Level 2 Digital Assurance Analyst About Woodside Energy
We are a global energy company, providing reliable and affordable energy to help people
lead better lives. Join our team at Woodside Global Solutions in Bengaluru where talent,
digital expertise, and operational excellence converge to solve complex energy challenges, ...
accelerate change, and reimagine business capabilities to support Woodside's global
operations and our role in the energy transition.
Founded in 1954, Woodside established the liquefied natural gas (LNG) industry in Australia
40 years ago and supplies customers around the globe. 70 years on, Woodside continues
to be driven by a spirit of innovation and determination.
At Woodside, we know great results come from our people feeling valued, getting the
support they need to reach their full potential and working in a psychologically and physically
safe work environment. We believe in nurturing talent and providing opportunities for
continuous learning and career advancement.
Refer to our corporate website for more information about our different locations and
projects: What We Do
About Woodside Global Solutions
Woodside Global Solutions in Bengaluru is being built as a hub of excellence, to drive
innovation, digital transformation, and global collaboration.
Working as one Global team, the Woodside Digital team is a trusted partner driving
transformation within the organisation. We are bold in our ambitions and resolute in our
actions. Through cutting-edge AI, robust cyber security, and advanced data solutions we
drive innovation and influence every part of our business.
We are looking for talented professionals who are passionate about technology and eager to
make a global impact, helping to shape the future of Woodside together.
About the role
The Digital Assurance Analyst is responsible for delivering high-quality Digital Assurance
activities that provide independent confidence that Digital controls are operating effectively
and continue to mitigate technology and cyber risk.
Working as part of the Digital Assurance capability, the role performs risk-based assurance
activities across Information Technology (IT) and Operational Technology (OT), supporting
control effectiveness testing, second-line assurance, findings management, recovery
assurance and governance reporting.
The role works closely with the Senior Digital Assurance Analyst and Team Lead - DigitalAssurance to execute the annual Digital Assurance Plan while continually improving
assurance practices through automation, standardisation and Continuous Control
Monitoring.Duties & Responsibilities:
Digital Assurance Delivery
Perform Control Effectiveness Testing (CET), verification tasks and second-line
assurance activities in accordance with approved methodologies.
Undertake assurance reviews across Digital technologies, applications, infrastructure
and operational technology.
Collect, review and validate assurance evidence from control owners.
Assess control effectiveness and document assurance conclusions supported by
evidence.
Prepare assurance reports, recommendations and supporting documentation.
Contribute to delivery of the annual Digital Assurance Plan.
Work collaboratively with stakeholders while maintaining assurance independence.
Assurance Coordination & Governance
Coordinate assurance schedules with Digital teams and control owners.
Maintain assurance registers, dashboards and governance artefacts.
Track findings, remediation actions and commitments through to closure.
Support governance reporting for Digital Leadership and GRC.
Escalate overdue or high-risk actions through appropriate governance channels.
Maintain high-quality assurance documentation.
Control Improvement & Continuous Monitoring
Support Assurance by Design by providing feedback on control measurability.
Identify opportunities to automate evidence collection and reporting.
Maintain Continuous Control Monitoring dashboards and reporting outputs.
Support development and testing of new assurance methodologies and templates.
Contribute ideas that improve assurance quality and efficiency.
Recovery Assurance & Operational Resilience
Participate in Disaster Recovery assurance reviews and testing activities.
Review recovery documentation and identify improvement opportunities.
Record recovery outcomes and track associated actions.
Support continual improvement of Digital resilience documentation and governance.
Stakeholder Engagement & Professional Development
Develop productive relationships with Digital Risk, Cyber Security, Operations and
control owners.
Provide guidance to stakeholders on assurance processes and evidence
expectations. Maintain knowledge of technology, cyber security and assurance practices.
Actively participate in mentoring, training and capability development opportunities.
Contribute to a culture of collaboration, technical excellence and continual
improvement.
Skills & Experience
Qualifications
Relevant tertiary qualification in Information Technology, Cyber Security, Risk, Audit,
Engineering or related discipline.
Desirable: Industry recognised certifications relevant to cyber security, architecture,
governance risk and compliance, audit, etc. (SABSA, TOGAF, CISSP, CCSP, CISM, CISA,
Microsoft/AWS cloud certifications).
