BR

Cyber Business Analyst (Multiple Roles)

Hiring from
Australia
Work type
Remote
Posted
Oct 1, 2026
Is this job info correct?

12-month contracts | Brisbane preferred | Remote from Sydney or Melbourne


We are currently recruiting for two Business Analyst opportunities supporting a large, multi-year Cyber Uplift Program within a complex enterprise environment.


We are looking for experienced Cyber BAs who can work across cyber SMEs, architects, technical teams and business stakeholders to translate security requirements, risks and obligations into practical delivery outcomes.


Senior Cyber Business Analyst

This role focuses on security requirements engineering, cyber controls, compliance traceability, secure-by-design and trusted information across complex IT and OT environments.


You will work across cyber uplift workstreams to:

  • Elicit and manage functional, non-functional, technical and control requirements
  • Translate cyber risk, regulatory obligations and security standards into practical requirements and controls
  • Develop compliance and requirements traceability across design, implementation and audit evidence
  • Support secure-by-design, architecture governance and design assurance activities
  • Develop process models, control documentation, business rules, user stories and acceptance criteria
  • Work with cyber SMEs, architects, security operations, OT and delivery teams
  • Support testing, implementation, operational readiness and transition to BAU
  • Prepare decision papers, business cases, benefits analysis and executive reporting

Experience across IAM, DLP, PKI/certificate lifecycle, secure-by-design, AES-CSF, SOCI, NIST CSF, ASD ISM or Essential Eight will be highly relevant.


Technical Business Analyst – Cyber

This role has a stronger focus on cyber operations, threat and vulnerability management, detection and response and security operations.


You will work across cyber uplift initiatives to:

  • Elicit and manage technical, functional, non-functional and control requirements
  • Support threat and vulnerability management and cyber detection and response capability uplift
  • Translate cyber risk and compliance obligations into controls, processes and system requirements
  • Conduct cross-functional discovery and detailed reconciliation across security and IT telemetry
  • Support SOC integration, incident response processes and cyber response playbook development
  • Develop process models, traceability matrices, control documentation and transition artefacts
  • Support service transition, operational readiness, risk acceptance and governance reporting
  • Work with cyber SMEs, security operations, architects, OT stakeholders and delivery teams
  • Support testing, implementation and transition of capabilities into BAU

Experience across SIEM/EDR, vulnerability management, SOC operations, incident response, MITRE ATT&CK and cyber control frameworks will be particularly relevant.


Across both roles, you will need:

  • Proven Business Analysis experience within complex enterprise environments
  • Genuine experience working on cyber security programs or security uplift initiatives
  • Strong requirements elicitation, analysis and lifecycle management skills
  • Experience translating technical and security requirements into practical delivery outcomes
  • Strong stakeholder management across business, technical and cyber teams
  • Experience producing requirements documentation, process maps, traceability matrices, user stories and acceptance criteria
  • Experience supporting testing, implementation, operational readiness and transition
  • Ability to work across Agile and Waterfall delivery environments
  • Strong written and verbal communication skills


Contract Details

  • 12-month contract
  • High likelihood of extension
  • Brisbane preferred, with fully remote options available for candidates based in NSW or VIC
  • Brisbane travel required for the first week, with further travel potentially required during the engagement
  • Travel and accommodation arranged where required
  • Complex, multi-year Cyber Uplift Program


If your background aligns with either the cyber security/controls focus or the technical cyber operations focus, please apply with your current resume outlining your relevant experience.


Contact Nat 0430 292 875 or natalie@blackroc.co


Similar jobs

Apply on LinkedIn