Provide 24x7 on-call support to all IT Security Firewall infrastructure to ensure the continuous availability of security services.
Provide operational input to design and quality assurance of IT Security solutions
Execute implementation plans for regular installations of hot-fixes and upgrades to the IT Security Firewall Management environment
Perform rulebase clean-ups and regular reviews of business-as-usual requests
Execute the installation and review of new versions of key software for the IT Security Firewall Management environment
Review and report on the performance of environment from a capacity planning perspective.
Review and action audit results and make appropriate changes to the environment to maintain effective security, confidentiality and integrity.
Maintain and support a comprehensive infrastructure framework for IT security within the Australian Region. The framework will define a comprehensive set of standard operational processes and procedures, support capability, and include performance metrics and reporting (daily, weekly, monthly, quarterly, etc).
Support an advanced security assessment and response capability by ensuring the continuous availability of security firewall infrastructure.
Assist in the establishment of a comprehensive security firewall infrastructure capability with a common, reusable set of processes.
Demonstrate highest professional and ethical behaviour in own actions by ensuring compliance with external legislation, regulatory requirements, bank standards and internal operating policies and procedures relevant to the position.
Sustain own professional development and ensure all personal training records are maintained and kept up to date.
Assist in the development of specialised proposals and detailed technical evaluations of products and techniques to meet business needs
Investigate security firewall infrastructure problems, and provide coordination of resolution with the business; technology; and vendors as required
Provide assistance in maintaining confidentiality, integrity, and availability of the environment through the review, analysis and actioning of log events.
Assist in supporting specific project goals by providing expertise and technical assurance for key system components to ensure the integrity of design.
Monitor the execution of tasks associated with security firewall infrastructure in response to business requirements, ensuring that the integrity and quality of the operating environment is maintained at all times.
Build effective relationships with colleagues, users and suppliers which enable effective partnerships.
Establish processes and standards and continually improved for supported disciplines.
Develop substantive expertise in alternative and complementary hardware and software offerings to enhance understanding of potential security systems.
JOB SPECIFIC SKILLS
Extensive IT security experience with emphasis on optimising the efficiency and effectiveness of security infrastructure (at least 3 years experience in a security discipline)
Knowledge and understanding of banking and finance, including industry trends and technology adoption.
Knowledge of, and experience in IT governance, including industry frameworks such as ITIL and COBIT and relevant Australian and international standards.
Knowledge and understanding of legislative and regulatory requirements relating to banking and finance IT.
Thorough understanding of current and emerging IT security threats, relevant IT security solutions, and limitations of such solutions. This requires a good understanding of IT security protocols and standards, IT security products (commercial and open source) and services and IT security best practice.
Ability to structure, plan and deliver very large and complex changes within an IT security infrastructure environment.
Skill and competency in vendor, contract and service management..
Proven communication, negotiation and relationship management skills.
Sound understanding and experience in the practical application of risk management concepts, principles and strategies, and industry standards for risk management
Suitable tertiary qualifications in technology. Bachelor degree in Computer Science field would be highly favourable. A CISSP; CCSE; and/or GIAC Security Certification would be highly regarded.