Cyber Vulnerability Pen-Tester Analyst

  • Wellington
  • Full time
  • Information Technology
  • Posted 15 days ago

Job Description

Mō tēnei tūranga mahi | About this role

Mō te tūnga | About the role

This exciting opportunity will be part of the New Zealand Defence Force Cyber Security Centre, which provides the core services to defend and assure the Defence Information Environment against ICS threats.

The Defence Cyber Security Centre (DCSC) provides proactive monitoring and assessment of threats as well as ensuring efficient and effective responses when required. As a member of the team, you will play a key role in looking for and analysing vulnerabilities and threats that potentially or unnecessarily place the Defence Information Environment at risk. With support from the senior members of the team, you will use your Pen-Testing skills to validate some of those vulnerabilities. Your vulnerability and Penetration Testing skillset will support our Defence Digital Product teams, and wider NZDF community.

In addition, you will:

  • Perform and document the results of vulnerability scans and configuration compliance checks against configuration standards such as STIG and CIS benchmarks
  • Perform network penetration testing, web application testing
  • Review the results of the continuous vulnerability scanning deliverables produced by Tenable and cloud services
  • Assist with investigation, documentation, response and remediation to cyber incidents
  • Conduct vulnerability research on emerging threats and trends
  • Provide input on any identified vulnerabilities, weaknesses and/or possible upgrade or improvements to our Information Environment
  • Validate any vulnerabilities that are critical- high and affect our organisation
  • Participate in Cyber exercises when required

Because of the nature of this role and system accesses there is very limited access to work remotely.

Please note:  As this role requires a high level of security clearance, you will need to be / have been a NZ, UK, Australian, Canadian or USA citizen for a minimum of 10 years to be eligible for this role. 

The successful candidate is required to undergo a psychological assessment as part of the pre-employment security vetting process.  

Ngā pūkenga me ngā wheako | Skills and Experience

We are keen to hear from you if you are a naturally curious individual with a strong desire to solve problems and get results. In particular, you will have:

  • Excellent written and oral communication skills, attention to detail is essential
  • Exceptional ability to write detailed reports; think broadly, focus on solutions and to work under pressure within a multi-disciplinary team
  • Experience with vulnerability scanning tools, such as Tenable Security Centre/Nessus
  • Some scripting ability (PowerShell, Python) is a plus
  • Basic knowledge of security processes (port-mapping, vulnerability identifications and remediation)
  • Assess system vulnerabilities and security risks to propose mitigation

Experience working within an Agile environment is highly desirable – or at least an understanding of Agile methodologies.

Nōu te rourou | What's in it for you

Your skills and dedication deserve recognition, and NZDF delivers with competitive pay matched to your experience. But that's just the beginning – safeguard your loved ones with a fully funded life cover of up to $300,000 and critical illness protection. Other benefits include discounted additional insurances, free will services and savings schemes for the Defence community. Get expert financial guidance and mortgage broker services. Find all our benefits and more on the Force 4 Families website.

NZDF champions diversity and inclusivity, valuing every member and fuelling their success. We embrace uniqueness, understanding that diverse teams drive creativity, innovation, and excellence. With an open door to all – irrespective of gender, ethnicity, ability, age, or family dynamics – NZDF offers a flexible, empowering work environment. Join us in shaping a brighter future, where everyone thrives.

Me pēhea te tuku tono | How to Apply

Applications close on Monday 3 February 2025.

Use the links on this page where you'll be directed to the Defence Careers website.

Please Note:

  • All applications must be made online, via the Defence Careers website. Each listing contains the Position Description and a Contact Us option for any queries or technical issues.
  • Your cover letter will be a key part of our selection process, so please highlight how your experience relates to the key activities outlined in the Advert and Position Description.
  • Applicants will be required to undergo a pre-employment drug-screening test prior to any offer of employment being made.

NZDF Employees/Members – please apply internally via the HR Toolkit; this will ensure that you are visible as an internal candidate.

NZDF Contractors – please apply via the Defence Careers website.

NZDF Reserves – please apply via the Defence Careers website if you cannot access the HR Toolkit.

NZDF is currently undertaking a Workforce Savings Programme (WSP) to realise efficiencies and required enduring savings, which may require NZDF to propose changes to the organisational structure of its civilian workforce. As we progress through the WSP, we will be communicating with our people about any potential impact on roles and structures. We welcome your application for this important role and want to let you know that if the WSP, and any subsequent proposed change process, is likely to impact on the role you are applying for, we will let you know at the earliest opportunity.

Please Note:

To be eligible for the required level of government security clearance with the NZ Defence Force, you need to meet certain citizenship and residency criteria. Here's what you need to know:

Higher Level Security Clearance

  • You must be a New Zealand Citizen for at least the last ten (10) years.
  • At minimum, you must hold New Zealand Permanent Residence or have a current New Zealand Residency Class Visa, and you must be a citizen of and have lived in Australia, Canada, United Kingdom, United States of America or New Zealand continuously for the last ten (10) years.
  • To obtain this level of clearance, you must have a background history of fifteen (15) years that can be verified and assessed appropriately by the NZ Security Intelligence Service (NZSIS) to determine if you are suitable for a security clearance at this level.

If you do not meet the minimum criteria, unfortunately, your application will not be accepted. We do welcome your application at a time when you will meet the requirements.