Commonwealth Bank

Head of Security, x15ventures

To empower our people and the communities in which we work and making sustainable, transparent and balanced business decisions.

  • Software engineering

  • Full-time

  • Office | Sydney, NSW, Australia

  • Visa sponsorship · No

  • Senior · A role for someone with advanced knowledge and skills. May involve mentoring, leading others or specialisation. Typically at least 5 years of experience.

  • ·

Why Commonwealth Bank

We really love working here, and we think you will too. Diversity, flexibility and innovation are just some of the reasons why our people come to work every day.

Our team includes around 45,000 people from all walks of life, with different goals, experiences, and perspectives. At CommBank we’ll encourage and support you to be yourself. This is a place where you can feel confident expressing who you really are; where you belong because of your uniqueness.

About the role

What it’s like to work here We’re a community of galvanisers, thinkers, and doers. We have a big, bold vision, which so far no-one has nailed (including us). That excites, rather than deters, us.

We never lose sight of the impact we can have on people’s lives, and the role that each of us plays in shaping the bank of the future. We don’t take ourselves too seriously and make time to connect to celebrate and grow our people.

At x15, we’re guided by three values: Care, courage, and commitment. And what does that mean? We’re aware, attuned, and always act to help our people and our customers. We’re more than just job titles and we don’t hide the human stuff. We lead with grit and grace and do what's right – even if it's hard. And, whatever happens, we always find a way.

Role Overview As Head of Security for x15, you are senior executive who oversees the information, cyber, and technology security. This includes developing, implementing, communicating and enforcing security policies and solutions.  In this role you need to establish, maintain and execute the cyber business strategy for x15. This includes leading cyber innovation and supporting ventures in designing and implementing customer centric solutions that are safe sound and secure.  

The outcome will include greater levels of security maturity in terms of network, cloud, monitoring, data scanning, etc using industry frameworks. A security risk a control environment that is understood, documents and well managed.  An articulate and active voice in management decision making and prioritisation. Strong relationships with Group experts including alignment on approach.   Key Responsibilities include:

  • Designing and implementing x15’s security program including compliance with policies, standards and regulation
  • A senior leader who drives alignment in security and venture objectives in a format that is easy to consume by management, Groups experts and the broader team
  • Managing security operations across identify, protect, detect, respond and recover  
  • Plays a senior role in managing third party threats and opportunities with a multi-disciplinary team   
  • Leads security awareness and training across and evolving internal and external landscape
  • Establishes a bench strength leadership for Cyber security and a team of empowered and engaged staff
  • Promotes and culture of strong security whilst also effectively managing the budget

Experience The ideal candidate will bring the following qualifications and expertise:

  • End-to-end leadership of a high performing security team including experience with security tooling and technology
  • Subject matter expertise in product security, network security and risk management
  • Experience in Security Engineering and ethical hacking skills including offensive security, reverse engineering, red team/ blue team or pen testing.
  • Knowledge of security standards, compliance criteria, and security frameworks (e.g., NIST, Essential 8 and APRA)
  • Strong strategic thinking and leadership skills including problem solving and decision making
  • Great interpersonal and communication abilities including translating security complexities and risk into a set of business decisions for executive management and Committees, verbally and in writing  
  • Working collaboratively across the three lines of accountability and delivering sustainable results within risk appetite
  • Project administration and managing high performing teams

Desired Skills

  • Research shows that people from underrepresented backgrounds sometimes hesitate to apply for roles if they don't meet every requirement.
  • OSCP or Red teaming certification

What you'll be responsible for

  • Stakeholder Engagement

    Partner with stakeholders to understand specifications, business requirements, and communicate insights

  • 🤖

    Scripting and Automation

    Develop scripts and automated workflows to improve the efficiency and accuracy of repeated tasks

  • 🛠

    Test Automation

    Create and implement code tests and software test automation

Skills you'll need

  • 👥

    Collaboration

    Works with others by being open, clear in communication and listening to achieve goals

  • 🧮

    Numerical problem solving

    Works with numerical information and performs mathematical calculations to solve problems

  • 🔍

    Attention to detail

    Accurately identifies and rectifies discrepancies or errors that exists in information and deliverables

Meet the team

Avatar
Engineering

Commonwealth Bank