Lead Cyber Security Adviser
Posted on:
16 days ago
Vacancies:
1 Vacancy
Job Summary
Role: Lead Cyber Security Adviser
Contract: 12 months contract (possible extensions)
Location: QLD ACT VIC SA
Work Type: Hybrid
Security clearance: Baseline / NV1 security clearance
Key duties and responsibilities
- Contribute to the system authorization program of work system projects and programs by developing or reviewing security artefacts including Security Risk Assessments Plan of Actions Milestones and System Security Plans.
- Assist business and system owners to attain and maintain Authorities to Operate for their systems.
- Identify test assess and assist with implementation of applicable security controls in line with Cyber Security Policy Guidelines the Australian Government Protective Security Policy Framework (PSPF) and Information Security Manual (ISM).
- Analyze and document security risk and recommend treatments and modifications to security practices and procedures using expertise and technical knowledge.
- Manage develop and support complex relationships with stakeholders to achieve work area goals.
- Manage and maintain the agreed service levels.
- Assist with the development and implementation of security policies procedures projects and strategies.
- Continuously work to improve the efficiency and effectiveness of the cyber security service.
- Educate and inform departmental staff to promote understanding and ensure adherence to security policy and processes.
Knowledge /Qualifications
- Demonstrated experience with risk and information security frameworks including PSPF
- Framework ISM and ISO 27001/2.
- Demonstrated experience in assessing systems for Authority to Operate
Desirable:
- CRISC CISSP CISA
- IRAP certification (ASD IRAP endorsed)
- ISO 31000
- ISO /IEC 42001:2023 standard - ISO certification in AI Management system
- Azure Security Engineer associate AZ-500
- AWS Certified Security - Specialty (SCS- C02)
- ISACA - AI Security Training AI Audit training
Technical skills
- Assessing technical configurations and applying Security Frameworks included ISM Essential 8 and PSPF.
- Strong analytical skills to evaluate risks and provide risk remediation advice.
- Ability to explain technical information to non-technical individuals.