Experience
4 years experience in IT operations, cyber security, technology risk, governance,
assurance or audit.
Experience preparing reports and working with technical stakeholders.
Experience coordinating activities across multiple teams is desirable.
Technical & Functional Capability
Understanding of enterprise technology, identity, cloud, infrastructure and cyber
security.
Knowledge of governance, risk and assurance frameworks.
Strong analytical and documentation skills.
Experience using reporting, collaboration and governance tools.
Data analytics or scripting knowledge for automated control testing
Stakeholder & Communication Skills
Strong written and verbal communication skills.
Ability to engage with technical and business stakeholders.
Well-developed organisational and planning skills.
Ability to work independently while contributing to a collaborative team.
Risk, Governance & Framework Knowledge
Foundational understanding of industry cyber security frameworks such as ISO
27001 and NIST CSF.
Foundational understanding of key security concepts such as Zero Trust, RBAC,
least privilege, network segmentation, and secure egress principles.
Cloud, Technology & Industry Insight Exposure to security architecture activities such as requirements analysis, design
reviews, threat modelling, and participating in secure-by-design processes, IT change
management, and design governance processes.
* Experience working with enterprise security tools and platforms, such as Microsoft E5
security capabilities (Defender, Purview, Intune, Conditional Access) and Identity &
Access Management tools (Entra ID/Azure AD, Saviynt, Zscaler).
Recognition & Reward
What you can expect from us:
Commitment to your ongoing development, including on the job opportunities and formal
programs
Inclusive parental leave entitlements for both parents
Values led culture
Flexible work options
Generous annual leave, sick leave and casual leave
Cultural and religious leave with flexible public holiday opportunities
A competitive remuneration package featuring performance based incentives with uncapped
Employer Provident Fund
Woodside is committed to fostering an inclusive and diverse workforce culture, which is
supported by our Values. Inclusion centres on all employees creating a climate of trust and belonging, where people
feel comfortable to bring their whole self to work. We also offer supportive pathways for all
employees to grow and develop leadership skills.
If you are ready to take your career to the next level and be part of a global organisation that
values innovation and excellence, apply now through our careers portal or connect with our
recruitment team.
experience
7show more Level 2 Digital Assurance Analyst About Woodside Energy
We are a global energy company, providing reliable and affordable energy to help people
lead better lives. Join our team at Woodside Global Solutions in Bengaluru where talent,
digital expertise, and operational excellence converge to solve complex energy challenges,
accelerate change, and reimagine business capabilities to support Woodside's global
operations and our role in the energy transition.
Founded in 1954, Woodside established the liquefied natural gas (LNG) industry in Australia
40 years ago and supplies customers around the globe. 70 years on, Woodside continues
to be driven by a spirit of innovation and determination.
At Woodside, we know great results come from our people feeling valued, getting the
support they need to reach their full potential and working in a psychologically and physically
safe work environment. We believe in nurturing talent and providing opportunities for
continuous learning and career advancement.
Refer to our corporate website for more information about our different locations and
projects: What We Do
...
About Woodside Global Solutions
Woodside Global Solutions in Bengaluru is being built as a hub of excellence, to drive
innovation, digital transformation, and global collaboration.
Working as one Global team, the Woodside Digital team is a trusted partner driving
transformation within the organisation. We are bold in our ambitions and resolute in our
actions. Through cutting-edge AI, robust cyber security, and advanced data solutions we
drive innovation and influence every part of our business.
We are looking for talented professionals who are passionate about technology and eager to
make a global impact, helping to shape the future of Woodside together.
About the role
The Digital Assurance Analyst is responsible for delivering high-quality Digital Assurance
activities that provide independent confidence that Digital controls are operating effectively
and continue to mitigate technology and cyber risk.
Working as part of the Digital Assurance capability, the role performs risk-based assurance
activities across Information Technology (IT) and Operational Technology (OT), supporting
control effectiveness testing, second-line assurance, findings management, recovery
assurance and governance reporting.
The role works closely with the Senior Digital Assurance Analyst and Team Lead - DigitalAssurance to execute the annual Digital Assurance Plan while continually improving
assurance practices through automation, standardisation and Continuous Control
Monitoring.Duties & Responsibilities:
Digital Assurance Delivery
Perform Control Effectiveness Testing (CET), verification tasks and second-line
assurance activities in accordance with approved methodologies.
