Business Analyst – Medical Device Cybersecurity – Full time fixed 2-year contract.
Flexible work practices – hybrid – remote
Ramsay Health Care Australia is seeking a dedicated Business Analyst to join our team and play a crucial role in enhancing cybersecurity across our Internet of Medical Things (IoMT) ecosystem.
About the role:
This position is instrumental in uplifting cybersecurity practices and ensuring patient safety and clinical operations are protected. You will be responsible for:
• Gathering and documenting business and technical requirements for IoMT cybersecurity initiatives.
• Mapping current and future state processes to identify areas for improvement.
• Facilitating cross-functional workshops to drive collaboration and consensus.
• Translating complex cybersecurity concepts into practical, workflow-compatible controls.
Key Responsibilities:
• Collaborate closely with Cybersecurity, Biomedical Engineering, IT, clinical stakeholders, and medical device vendors.
• Ensure 'secure by design' practices are embedded throughout the entire medical device lifecycle, from procurement and onboarding to operation, maintenance, and decommissioning.
• Drive consistent processes, enable clearer decision-making, and improve alignment with regulatory and organisational security expectations.
Essential
• Proven experience as a Business Analyst within cybersecurity, medical technology, biomedical engineering, digital health, or healthcare delivery environments.
• Understanding of IoMT/OT cybersecurity risks, device modalities, vendor constraints, and clinical workflows; familiarity with device discovery, profiling, segmentation, vulnerability treatment, and lifecycle management.
• Strong capability in requirements elicitation, user stories, EPICs, functional/non‑functional specifications, and backlog management within Agile or hybrid delivery models.
• Advanced skill in process modelling (BPMN), current/future state mapping, and identifying operational and clinical pain points.
• Ability to produce high‑quality documentation, including process flows, business rules, acceptance criteria, workflow guides, and security assessment artefacts.
• Experience working with diverse stakeholders, including clinical teams, Biomedical Engineering, IT infrastructure/security, procurement, and external medical device vendors.
• Strong verbal and written communication skills, including the ability to translate technical cybersecurity concepts into practical, clinician‑friendly guidance.
• Solid understanding of relevant regulatory and security frameworks such as NIST CSF, ISO 27001, ISO 14971 (risk management), and the Australian TGA/FDA cybersecurity expectations for medical devices.
• Analytical skills, with the ability to interpret data and insights from IoMT platforms or BI tools to support prioritisation and reporting.
Desirable
• Experience supporting or documenting security incident response, vulnerability management, risk assessments, or compliance reporting in healthcare settings.
• Exposure to IoMT security controls, including device visibility tooling, network architecture considerations, segmentation enforcement patterns, and device risk treatment workflows.
• Relevant professional certifications such as CISSP, CISA, Security+, ITIL, CBAP, or equivalent cyber/BA credentials.
• Bachelor’s degree in Cybersecurity, Information Technology, Clinical/Health Informatics, Business, or a related discipline.
This is a fantastic opportunity to make a significant impact within a leading healthcare organisation. If you are a proactive and detail-oriented Business Analyst looking to specialise in a critical and evolving field, we encourage you to apply.
Benefits
Professional Advancement: Recognition and Professional Development. Free access to LinkedIn Learning with over 18,000 courses to advance your career and the Ramsay Leadership Academy to support career progression.
Ramsay Rewards: Access great deals at over 100+ major retailers
Employee Wellbeing: Flexible working arrangements, a commitment to work/life balance and free Employee Assistance Program offering access to confidential counselling, coaching and support 24/7.
Make a Difference: Make a meaningful impact on the delivery of quality healthcare services and contribute to the transformation of the industry.
Ramsay Way Culture: Join a team dedicated to 'People Caring for People,' fostering a positive, supportive and inclusive environment.
About Us
Ramsay Health Care, a global operator of private hospitals and primary care clinics with over 70 Australian sites employing over 34,000 people. We have been focused on delivering high-quality patient care and practising the Ramsay Way philosophy of ‘People Caring for People’ since 1964.
We believe in a bright future for our company and for every one of our employees – our wellbeing initiatives and learning and development programs have seen us grow as an industry leader and sought after employer.
Requirements
• A National Police Check conducted within the previous 12 months may be asked of you
To Apply
All applications must be lodged online. Applications made by recruitment agencies will not be considered.
For enquiries, please contact Mo Shahmaleki via email Shahmalekim@ramsayhealth.com.au
Applications Close: 26th February 2026
Ramsay Health Care is committed to Child Safety. Details of our commitment are set out in our Code of Conduct, available at
www.ramsayhealth.com