FIS Global

Analyst Lead, Cybersecurity

FIS Global · Melbourne, Victoria, Australia

IT Services and IT Consulting · 10,001+ employees

18 h ago
Senior (5-10 yrs) Other Full-time Australia
Log in to apply, save this posting, or score it against your profile with AI.

About the role

The role involves leading cybersecurity requirements gathering and analysis while performing business analysis to identify solutions for control gaps and risk-based queries. You will collaborate with stakeholders to shape secure business architecture and prepare governance reporting for internal and external review.

What they look for

Cybersecurity Business analysis Project management Risk management Governance Stakeholder management Compliance Vulnerability management Control frameworks Reporting Information security Technical architecture Requirements gathering Project coordination Operational resilience

Requirements

Candidates should have strong experience in business analysis, project management, or cybersecurity governance within a technology environment. A relevant tertiary qualification in Computer Science, Cybersecurity, or a related discipline is required, along with the ability to engage confidently with senior stakeholders.

Benefits

Medical insurance Employee share scheme Learning and development

Full description

Position Type :

Full time Type Of Hire :

Experienced (relevant combo of work and education)Are you curious, motivated and forward-thinking? At FIS, you will have the opportunity to work on some of the most challenging and relevant issues in financial services and technology. Our talented people empower us, and we believe in being part of a team that is open, collaborative, entrepreneurial, passionate and above all fun.

About the Role:

We are seeking a Cybersecurity Analyst Senior to support strategic cybersecurity, risk and governance activities for a significant banking client. This is a varied role that blends business analysis, project delivery, cybersecurity governance and client-facing assurance. You will work closely with client stakeholders, product teams, technology teams and security SMEs to translate cybersecurity requirements into practical, trackable outcomes.

The role will help define, maintain and improve the way product and service solutions are assessed, governed and delivered against cybersecurity requirements. It is well suited to someone who can operate across business and technical stakeholders, understands cyber risk and control expectations, and can bring structure, clarity and momentum to complex initiatives.

Key Responsibilities

  • Lead requirements gathering and analysis for cybersecurity requirements across applications, infrastructure, network services, controls and operational processes.
  • Perform business analysis of client needs and internal requirements, identifying solutions for non-standard tasks, control gaps and risk-based queries.
  • Collaborate with senior client stakeholders, product managers, delivery teams and technical architects to shape secure business architecture and implementation outcomes.
  • Review functional designs, business process designs and solution artefacts to identify cybersecurity risks, missing requirements, control gaps or implementation dependencies.
  • Track security requirements, risks, vulnerabilities, exceptions and remediation actions through to accountable ownership and closure.
  • Prepare governance reporting for internal and external stakeholders, including incident, risk, vulnerability, exception, control gap and remediation reporting.
  • Support client assurance activities by contributing to clear responses, evidence gathering and status updates against cybersecurity obligations and agreed commitments.
  • Work along with the team to help drive consistent cyber risk management practices across stakeholders by improving documentation, issue tracking, reporting cadence and decision visibility.

What You Will Need:

  • Strong experience in business analysis, project coordination or project management, ideally within a PMO, technology delivery or cybersecurity governance environment.
  • Demonstrated exposure to cybersecurity, technology risk, systems governance, control frameworks and operational reporting.
  • Ability to engage confidently with senior stakeholders, clients, product teams, technical architects and delivery teams.
  • Strong written communication skills, with the ability to produce concise governance updates, risk summaries, meeting outputs and client-ready documentation.
  • Practical understanding of risk, vulnerability, incident, control gap or remediation management processes.
  • Ability to translate technical and cybersecurity requirements into business actions, ownership, milestones and measurable outcomes.
  • A relevant tertiary qualification in Computer Science, Cybersecurity, Information Systems, Business Analysis, Project Management or a related discipline, or equivalent professional experience.

Bonus If You Have:

  • Knowledge of industry standards and assurance frameworks such as ISO 27001, SOC 2, PCI DSS, or similar regulatory and control frameworks.
  • Experience working with banking, financial services, fintech or highly regulated client environments.
  • Experience with governance, risk and compliance tooling, vulnerability management processes, risk acceptance workflows or audit evidence management.
  • Familiarity with cloud, infrastructure, network security, application security or operational resilience concepts.
  • Relevant certifications such as CISSP, CISM, CISA, PMP, PRINCE2, or business analysis certifications.

What We Offer You:

A career at FIS is more than just a job. It is a chance to shape the future of fintech. At FIS, we offer you:

  • Always-on learning and development.
  • A flexible, hybrid work environment.
  • Competitive salary and benefits, including medical insurance and an employee share scheme.

#LI_TC2

Privacy Statement

FIS is committed to protecting the privacy and security of all personal information that we process in order to provide services to our clients. For specific information on how FIS protects personal information online, please see the Online Privacy Notice.

Sourcing Model

Recruitment at FIS works primarily on a direct sourcing model; a relatively small portion of our hiring is through recruitment agencies. FIS does not accept resumes from recruitment agencies which are not on the preferred supplier list and is not responsible for any related fees for resumes submitted to job postings, our employees, or any other part of our company.

#pridepass