Cyber Sec Gov

2 weeks ago


Sydney, Australia University of New South Wales Full time

**Job no**: 525766

**Work type**: full time

**Location**: Sydney, NSW

**Categories**: Information Technology, Cyber
- Employment: Full time (35 hours per week)
- Duration: Continuing
- Remuneration: Excellent salary package including leave loading and generous superannuation
- Location: Based in Kensington, Sydney (hybrid working available)

**About UNSW Sydney**:
UNSW isn’t like other places you’ve worked. Yes, we’re a large organisation with a diverse and talented community; a community doing extraordinary things. Together, we are driven to be thoughtful, practical, and purposeful in all we do. Taking this combined approach is what makes our work matter. It’s the reason we’re one of the top 50 universities in the world and a member of Australia’s prestigious Group of Eight. If you want a career where you can thrive, be challenged, and do meaningful work, you’re in the right place.

Reporting to the Cyber Security Governance and Risk Manager, the role supports the maintenance and operational delivery of a fit-for-purpose and adaptive Cyber Security Governance framework and Information Security Management System (ISMS) including the assessment of information security risk associated with ICT services and IT initiatives; measurement of the operational delivery and effectiveness of security controls, management of security remediation and enhancement activities and promotion of a cyber-aware culture through delivery of training and awareness initiatives.

**Accountabilities Specific accountabilities for this role include**:

- Maintain cyber security policies and standards, periodically review, update, and align them with the overall policy framework and manage exemptions.
- Maintain and operationally deliver cyber security controls assurance services designed to assess whether key controls are operating effectively and consistently, including auditing of internal cyber security controls; risk assessment of 3rd party/supply chain risk exposure; and penetration testing of ICT systems and infrastructure.
- Maintain and administer a quantitative (value-at-risk) threat model relevant to the reporting of UNSW’s major cyber security threats and key controls.
- Maintain cyber risk register, socialise the risks to the relevant teams and administer the completion of risk treatment and policy compliance initiatives.
- Administer, and operationally deliver cyber security policy risk and metrics reporting using metrics dashboard to drive compliance.
- Coordinate and support the independent audit of cyber security controls on behalf of the University, including statutory audits completed by the Audit Office of NSW.
- Maintain and administer the cyber security awareness and training initiatives.
- Maintain awareness of legal, regulatory compliance and contractual obligations that are relevant to the University’s management of cyber security risk.
- Maintain an awareness of the University’s internal and external environment for emerging threats and advise the Head of Cyber Security Operations as appropriate.
- Escalation of significant security issues and risks as appropriate.
- Cooperate with all health and safety policies and procedures of the university and take all reasonable care to ensure that your actions or omissions do not impact on the health and safety of yourself or others.
- Align with and actively demonstrate the UNSW Values in Action: Our Behaviours and the UNSW Code of Conduct. - Cooperate with all health and safety policies and procedures of the university and take all reasonable care to ensure that your actions or omissions do not impact on the psychosocial or physical health and safety of yourself or others.

**Skills and Experience**
- A minimum of 2-3 years of experience in cyber security governance, compliance, risk management or cyber security operations within major organisations.
- Sound understanding of control assurance testing / auditing as well as identity and access management principles.
- Well-developed knowledge of cybersecurity principles and practices.
- Ability to present with credibility and translate technical and complex information concisely for diverse audiences using strong analytical and problem-solving skills.
- Strong negotiation and influencing skills to effectively manage key stakeholders, build robust relationships and work with a diverse set of business and technology people across the university and third-party vendors.
- Experience with industry-wide security standards and compliance frameworks such as ISO/IEC 27001, NIST CSF, COBIT 5 etc.
- Relevant industry certification(s) such as CSX, CRISC, CISA, CISSP, ISO/IEC 27001 Lead Implementer/Auditor, AWS, Google, Microsoft Technology (highly desirable).
- Demonstrated high level of personal motivation, resilience, and ability to work effectively individually or in teams.
- An understanding of and commitment to UNSW’s aims, objectives and values in action, together with relevant policies and guidelines.