Undertake assurance reviews across Digital technologies, applications, infrastructure
and operational technology.
Collect, review and validate assurance evidence from control owners.
Assess control effectiveness and document assurance conclusions supported by
evidence.
Prepare assurance reports, recommendations and supporting documentation.
Contribute to delivery of the annual Digital Assurance Plan.
Work collaboratively with stakeholders while maintaining assurance independence.
Assurance Coordination & Governance
Coordinate assurance schedules with Digital teams and control owners.
Maintain assurance registers, dashboards and governance artefacts.
Track findings, remediation actions and commitments through to closure.
Support governance reporting for Digital Leadership and GRC.
Escalate overdue or high-risk actions through appropriate governance channels.
Maintain high-quality assurance documentation.
Control Improvement & Continuous Monitoring
Support Assurance by Design by providing feedback on control measurability.
Identify opportunities to automate evidence collection and reporting.
Maintain Continuous Control Monitoring dashboards and reporting outputs.
Support development and testing of new assurance methodologies and templates.
Contribute ideas that improve assurance quality and efficiency.
Recovery Assurance & Operational Resilience
Participate in Disaster Recovery assurance reviews and testing activities.
Review recovery documentation and identify improvement opportunities.
Record recovery outcomes and track associated actions.
Support continual improvement of Digital resilience documentation and governance.
Stakeholder Engagement & Professional Development
Develop productive relationships with Digital Risk, Cyber Security, Operations and
control owners.
Provide guidance to stakeholders on assurance processes and evidence
expectations. Maintain knowledge of technology, cyber security and assurance practices.
Actively participate in mentoring, training and capability development opportunities.
Contribute to a culture of collaboration, technical excellence and continual
improvement.
Skills & Experience
Qualifications
Relevant tertiary qualification in Information Technology, Cyber Security, Risk, Audit,
Engineering or related discipline.
Desirable: Industry recognised certifications relevant to cyber security, architecture,
governance risk and compliance, audit, etc. (SABSA, TOGAF, CISSP, CCSP, CISM, CISA,
Microsoft/AWS cloud certifications).
Experience
4 years experience in IT operations, cyber security, technology risk, governance,
assurance or audit.
Experience preparing reports and working with technical stakeholders.
Experience coordinating activities across multiple teams is desirable.
Technical & Functional Capability
Understanding of enterprise technology, identity, cloud, infrastructure and cyber
security.
Knowledge of governance, risk and assurance frameworks.
Strong analytical and documentation skills.
Experience using reporting, collaboration and governance tools.
Data analytics or scripting knowledge for automated control testing
Stakeholder & Communication Skills
Strong written and verbal communication skills.
Ability to engage with technical and business stakeholders.
Well-developed organisational and planning skills.
Ability to work independently while contributing to a collaborative team.
Risk, Governance & Framework Knowledge
Foundational understanding of industry cyber security frameworks such as ISO
27001 and NIST CSF.
Foundational understanding of key security concepts such as Zero Trust, RBAC,
least privilege, network segmentation, and secure egress principles.
Cloud, Technology & Industry Insight Exposure to security architecture activities such as requirements analysis, design
reviews, threat modelling, and participating in secure-by-design processes, IT change
management, and design governance processes.
* Experience working with enterprise security tools and platforms, such as Microsoft E5
security capabilities (Defender, Purview, Intune, Conditional Access) and Identity &
Access Management tools (Entra ID/Azure AD, Saviynt, Zscaler).
Recognition & Reward
What you can expect from us:
Commitment to your ongoing development, including on the job opportunities and formal
programs
Inclusive parental leave entitlements for both parents
Values led culture
Flexible work options
Generous annual leave, sick leave and casual leave
Cultural and religious leave with flexible public holiday opportunities
A competitive remuneration package featuring performance based incentives with uncapped
Employer Provident Fund
Woodside is committed to fostering an inclusive and diverse workforce culture, which is
supported by our Values. Inclusion centres on all employees creating a climate of trust and belonging, where people
feel comfortable to bring their whole self to work. We also offer supportive pathways for all
employees to grow and develop leadership skills.
If you are ready to take your career to the next level and be part of a global organisation that
values innovation and excellence, apply now through our careers portal or connect with our
recruitment team.
experience
7show more