IT Security Consultant Assurance
Job Summary
Location: Brisbane Melbourne Sydney
Contract Type: Permanent
MinterEllison is one of Australias largest independent law and consulting firms. With a heritage of almost 200 years we are known for our excellence and our authentic and enduring relationships with our clients our people and our communities. Clients seek out MinterEllison to help them solve complex problems every day. We do this by our full-service legal offering and complementary consulting offering.
We offer opportunities to work on industry-leading mandates for top-tier clients while being part of a high-performing and collaborative team that values excellence diversity of thought curiosity and inclusion. We value our people and empower them to achieve their ambitions - with the support trust and autonomy to grow their careers in meaningful ways.
At MinterEllison were leading the way with AI and other emerging technologies powering innovation right across our firm. You will have the opportunity to engage with AI tools weve built and other external AI tools to enhance efficiencies and excellence internally and with our clients.
We support sustainable ways of working regarding how when and where you work and offer a wide range of social financial and health benefits (see Role
Our IT Security team is looking for an IT Security Consultantto deliver technical security risk analysis and assurance activities across MinterEllisons technology environment. The role spans two core functions: (1) technical security risk analysis including threat and risk assessments security architecture reviews and vulnerability analysis; and (2) assurance coordination including client questionnaires supply chain security penetration testing oversight user awareness and compliance with security standards.
This is an internal role reporting into the IT Security GRC Manager. You will work closely with the broader IT Security team IT Architecture IT Operations IT Procurement and managed services providers.
Key Responsibilities
Conduct threat and risk assessments for new and existing systems applications and AI solutions producing structured risk reports with prioritised remediation recommendations
Perform security architecture reviews on proposed and existing solutions against MinterEllison standards and applicable frameworks
Provide security risk input into IT projects at key stages ensuring security is embedded by design
Analyse vulnerability scan results triage findings by risk severity and track remediation to closure
Coordinate penetration testing activities including scoping third-party coordination and remediation tracking
Respond to client questionnaires audits security program enquiries and RFPs
Perform supply chain security reviews andmaintainthe risk register
Contribute to the IT Security awareness program and coordinate with broader training teams
Assistwith maintaining ISO27001 and other compliance certification programs
Maintain MinterEllisons Security Trust Centre with regular updates
About Company
MinterEllison is a multinational law firm, and professional services firm, based in Australia. By number of lawyers it is the largest law firm in Australia.