Penetration Tester
Rio Tinto
Penetration Tester - Cyber Security
- Perform ongoing cyber penetration tests and contribute to the development and improvement of our security operations
- Excellent work environment where people are valued and respected
- Permanent role based in Perth or Montreal
We are looking for a Penetration Tester to perform ongoing cyber penetration tests on systems identified by Information Systems & Technology (IS&T) and the wider global business.
Reporting to the Manager Cyber Threat Intelligence and Offensive Security and working in a collaborative, supportive environment within our global Cyber Security team, you will:
- Become a core member of Rio Tinto’s global penetration testing practice.
- Hack the following on a day-to-day basis:
- Enterprise Active Directory domains
- Global IT networks
- Bespoke web applications and client-side software
- Mining equipment and production ICS networks
- Act as an internal subject matter expert on penetration testing and potential remediation recommendations
- Be responsible for the management and development of the toolset used to deliver penetration testing services and the delivery of penetration testing services designed to safeguard the company’s assets, intellectual property and computer systems
- Work with Cyber teams to evaluate new IT technology and determine their appropriateness for product groups – focusing on weaknesses and remediation
- Identify continuous improvement (efficiency and effectiveness) opportunities with respect to penetration testing services, based on feedback from team and observations of process and deliverables
- Be an active team member in the day-to-day delivery of cyber security services
- Develop and maintain business-relevant metrics and dashboards to measure the efficiency and effectiveness of penetration testing services to increase the maturity of our Enterprise and I&OT environments
What you’ll bring
- Several years of experience in penetration testing and information security
- Demonstrable experience hacking at least one of the following technologies – Web Apps, Mobile Apps, Network Infrastructure, Thick Clients, Active Directory, PCN/SCADA
- Experience with one or more general purpose programming or scripting languages such as PowerShell, Python, Perl, Ruby, C#, Java
- Coordinating complex operational activities with IT services departments
- Certifications like OSCP, GPEN, GXPN, SEC560, SEC565 and CREST (or equivalent) desirable
- Excellent collaboration and influencing abilities regarding Cyber Security solutions
- Demonstrated ability in report writing
- Excellent communication skills
- Strong ability to solve complex problems autonomously
What we offer
- A work environment where safety is always the number one priority
- A permanent position working directly for Rio Tinto
- A competitive base salary reflective of your skills and experience with annual incentive program
- Comprehensive medical benefits including subsidised private health insurance for employees and immediate family
- Attractive share ownership plan
- Company provided insurance cover
- Extensive salary sacrifice & salary packaging options
- Career development & education assistance to further your technical or leadership ambitions
- Ongoing access to family-friendly health and medical wellbeing support
- Leave for all of life’s reasons (vacation/annual, paid parental, sick leave)
- Exclusive employee discounts (banking, accommodation, cars, retail and more)
About Rio Tinto
Every idea, every innovation, every little thing the world calls ‘progress’ begins with a first step, and someone willing to take it: explorers, inventors, entrepreneurs. Pioneers.
For over 150 years, Rio Tinto has been a company of pioneers – generations of people spanning the globe, all with the grit and vision to produce materials essential to human progress.
Our iron ore has shaped skylines from Shanghai to Sydney. Our aluminium – the world’s first to be certified “responsible” – helps planes fly and makes cars lighter. Our copper helps wind turbines power cities and our boron helps feed the world, and explore the universe.
Our diamonds help us celebrate the best parts of life.
Where you will be working
Rio Tinto Information Systems and Technology (IS&T) operates to enable better alignment with customer priorities, end-to-end accountability and flexibility to prioritise critical work. The function provides solutions that are aligned with current and future business requirements through the development and ongoing delivery of IT strategy and solution roadmaps. Through appropriate governance, consultative processes, and the use of industry best practices, IS&T also ensures that emerging technologies and innovative ideas are constantly evaluated, considered, and adopted, to provide easy-to-use, best-in-class solutions and services.
Every Voice Matters
At Rio Tinto, we particularly welcome and encourage applications from Aboriginal and Torres Strait Islander people, women, the LGBTI+ community, mature workers, people with disabilities and people from different cultural backgrounds.
We are committed to an inclusive environment where people feel comfortable to be themselves. We want our people to feel that all voices are heard, all cultures respected and that a variety of perspectives are not only welcome – they are essential to our success. We treat each other fairly and with dignity regardless of race, gender, nationality, ethnic origin, religion, age, sexual orientation or anything else that makes us different.
About Rio TintoRio Tinto is a leading global mining and materials company. We operate in 35 countries where we produce iron ore, copper, aluminium, critical minerals, and other materials needed for the global energy transition and for people, communities, and nations to thrive.We have been mining for 150 years and operate with knowledge built up across generations and continents. Our purpose is finding better ways to provide the materials the world needs – striving for innovation and continuous improvement to produce materials with low emissions and to the right environmental, social and governance standards. But we can’t do it on our own, so we’re focused on creating partnerships to solve problems, create win-win situations and meet opportunities.
Every Voice MattersAt Rio Tinto, we particularly welcome and encourage applications from Aboriginal and Torres Strait Islander people, women, the LGBTI+ community, mature workers, people with disabilities and people from different cultural backgrounds.We are committed to an inclusive environment where people feel comfortable to be themselves. We want our people to feel that all voices are heard, all cultures respected and that a variety of perspectives are not only welcome – they are essential to our success. We treat each other fairly and with dignity regardless of race, gender, nationality, ethnic origin, religion, age, sexual orientation or anything else that makes us different.