Cybersecurity Risk Manager
2 weeks ago
We design the critical security solutions of tomorrow by combining the curiosity to explore, the intelligence to question and the vision to create.
Together we solve complicated problems by combining our experience in the market with our leading research and development capabilities.
A great opportunity has become available for an experienced
Cybersecurity Risk Manager to join the renown safety and mission critical OneSKY program.**The Cybersecurity Risk Manager role supports the delivery of the CMATS air-traffic management system in Australia, which is part of the OneSKY program.
CMATS is a complex system and you work in a complex and challenging environment that employs well-defined system engineering processes to ensure fit for use and fit for purpose.
In this role you actively manage the cyber risk of the CMATS solution through identification and evaluation of relevant risks in the context of threat sources, vulnerabilities, existing controls, business impact, and target security accreditations.
KEY ACTIVITIES AND RESPONSIBILITIES
As a Cybersecurity Risk Manager, you managing cyber risk through the following activities:
- Perform cyber risk assessments, capture and analyse all security requirements, and determine applicable security controls, and develop a threat model based on an agreed list of threat sources and events.
- Identify system, segment, component, and product vulnerabilities, and their impact on the CMATS solution and customer, and develop remediation strategies as appropriate.
- Monitor the effectiveness of remediation strategies and periodically update the security risk register.
- Create and maintain key cyber engineering and accreditation documents such as the Security Accreditation Plan, System Security Plan (SSP), Security Risk Management Plan (SRMP), the Threat and Risk Assessment (TRA), the security risk register, and other relevant contractual documents.
- Produce engineering design artefacts in relation to mitigation strategies including design considerations, design constraints, or design decisions that impact the overall solution design of CMATS.
- Support project IV&V activities, including the Certification and Accreditation phases in which the residual security risks are monitored and appropriately tested and assured, using agreed remediation strategies including penetration tests.
- Present the identified security risks, the analysis conducted to demonstrate effectiveness of proposed risk remediation strategies, and the proposed solutions to customer representatives during the Security Working Groups (SWG).
- Provide advice to internal and external customers on security risks of the CMATS system.
- Liaise with the appropriate federal government security organisations, customer representatives, certification authorities, and relevant service providers.
- Work with other project team members to develop cost and schedule estimates.
- Attend and actively participate in internal and external technical reviews.
SKILLS & EXPERIENCE
- Excellent knowledge of the Australian Government Information Security Manual (ISM) and PSPF, and accreditation requirements.
- Working with formal risk management methodologies and documents.
- Contemporary security solutions in heterogeneous environments (Linux and Windows) using a range of technologies and products
- Participating in endtoend engineering processes with documented traceability
- Authoring and reviewing technical documentation
- Strong presentation and verbal communications and liaison skills
QUALIFICATIONS
- Bachelorlevel qualification or higher in Information Security (or equivalent demonstrated experience)
- CISSP, CISM, SANS GIAC, SABSA, or similar professional security certifications
SOME OF OUR GREAT BENEFITS
- Competitive base salary + Super + Bonus
- Paid health insurance for you and your family
- Employee discounts with a number of affiliates (Travel, Car hire, Tech)
- Access to Fitness Passport
- Modernised Paid Parental leave
- Veterans Leave
-
Melbourne, Victoria, Australia John Holland Full timeMelbourne, VIC, AU, 3000About John Holland:At John Holland, our purpose is simple, we transform lives with everything we do. We've always known at its heart infrastructure is about people — our customers, our employees, and the communities in which we work.That's our difference. Deep experience and capability with a genuine care about creating better lives...
-
Melbourne, Victoria, Australia John Holland Full timeGeneral Manager Cybersecurity, Technology Risk and AuditAt John Holland, our purpose is simple, we transform lives with everything we do. We've always known at its heart infrastructure is about people — our customers, our employees, and the communities in which we work.That's our difference. Deep experience and capability with a genuine care about creating...
-
Cybersecurity Consultant
2 weeks ago
Melbourne, Victoria, Australia Datacom Full timeOur WhyDatacom works with organisations and communities across Australia and New Zealand to make a difference in people's lives and help organisations use the power of tech to innovate and grow.About the Role (your why)Our Cybersecurity team are passionate, driven, and inclusive. We work hard, together, and will always make time to help each other learn and...
-
Cybersecurity Manager
2 weeks ago
Melbourne, Victoria, Australia Akaysha Energy Full timeSecurity (Information & Communication Technology) Join Akaysha Energy, a driving force behind Australia's renewable energy revolution. As a subsidiary of BlackRock's Global Renewable Power Fund, we are at the forefront of developing, financing, and operating transformative energy storage and renewable projects. Harness your passion for the climate and join...
-
CyberSecurity Intern
2 weeks ago
Melbourne, Victoria, Australia SECOMPASS Australia Pty Limited Full timeJob DescriptionWe work with research institutes to provide our customers with innovative Security and Privacy solutions in AI & Big data, Blockchain, Crypto and IoT. The other SeComPass services are:Development of Security Strategies, Enterprise Security and Privacy ArchitecturesLeading Security and Privacy transition/migration programsPerforming Security...
-
Cybersecurity Advisor
2 weeks ago
Melbourne, Victoria, Australia AGL Energy Full timeAs the needs of our customers change, so do we.At AGL, we believe progress is powered by our people.If you're set on making real change for tomorrow, we have the scale, resources and ambition to get it started today.Now's an extraordinary time to work with us. We're taking the lead on renewables and expanding our products to make them more sustainable,...
