05 Aug
|
Wentworth Institute of Higher Education
|
New South Wales
05 Aug
Wentworth Institute of Higher Education
New South Wales
Wentworth Institute of Higher Education – Surry Hills NSWEmployer:Wentworth Institute of Higher Education (WIN)Location:Sydney Campus (Level 1–5, ******* Elizabeth Street, Surry Hills NSW ****) with regular support for Canberra Campus (Level 1, 15 Moore Street, Canberra ACT ****)Position : Cyber Security AnalystPosition Type:Full-time (38 hours per week)Salary Range:$90,000 – $110,000 per annum plus superannuation (commensurate with experience)About Wentworth InstituteWentworth Institute of Higher Education (WIN) is a registered higher education provider (TEQSA) delivering industry-relevant Bachelor and Master programs in Business, Professional Accounting, Information Technology, and Interactive Media.
With campuses inSydneyandCanberra, WIN serves over 2,000 domestic and international students through face-to-face delivery.
The Institute operates aMoodle-based learning management system for assessment submission and course content delivery,EduLab virtual cloud-based computer labswith Windows 10 and KALI Linux environments for IT practical training, and comprehensive student management systems handling enrolments, fee payments, and academic records.
WIN is committed to maintaining a secure digital workplace in compliance with TEQSA registration conditions and Australian privacy principlesPosition OverviewWe are seeking a skilled and proactiveCyber Security Analystto safeguard WIN's information systems, networks, and data assets across both campuses.
The role focuses on protecting student and institutional data, securing online learning platforms (Moodle and EduLab environments), supporting cybersecurity-related teaching activities, and ensuring regulatory compliance with TEQSA and Australian privacy standards.Key Responsibilities1.
Protection of Student and Institutional DataConduct comprehensive security assessments on WIN'sstudent management systems(handling enrolments, academic records, fee payments, and timetabling)andadministrative databasesto identify and remediate vulnerabilities that could compromise the confidentiality and integrity of student and staff data.Monitor, investigate, and respond to security alerts and incidents affecting WIN's digital learning and administrative environments inreal time, delivering root‐cause analyses and detailed incident reports to senior management.Develop, implement, and enforceinformation security policies, procedures, and recovery strategiesto comply with Australian privacy principles, TEQSA registration conditions, and the ACSC Essential Eight framework.Perform regularprivacy impact assessmentson systems handling personal information of students and staff, ensuring compliance with the Privacy Act **** (Cth).2.
Protection of Teaching and Learning InfrastructureSecure WIN'sMoodlelearning management system by conducting regular vulnerability scans, reviewing access controls, monitoring for unauthorised activity, and ensuring secure upload and storage of student assessments.Protect theEduLab virtual cloud-based computer labs(Windows 10 and KALI Linux environments) used for practical IT training by implementing network isolation, access controls, and regular security hardening of virtual machine images.Perform regularvulnerability scanning, penetration testing, and firewall/network security configurationsacross WIN's campus networks (Sydney and Canberra),wired and wireless infrastructure, student and staff Wi‐Fi networks, and e‐learning platforms.Configure and maintainsecure remote accesssolutions for staff and distance students, ensuring encrypted communications and multi‐factor authentication where appropriate.Manage security ofweb systemsincluding WIN's public website, student portals, and online application systems, conducting regular security reviews and patch management.3.
Support for Cybersecurity and ICT EducationMaintainisolated and secure teaching environmentswithin the EduLab platform to allow students to practise networking and security concepts without risk to production systems.Collaborate with academic staffto design and deliver security-related practical exercises, including network configuration, vulnerability assessment, and incident response simulations using KALI Linux and other security tools.4.
Risk Management and Regulatory ComplianceConduct regularrisk assessmentsto identify security loopholes and weaknesses in WIN's IT systems, with particular attention to systems handling student enrolments, fee payments, academic records, and assessment submissions.Develop and maintainbusiness continuity and disaster recovery plansto ensure the resilience of WIN's teaching and administrative operations across both campuses.Ensure WIN's cybersecurity posture aligns withTEQSA registration conditions, the ACSC Essential Eight framework, and other relevant regulatory requirements for higher education providers in Australia.Documentemerging cyber threats and trendsrelevant to the higher education sector, producing actionable intelligence to strengthen WIN's defences against ransomware, phishing attacks, data breaches, and business email compromise targeting students and staff.5.
Security Operations and Incident ResponseAnalyse alerts and data fromsecurity products,
network security devices, vulnerability scan systems, and intrusion detection systemsdeployed across WIN's ICT environment.Coordinateincident response activities, including containment, eradication, and recovery from security breaches affecting WIN's systems and data.Assess damage from past security events and recommendrecovery tools and process improvementsto reduce future risk exposure.Manage WIN's overallICT security posture, including preventive controls, threat detection rules, and security awareness training for staff and students.Conduct regularsecurity awareness campaignstailored to the higher education environment, addressing topics such as phishing identification, password hygiene, and secure use of institutional systems.6.
Stakeholder Collaboration and AdvisoryCollaborate withacademic and administrative stakeholdersto validate security requirements arising from new course implementations, system upgrades, and the adoption of new teaching technologies (e.g., new LMS features, virtual lab enhancements).
Providestrategic and operational information security adviceto ICT leadership and Institute management.Work closely with theAcademic Support Systems Managerto ensure secure operation of Moodle, email systems, and software applications used by staff and students.Liaise withexternal security service providers and vendorsto ensure the effective delivery of managed security services and timely resolution of security incidents.Promote awareness of emerging cyber security threats and their potential impact on WIN's internal and external environment.Selection CriteriaBachelor's degree or higher in Cybersecurity, Information Technology, Networking, or a related field.Proven experience in cyber security analysis, vulnerability assessment, or a similar role.Strong knowledge of network security principles, firewall configuration, and vulnerability scanning tools (e.g., Wireshark, Nessus, Nmap).
Demonstrated ability to develop security policies, conduct risk assessments, and implement security controls.Excellent analytical, problem-solving, and report‐writing skills.Strong communication and collaboration skills, with the ability to work effectively across academic and administrative teams.Personal Attributes:Strong learning agility and adaptability to evolving technologies and threat landscapes.Ability to perform under pressure and meet deadlines.Team‐oriented with excellent organizational and coordination skills.Proactive approach to identifying and mitigating security risks.Be careful - Don't provide your bank or credit card details when applying for jobs.
Don't transfer any money or complete suspicious online surveys.
If you see something suspicious, report this job ad .
#J-*****-Ljbffr
📌 Cyber Security Analyst (New South Wales)
🏢 Wentworth Institute of Higher Education
📍 New South Wales