  • Cyber Sec Gov

    2 weeks ago


    Sydney, Australia University of New South Wales Full time

    **Job no**: 523893 **Work type**: full time **Location**: Sydney, NSW **Categories**: Information Technology - Employment: Full time (35 hours per week) - Duration: Continuing - Remuneration: Excellent salary package including leave loading and generous superannuation - Location: Based in Kensington, Sydney (hybrid working available) **About UNSW...


  • Sydney, Australia University of New South Wales Full time

    **Job no**: 527462 **Work type**: full time **Location**: Sydney, NSW **Categories**: Information Technology, Analyst, Cyber - Employment Type: fixed term role until Dec 2025 as a Cyber Security Assurance Analyst within Cyber Security, UNSW IT - Starting Salary $110,073 plus generous superannuation - Location: UNSW Kensington Campus (Hybrid Working...


  • Sydney, Australia University of New South Wales Full time

    **Job no**: 515899 **Work type**: full time **Location**: Sydney, NSW **Categories**: Information Technology - **Full time, continuing role as a Cyber Security Assurance Testing Specialist**: - **Attractive salary package plus generous 17% superannuation**: - **Deliver and execute within a fit for purpose and adaptive Cyber risk framework**: -...


  • Sydney, Australia Barton Mills Full time

    **Company Overview** *** Join one of Australia's leading technology brands that has been an integral part of Sydney's IT, Digital & Project Services recruitment space since 2005. They also happen to be one of the only agencies in Sydney to have a 4.9/5 score on Glassdoor! This is a highly respected, mid-sized agency that offers one of best remuneration...


  • Sydney, New South Wales, Australia NSW Government Full time

    Senior Cyber Security Analyst - Security Assessment and Testing, Ongoing opportunity based in Sydney CBD + hybrid working options About the job The Department of Customer Service (DCS) is looking for a Senior Cyber Security Analyst-Security Assessment and Testing to join our growing team.In this role, you will contribute to the operations, maintenance,...


  • Sydney, New South Wales, Australia Experis Australia Full time

    About the Role As an EL1 Cyber Security Engineer, you will lead the development and enhancement of core and emerging cyber security technologies including SIEM, SOAR, Vulnerability Management, and Threat Intelligence.You'll collaborate closely with internal stakeholders and the Cyber Security Operations Centre (SOC) to ensure continuous improvement and...


  • Sydney, New South Wales, Australia ASX Full time

    Senior Cyber Security Specialist - Architecture & Assurance page is loaded Senior Cyber Security Specialist - Architecture & Assurance Apply remote type On-site locations Sydney time type Full time posted on Posted 30+ Days Ago job requisition id JR100199 ASX: Powering Australia's financial markets Why join the ASX?When you join ASX, you're joining a company...


  • North Sydney Council, Australia Infosys Limited Full time

    Associate Practice Sales Director-Cyber Security Sales Associate Practice Engagement Manager About Us Infosys is a global leader in next-generation digital services and consulting.We enable clients in 56+ countries to navigate their digital transformation.With over four decades of experience in managing the systems and workings of global enterprises, we...

  • Sales Manager

    6 days ago


    Sydney, Australia CyberSec People Full time

    This client is an Application Security Consultancy that provides pragmatic, contextual and clear security guidance for their clients including code review, DevSecOps tuning, Cloud assessments, software engineering and threat modelling. Clients range from startups through to scaleups and large enterprises. The company is committed to making sure their staff...


  • Sydney, Australia Carecone Pty. Ltd. Full time

    Elevate Cyber Security visibility with CISO & Business thru focused advisory services and differentiated solutions. - Align with client’s security strategy, Digital Transformation and Operational Resilience uplift programs strategy. Thus, identify new opportunities and work with Sales leaders and other ecosystem to convert - Be a single point of contact...