-
Melbourne, Victoria, Australia Talent International Full timeJob Details:LocationMelbourneSalaryplus bonusJob TypeFull TimeRefBBBH96215_ ContactKylie McManusPostedabout 3 hours agoOpportunityOur ASX listed Client has experienced a doubling in EBIDTA in the past financial year and has a solid platform for growth and expansion into new territories. A leader in the resources sector, with headquarters in Melbourne and...
-
Cybersecurity Lead
2 weeks ago
Melbourne City Centre, Victoria, Australia Energy Safe Victoria Full timeAbout Energy Safe Victoria (ESV)Our purpose is to keep Victorians energy safe and ensure energy is used confidently. Through education, regulation and enforcement, we work to ensure that energy safety, supply and efficiency are a priority in Victoria and something our customers can be confident in. Our people come from a wide range of professions with...
-
Cybersecurity Defence Specialist
2 weeks ago
Melbourne, Victoria, Australia Chandler Macleod Full timeAre you passionate about cybersecurity and ready to make a tangible impact? Our client AGL are looking for a talented Cybersecurity Defence Specialist to join Cyber Defence and Response team. In this key role, you'll operate and enhance the technical cyber defence SIEM engineering and intelligence capabilities of SOC, playing a critical part in protecting...
-
Cybersecurity Defence Specialist
2 weeks ago
Melbourne, Victoria, Australia It Miami Llc Full timeAre you passionate about cybersecurity and ready to make a tangible impact? Our client AGL are looking for a talented Cybersecurity Defence Specialist to join Cyber Defence and Response team. In this key role, you'll operate and enhance the technical cyber defence SIEM engineering and intelligence capabilities of SOC, playing a critical part in protecting...
-
Third Party Risk Management Specialist
2 weeks ago
Melbourne, Victoria, Australia Advance Thinking Full timeEstablish a robust risk management framework aligned with global standards Lead the creation of a critical Third Party Risk Management role Collaborate crossfunctionally to enhance cybersecurity practices effectivelyAdvance Thinking is a boutique IT Recruitment Agency with a great network of clients.Our client, a global multi-billion-dollar agricultural...
-
Cybersecurity Consultant
2 weeks ago
Melbourne, Victoria, Australia Grow Talent Full timeOur Client prides themselves on delivering cutting-edge solutions to their clients in the ever-evolving landscape of cybersecurity.With a team of experts dedicated to staying ahead of emerging threats, they provide comprehensive services that ensure their clients' digital assets remain secure and resilient.12 month contract with view to extend$750 Per day...
-
Technology Risk and Complaince Manager
2 weeks ago
Melbourne, Victoria, Australia McMillan Shakespeare Full timeThe McMillan Shakespeare Group (MMS) is a trusted provider of salary packaging, novated leasing, disability plan management and support co-ordination, asset management and related financial products and services. From our origins in 1988 when we created Australia's salary packaging industry to today, MMS has a proud history of innovation and exceptional...
-
Information Security Risk and Assurance Manager
2 weeks ago
Melbourne, Victoria, Australia HESTA Full timeInformation Security Risk and Assurance ManagerEver thought about joining a team where your work actually makes a difference to millions of people's financial futures?At HESTA, a leading national superannuation fund focused on health and community services workers, that's exactly what you'll be doing. With over 1 million Australians entrusting us with their...
-
Senior Cybersecurity and Information Officer
2 weeks ago
Melbourne, Victoria, Australia State Government of Victoria, Australia Full timeSenior Cybersecurity and Information Officer (VPSG5.2) Job posted: 21/05/2024 We are at the forefront of transitioning Victoria to a circular, climate-resilient economy. Our vision is simple – drive down emissions and reduce our waste.We employ the brightest minds, create the boldest plans and stay true to our vision. Our relationships with the industry,...
-
Sustainability, Risk
2 weeks ago
Melbourne, Victoria, Australia Compliance and Risk Management Recruitment Full timeEducation & Child Care Secondary Other Melbourne Permanent / Full Time20th March, 2023:Our client is a leading co-educational catholic school located in the South East of Melbourne. With a culture of continuous improvement coupled with respect, collaboration, and generosity they boast a long -term staff tenure on large & impressive grounds designed to...
-
Cyber Risk and Assurance Manager
2 weeks ago
Melbourne, Victoria, Australia Experis Full timeShape the security strategy for a renowed educational instituate. Permanent opportunity with a competive salary package Hybrid work arrangement Footscray OfficeAs the Cyber Risk and Assurance Manager you will lead cybersecurity governance, risk, compliance, and assurance. You will establish strong security practices, define standards, and manage cyber risks....
-
Cyber Security Manager
2 weeks ago
Melbourne, Victoria, Australia Kinexus Full timeSecurity (Information & Communication Technology) Full time Add expected salary to your profile for insights Are you a Cyber Security manager and interested in getting into the defence space? We are currently seeking a highly skilled and experienced Senior Management and Chief Information Security Officers to come and support in the defence industry.As the...
-
Cybersecurity Consultant
2 weeks ago
Melbourne, Victoria, Australia Capgemini Full timeAbout CapgeminiCapgemini is a diverse collective of more than 350,000 strategic and technological experts based across more than 50 countries, partnering with world-renowned clients to transform and manage their businesses. We are dedicated to leveraging cloud, data, AI, connectivity, software, digital engineering, and platforms to address the entire breadth...
-
Melbourne, Victoria, Australia Rtx Corporation Full timeRTX Corporation Digital Risk and Opportunity Principal Specialist Remote City , Rhode Island Apply Now Digital Risk and Opportunity Principal Specialist, Cybersecurity & Risk Management - 100% remoteAbout Us: At Raytheon, the foundation of everything we do is rooted in our values and a higher calling – to help our nation and allies defend freedoms and...