanding of incident response methodologies, digital forensics, threat intelligence frameworks (e.g. MITRE ATT&CK, STIX/TAXII). Experience in threat hunting, purple team exercises or red teamengagements is advantageous.
- Experience with vulnerability management platforms and exposure management tooling.
- Proven experience with security automation and scripting using tools to support orchestration and response activities.
- Working in cloud environments with understanding of logging, monitoring and security controls.
- Relevant industry certifications highly regarded (GCFA, GCIH, Security+ or equivalent)
- Excellent verbal and written communication skills, with ability to present technical findings clearly to both technical and non-technical stakeholders.
Why join Avant?
Avant is Australia’s leading medical defence organisation, proudly supporting medical professionals for over 130 years. With more than 90,000 members, including health practitioners and medical students across every state and territory, we provide trusted, market-leading products and services tailored to their professional, personal, and practice needs.
This is an opportunity to work in a purpose-driven organisation where cyber security directly supports the delivery of essential services to Australia's medical community. You'll work alongside experienced security professionals, influence security strategy, and help strengthen the resilience of a highly regulated environment.
For further information, please contact Sue Allen, Talent Acquisition Business Partner on 0429 404 856.