Search by job, company or skills

Level 3 Digital Assurance Analyst

  • Posted an hour ago
  • Be among the first 10 applicants

Job Description

About Woodside Energy

We are a global energy company, providing reliable and affordable energy to help people

lead better lives. Join our team at Woodside Global Solutions in Bengaluru where talent,

digital expertise, and operational excellence converge to solve complex energy challenges,

accelerate change, and reimagine business capabilities to support Woodside's global

operations and our role in the energy transition.

Founded in 1954, Woodside established the liquefied natural gas (LNG) industry in Australia

40 years ago and supplies customers around the globe. 70 years on, Woodside continues

to be driven by a spirit of innovation and determination.

At Woodside, we know great results come from our people feeling valued, getting the

support they need to reach their full potential and working in a psychologically and physically

safe work environment. We believe in nurturing talent and providing opportunities for

continuous learning and career advancement.

Refer to our corporate website for more information about our different locations and

projects: What We Do

About Woodside Global Solutions

Woodside Global Solutions in Bengaluru is being built as a hub of excellence, to drive

innovation, digital transformation, and global collaboration.

Working as one Global team, the Woodside Digital team is a trusted partner driving

transformation within the organisation. We are bold in our ambitions and resolute in our

actions. Through cutting-edge AI, robust cyber security, and advanced data solutions we

drive innovation and influence every part of our business.

We are looking for talented professionals who are passionate about technology and eager to

make a global impact, helping to shape the future of Woodside together.

About the role

The Senior Digital Assurance Analyst is responsible for leading technically complex Digital

Assurance activities that provide independent confidence that Digital controls remain

effective, technology risks are appropriately managed and governance obligations are

achieved.

The role translates the Digital Assurance strategy into high-quality assurance outcomes

through the planning, execution and continual improvement of risk-based assurance across

Information Technology (IT) and Operational Technology (OT). As the recognised technical authority within the Digital Assurance capability, the position develops assurance

methodologies, mentors analysts and remains actively engaged in assurance delivery.

Working closely with the Team Lead - Digital Assurance, Digital Risk, Cyber Security,

Architecture and operational teams, the role strengthens organisational resilience through

evidence-based assurance, Assurance by Design and Continuous Control Monitoring.

Duties & Responsibilities:

Digital Assurance Delivery

Lead technically complex Control Effectiveness Testing (CET), verification activities and

second-line assurance engagements.

Personally undertake assurance reviews of high-risk technologies, critical Digital

services and strategically significant initiatives.

Assess Digital controls to determine whether they continue to operate effectively and

mitigate technology and cyber risks.

Review and validate assurance evidence submitted by control owners.

Develop high-quality assurance findings, recommendations and executive-ready reports.

Contribute specialist technical expertise to development of the annual Digital Assurance

Plan.

Collaborate with control owners to improve assurance outcomes while maintaining

independence.

Technical Assurance Leadership

Act as the recognised technical authority within the Digital Assurance capability.

Provide technical leadership, mentoring and coaching to Digital Assurance Analysts.

Perform technical quality assurance over assurance activities completed by other

analysts.

Lead investigations into complex or systemic control weaknesses.

Provide technical advice to the Team Lead regarding assurance priorities and emerging

risks.

Maintain contemporary knowledge of technology, cyber security and assurance

practices.

Control Engineering & Continuous Control Monitoring

Partner with Digital Risk, Architecture and Cyber Security to improve control design.

Embed Assurance by Design principles into new technologies and services.

Lead development of Continuous Control Monitoring capabilities.

Develop requirements for dashboards, analytics and assurance tooling.

Evaluate emerging assurance techniques and recommend improvements.

Develop reusable assurance methodologies, standards and templates.

Assurance Governance & Findings Management

Lead assurance reviews relating to significant findings and complex remediation

activities.

Validate remediation evidence for high-risk findings.

Identify systemic trends and organisational improvement opportunities.

Prepare governance reporting supporting Digital Leadership and GRC.

Review reports prepared by analysts and improve technical quality.

Maintain assurance documentation and governance artefacts.

Recovery Assurance & Operational Resilience

Lead technical reviews of Disaster Recovery and operational resilience capabilities.

Review Disaster Recovery plans and assess recovery readiness.

Lead assurance over recovery testing and validate outcomes.

Recommend improvements to recovery governance and resilience.

Identify systemic resilience risks through assurance activities.

Capability Development & Continuous Improvement

Improve assurance methodologies, technical standards and reporting practices.

Lead initiatives that improve assurance through automation and analytics.

Mentor analysts and strengthen capability through coaching and peer review.

Promote technical excellence, innovation and continual improvement.

Build trusted relationships across Digital, Cyber Security, Risk and Operations.

Represent the capability in complex technical discussions and assurance initiatives.

Skills & Experience

Relevant tertiary qualification in Information Technology, Cyber Security, Risk, Audit,

Engineering or related discipline.

Desirable: Industry recognised certifications relevant to cyber security, architecture,

governance risk and compliance, audit, etc. (SABSA, TOGAF, CISSP, CCSP, CISM, CISA,

Microsoft/AWS cloud certifications).

Experience

Extensive experience delivering technology assurance, cyber security, governance,

risk or audit activities.

Experience leading technically complex assurance engagements across enterprise

environments.

Experience mentoring technical professionals and developing assurance

methodologies.

Experience preparing executive-quality assurance reports.

Experience in IT operations, cyber security, technology risk, governance, assurance

or audit.

Technical & Functional Capability

Strong understanding of enterprise technology, cloud, identity, cyber security and

operational technology.

Knowledge of ISO 27001, NIST, COBIT and contemporary assurance frameworks.

Experience with Control Effectiveness Testing, second-line assurance and

Continuous Control Monitoring.

Strong analytical, investigation and problem-solving capability.

Data analytics or scripting knowledge for automated control testing

Leadership & Stakeholder Engagement

Ability to provide technical leadership without direct line authority.

Excellent communication and influencing skills.

Ability to build trusted relationships across Digital, Cyber Security, Risk, GRC and

Operations.

Experience managing findings (tools, workflows, consultation)

Risk, Governance & Framework Knowledge

Understanding of industry cyber security frameworks such as ISO 27001 and NIST

CSF.

Understanding of key security concepts such as Zero Trust, RBAC, least privilege,

network segmentation, and secure egress principles.

Cloud, Technology & Industry Insight

Experience with security architecture activities such as requirements analysis, design

reviews, threat modelling, and participating in secure-by-design processes, IT change

management, and design governance processes.

* Experience working with enterprise security tools and platforms, such as Microsoft E5

security capabilities (Defender, Purview, Intune, Conditional Access) and Identity &

Access Management tools (Entra ID/Azure AD, Saviynt, Zscaler).

Recognition & Reward

What you can expect from us:

Commitment to your ongoing development, including on the job opportunities and formal

programs

Inclusive parental leave entitlements for both parents

Values led culture

Flexible work options

Generous annual leave, sick leave and casual leave

Cultural and religious leave with flexible public holiday opportunities

A competitive remuneration package featuring performance based incentives with uncapped

Employer Provident Fund Woodside is committed to fostering an inclusive and diverse workforce culture, which is supported by our Values.

Inclusion centres on all employees creating a climate of trust and belonging, where people

feel comfortable to bring their whole self to work. We also offer supportive pathways for all

employees to grow and develop leadership skills.

If you are ready to take your career to the next level and be part of a global organisation that

values innovation and excellence, apply now through our careers portal or connect with our

recruitment team.

More Info

Job Type:
Industry:
Function:
Employment Type:

Job ID: 153550959

Beware of Scammers

We don’t charge money for job offers