Megaport is seeking a Senior Cyber Security Analyst to lead governance, risk management and compliance from Brisbane, driving ISO27001:2022 and SOC 2 Type 2 programs, mentoring analysts and coordinating with legal and business teams to align controls with global objectives. With 3-5 years in a cyber security GRC role, you will interpret regulatory docs, support audits and assist with customer security questionnaires, backed by sharp research, analytical and organizational skills and English at B2 or higher. You’ll thrive in a fast, global environment and be familiar with Jira, Confluence, Vanta or OneTrust, plus HIPAA, NIS2, DORA and APRA CPS 230/234. To apply, tailor your resume to concrete audit outcomes and use official Megaport channels.
We are seeking a Senior Cyber Security Analyst to help drive the governance, risk management, and compliance strategies to protect our critical information systems and assets. Based in our Brisbane headquarters, you will join a collaborative team of GRC specialists focused on securing Megaport’s global business.
Reporting to the Head of Cyber Security Compliance, you will bridge the gap between technical security controls and global business objectives. You will support the maintenance and improvement of our existing security compliance frameworks with a specific focus on ISO27001:2022 and SOC 2 Type 2 and actively assist with assessing new certifications to support business growth.
Customer-first always
Integrity > everything
Small teams, huge outcomes
We celebrate curiosity, collaboration, and a can-do attitude
Success gets loud cheers—see our “Legend” & “Kudos” awards 🏆
If you thrive in a fast, globally distributed environment (and appreciate a good meme), you’ll feel right at home.
Lead the security compliance certification activities such as ISO27001:2022 and SOC 2 Type 2.
Mentor cyber security analysts in the team and provide support where required.
Prepare reports and documentation to support cyber security and privacy incident investigations, regulatory compliance activities, and internal compliance processes.
Assist with customer security assurance activities such as responding to customer security and privacy questionnaires.
3-5 years experience in a Cyber Security GRC role.
Experience with leading ISO27001 and SOC 2 Type 2 certification programs, including supporting internal and external audit activities.
Ability to interpret legal or regulatory documentation and coordinate responses with internal teams and legal counsel.
Strong research, analytical, and organisational skills, with excellent attention to detail.
Intermediate to advanced English proficiency (B2 or higher) for handling international notifications and communications.
Comfortable working in a fast-paced, global environment, collaborating across teams and regions.
Experience with compliance, monitoring, or workflow tools (e.g., Jira, Confluence, Vanta or OneTrust.
Familiarity with global regulations and standards such as HIPAA, NIS2, DORA, and APRA CPS 230/234.
#LI-DNI