Sobre este puesto de Domain Security Architect – Infrastructure & Networks en Reserve Bank of Australia
- Permanent role in a hybrid work environment
- Shape the security architecture of the infrastructure and network platforms that underpin Australia's critical payments and banking systems
- An exciting opportunity to drive strategic cyber uplift across the server and network estate
About the team
A fantastic opportunity to join the RBA and set the security direction for the Bank's infrastructure and network domain – the compute, virtualisation, enterprise services and network platforms that every critical service depends on.
This role sits within the IT Cyber Strategy & Planning team and is the Bank's Domain Security Architect for Infrastructure and Networks. You will shape the cyber roadmap and prioritised backlog for the infrastructure domain, acting as the Product Owner for security outcomes across server, network and data centre platforms. Working closely with Infrastructure & Operations, Network Services, Cyber
Defence Operations and Vulnerability & Posture Management teams, you will translate the Bank's cyber strategy into practical architecture, standards and delivery outcomes – with a strong focus on segmentation, zero trust, secure administration and hardening uplift.
About the role
- Lead the cyber strategy, target state and multi-year roadmap for the infrastructure and network domain, ensuring alignment to the Bank's enterprise cyber strategy, risk appetite and technology direction.
- Lead the security architecture for the Bank's server, virtualisation and network platforms, including Cisco routing and switching, firewalls, F5 load balancing and application delivery, VMware vSphere, Linux and Windows Server.
- Define and mature segmentation and zero trust network architecture for the Bank, covering macro and micro-segmentation, east–west controls, ingress and egress control, remote access, SASE/SSE and secure administration patterns.
- Design and review secure technology solutions aligned with enterprise security standards and regulatory frameworks, including ACSC ISM, Essential Eight, ISO 27001 and CPS 234.
- Conduct and oversee security risk assessments, threat modelling and architecture reviews for infrastructure and network initiatives, supporting stakeholders to understand risks, mitigation strategies and architectural trade-offs across risk, cost, complexity and operability.
- Author and maintain security reference architectures, standards, patterns and hardening guidelines for the domain, and approve technology selections, SOE changes and firewall and segmentation policy designs.
- Partner with Vulnerability & Posture Management to drive measurable remediation and secure configuration compliance across server, network and appliance platforms, and set the architectural direction for hardening and exposure reduction.
- Collaborate with Cyber Defence Operations, Offensive Security and Threat Intelligence to ensure detection, protection and response coverage is designed into the infrastructure and network estate.
- Prioritise investment and delivery decisions for cyber-funded and technology-funded initiatives in the domain, engaging early with projects so security requirements are embedded rather than retrofitted.
- Represent Cyber to technology, project and business stakeholders, providing a clear, consistent position and escalating issues with practical, risk-based recommendations.
About you
You will have extensive experience in infrastructure and network security architecture, and the judgement to balance risk, cost, complexity and operability when setting direction for a large, long-lived estate.
- 10+ years’ experience in cyber security, technology risk or infrastructure security roles, including significant experience leading security architecture for infrastructure, network or enterprise technology domains.
- Must have deep, hands-on architecture experience in networks, and extensive experience in at least one other area below:
- Networks – routing and switching, next generation firewalls, load balancers and application delivery (e.g. F5), proxies, DNS, remote access, SD-WAN, SASE/SSE, segmentation and zero trust architectures, east–west traffic and ingress/egress control
- Compute & OS – Windows and Linux, hardened baselines, privilege models, identity dependencies
- Virtualisation & Platforms – VMware, Hyper-V, software defined networking, container runtimes and Kubernetes security concepts
- Enterprise Services – Active Directory / Entra ID, DNS, PKI and certificate lifecycles, NTP, privileged access and secure administration patterns
- Cloud Infrastructure – IaaS and network security patterns in Azure, shared responsibility model, landing zones, hybrid connectivity and identity-first design
- Demonstrated experience defining and delivering a security strategy or roadmap for a technology domain, including prioritising a backlog and driving measurable risk reduction outcomes.
- Proven cyber leadership experience operating as a domain security architect, setting direction across infrastructure and network security while translating enterprise cyber strategy into practical architecture, standards, roadmaps and delivery outcomes.
- Ability to define and measure performance for cyber initiatives using clear success measures, delivery milestones, risk reduction indicators, control effectiveness, compliance uplift and operational resilience outcomes.
- Strong understanding of cyber risk assessment methodologies, threat modelling and control frameworks such as Essential 8, ASD ISM, NIST CSF and NIST SP 800-207 (Zero Trust), and experience operating in a regulated environment (e.g. CPS 234).
- Excellent stakeholder engagement skills with the ability to communicate security risks and architecture decisions to both technical and business audiences, and to influence without direct authority.
- Demonstrated ability to collaborate across cyber, technology, vendor and business teams in large, complex organisations, and to hold a consistent position under pressure.
- Professional certifications such as SANS/GIAC, CISSP (or CISSP-ISSAP), SABSA, TOGAF or advanced vendor network security certifications (e.g. CCNP/CCIE Security) are highly regarded.
- Tertiary qualifications in a relevant field such as Cybersecurity, Computer Science or Information Technology.
- Must be an Australian Citizen holding or eligible for NV1 security clearance.
Be More
Working for an organisation that truly makes a difference to the people of Australia, we can offer development and career opportunities in a collaborative environment that supports your growth, wellbeing and promotes flexibility. Your individual growth and success drives the RBA forward as an organisation. Be more means you can do more, for yourself and for Australia.
Why RBA?
The RBA makes an important contribution to the Australian economy through the pursuit of national economic policy objectives and associated activities in financial markets and banking. We also issue Australia's banknotes and operate infrastructure critical to the payments system, all of which contribute to the welfare of the Australian people.
Made up of specialists across a wide range of fields, our people, values, and culture play a critical role in achieving our objectives. Striving to be Open & Dynamic, we consider and incorporate different perspectives, work across teams and are transparent with each other, whilst delivering quality together effectively and focusing on outcomes by prioritising, testing, learning, and refining as we go.
Our people conduct themselves with a high degree of integrity, while striving for excellence in the work they perform and the outcomes they achieve. We encourage intelligent inquiry, and we treat one another with respect while promoting the public interest through our efforts. We know it is the growth and success of our people that drives the RBA forward.
Come and make a bigger contribution while you build and develop your own skills too, because being more means you can do more, for yourself and for Australia.
The Reserve Bank of Australia is committed to equity, diversity and inclusion through key initiatives. We welcome and encourage applicants from diverse backgrounds to apply, including Aboriginal and Torres Strait Islander peoples, culturally and linguistically diverse background, those living with a disability and from the LGBTQ+ community. We are committed to making the recruitment process fair and equitable for all our candidates.
Application Close :
October 22, 2026.