See yourself in Cyber

Security at scale

We’ve built one of the largest and most advanced Cyber teams in the Southern Hemisphere with the brightest minds in the industry from all walks of life. We’re investing in our teams to ensure we’re responding to the rapidly changing threat landscape to keep our 17 million+ customers and 45,000+ people safe.

Flex-Ability

With a great job, comes great flexibility. We understand that life doesn’t only happen outside of work hours and we truly support our people to do their best work - wherever and whenever that may be! See how you can work in a way that suits you.

Thrive & grow

We’re developing one of the most innovative and talented Cyber teams in the world by investing heavily in tech and providing exceptional learning and growth opportunities. When you join CommBank you’ll be fully supported in your professional development and learn from some of the most talented people in the industry.

Great minds think unalike

We welcome and celebrate diversity in every sense of the word – cultural, age, ability, sexual orientation, gender, religion and identity. Being different is the only thing we all have in common and it’s what ensures we cover all bases to keep our customers, communities and people safe. Learn more about our commitment to diversity and inclusion

Lay of the Land

Allow us to introduce ourselves - our purpose is to create a cyber-secure organisation so that our people and customers are kept safe, sound and secure for generations to come. We’re managing cyber risk today and investing for the future, through intelligent protection, detection, response, recovery and resilience.

Check out the teams that make this happen and see where you might fit in!

Cyber Identity & Protection Management

At the heart of Cyber is the Identity & Protection Management team - proactively designing, metricising, governing and reporting on Group cyber security controls to ensure that we have secure networks, applications, and systems. We’re continuously training our people to protect against cyber-attacks and transparently report on our status and incrementally drive improvement.

The control domains of the Cyber Identity & Protection Management team include Network security, Identity Lifecycle Management, End User Protection, Data Protection and Access monitoring.

Cyber Defence Operations

As our first and last line of defence, this team is responsible for detecting and responding to cyber-attacks against our systems and cybercrime against our customers. This is underpinned by a detection engineering function in addition to performing real-world red, purple and OSINT (open source intelligence) team testing to continuously improve our detective capability.

We also focus on providing cyber-attack and vulnerability assessments against Group assets to help reduce our attackable surface, in turn supporting the Group meeting its cyber regulatory and compliance requirements. Through the integration of these activities, the team aims to improve operational effectiveness and identify and escalate opportunities to uplift the Group’s security posture.

Cyber Resilience & Recovery

The Cyber Resilience and Recovery team enables Cyber Security to be increasingly intel-driven. They’re informed about the changes in the threat environment including cyber-attacks against our supplier and partner ecosystem. Our team’s functions include cyber recovery planning, data breach and third party incident response to support the Group’s Cyber Security posture and maintain a standout reputation across the Group and market.

We’re responsible for scanning the external environment for threats to the Group, working closely with partners in industry and government to ensure there’s proactive management of cyber risks and appropriate cyber recovery measures in place.

Cyber Delivery & Transformation

The Cyber Delivery and Transformation team focuses on the prioritisation, design, planning, and execution of change programs at high velocity leveraging best practice and implementation disciplines across the Group. The key focus is to uplift controls and implement best of breed technology to enhance our cyber risk profile.

We work closely with all teams across Technology and the businesses to interlock and sequence core foundational cyber technology change Group-wide.  The discipline of embedding technology, uplift controls, and simplifying processes end-to-end for sustainability and future-proofing is at the core of our approach to strengthen the security of the Group’s cyber platform for our businesses and customers.

Meet our people

“In my almost six years at CommBank, I’ve led our Penetration Testing team and later our Application Security team, which provided valuable perspectives on how cyber security works in larger organisations. My current role is a "return to my roots" within our Red Team. My day-to-day work involves helping continuously test our defensive security controls, as well as attempting to identify new cyber-security threats before they become exploited in-the-wild.

Cyber at CommBank is unlike anywhere else, we have the opportunity to engage with niche and emerging technologies used in the finance sector, which are typically not looked at elsewhere. I’m continuously learning and being challenged thanks to the incredibly diverse range of skillsets, perspectives and people I’ve had the pleasure of working with every day.”

Norman, Offensive Cyber Security Researcher

“CommBank provides an amazing opportunity to explore the variety of teams and disciplines that make up Cyber, all within one organisation. Across these teams are highly talented, innovative and passionate individuals all working towards the same goal; to protect the bank, our customers, and the community from the multitude of threats in an ever-evolving cyber threat landscape. 

Managers and peers alike create an environment where everyone feels equally supported and empowered in their role. This is especially evident in the genuine flexibility CommBank offers, which allows me to work from home and enjoy more family time, utilise my lunch times for walking my dog or do an at-home workout when it suits me. This healthy work/life balance ensures everyone has the best opportunity to excel in their career.”

Jessica, Senior Manager Cyber Intelligence 

“After working for CommBank for the past 14 years, I really feel that I’ve found my true home working in the Cyber Security team. I say this because I’m surrounded by dedicated, thoughtful, supportive people and leaders and there’s just so much opportunity to learn and grow.

I feel I’m making an impact on our customers and communities by providing them with the knowledge that their finances are safe and secure. And that there’s a very capable and brilliant team looking out for their best interests and financial safety.

Cyber at CommBank is totally unique, there are multiple layers of growth and development opportunities. You may have skills and experience in one area, but working in such a large and advanced Cyber team really allows you to grow that breadth of knowledge like I never imagined – the world is really at your fingertips when it comes to your own development.”

Jessica, Senior Manager Performance

Join the team