Senior Cyber Security Analyst
About Megaport
We’re not your typical tech company – and we don’t want to be. Megaport is the global leader in Network as a Service (NaaS), and has transformed the way businesses connect to the cloud, data centers, and each other. We’re publicly listed on the Australian Stock Exchange and partnered with the biggest names in tech like Amazon, Microsoft, Google, Oracle, IBM, and more. Headquartered in Brisbane with a crew of over 600 people spread across Asia-Pacific, Europe, and the Americas, our employees enjoy an environment that is collaborative, supportive, and (actually) fun.
Our Team Culture
We’re a team of problem solvers, pixel pushers, code slingers, and cloud fanatics. Culture is more than a poster on the wall here – collaboration beats hierarchy, curiosity fuels our growth, and everyone’s voice matters. We take our work seriously, but not ourselves. We work across time zones to execute on our global vision, trust each other to get things done, and never compromise our values for commercial gain. Most importantly, we place our customers at the center of everything we do.
We’re committed to increasing representation in the tech industry and welcome applicants from all backgrounds. Don’t meet every requirement? That’s okay. If you’re excited about this role, we encourage you to apply.
Why This Role Rocks
We are seeking a Senior Cyber Security Analyst to help drive the governance, risk management, and compliance strategies to protect our critical information systems and assets. Based in our Brisbane headquarters, you will join a collaborative team of GRC specialists focused on securing Megaport’s global business.
Reporting to the Head of Cyber Security Compliance, you will bridge the gap between technical security controls and global business objectives. You will support the maintenance and improvement of our existing security compliance frameworks with a specific focus on ISO27001:2022 and SOC 2 Type 2 and actively assist with assessing new certifications to support business growth.
Our Vibe
Customer-first always
Integrity > everything
Small teams, huge outcomes
We celebrate curiosity, collaboration, and a can-do attitude
Success gets loud cheers—see our “Legend” & “Kudos” awards 🏆
If you thrive in a fast, globally distributed environment (and appreciate a good meme), you’ll feel right at home.
What You’ll Be Doing
Lead the security compliance certification activities such as ISO27001:2022 and SOC 2 Type 2.
Mentor cyber security analysts in the team and provide support where required.
Prepare reports and documentation to support cyber security and privacy incident investigations, regulatory compliance activities, and internal compliance processes.
Assist with customer security assurance activities such as responding to customer security and privacy questionnaires.
What You Bring
3-5 years experience in a Cyber Security GRC role.
Experience with leading ISO27001 and SOC 2 Type 2 certification programs, including supporting internal and external audit activities.
Ability to interpret legal or regulatory documentation and coordinate responses with internal teams and legal counsel.
Strong research, analytical, and organisational skills, with excellent attention to detail.
Intermediate to advanced English proficiency (B2 or higher) for handling international notifications and communications.
Comfortable working in a fast-paced, global environment, collaborating across teams and regions.
Experience with compliance, monitoring, or workflow tools (e.g., Jira, Confluence, Vanta or OneTrust.
Familiarity with global regulations and standards such as HIPAA, NIS2, DORA, and APRA CPS 230/234.
Why You’ll Love It Here
Flexible work (remote-friendly & balanced schedules)
Birthday leave—celebrate yourself 🎉
Health & wellness program
Global team of experts who love what they do
Recognition programs that actually mean something
#LI-DNI
If you have any questions, please reach out to Megaport's Talent Acquisition Team at Careers@megaport.com
NOTE: All Megaport business correspondence is conducted via our business email accounts (@megaport.com). If you have any concerns, please reach out to Megaport's careers team careers@megaport.com directly and we will verify the legitimacy of any communication. Megaport will not ask you to create an account via Microsoft teams, and does not associate with any email accounts under "@megaportau.com".
All applications will be treated in confidence.
Please see Part 2 of our Privacy Policy to see what information Megaport collects from job applicants, why, and how we store and use it. Note that you’re entitled to know what personal data of yours Megaport holds, to request updates, rectification, and in some circumstances restriction or deletion thereof if you object (you being entitled to withdraw your consent to our holding your information at any time). Please see Part 5 of our Privacy Policy for more details on this and how to contact Megaport's data protection officer if you have any further privacy-related questions. Candidates who meet the selection criteria will be invited to attend an interview. Strictly no Recruitment Agencies.