
Cybersecurity Risk Manager
1 day ago
We're inventing the future, right here, right now, at Thales. We design the critical security solutions of tomorrow by combining the curiosity to explore, the intelligence to question and the vision to create. Together we solve complicated problems by combining our experience in the market with our leading research and development capabilities.
A great opportunity has become available for an experienced **Cybersecurity Risk Manager **to join the renown safety and mission critical OneSKY program.**
The Cybersecurity Risk Manager role supports the delivery of the CMATS air-traffic management system in Australia, which is part of the OneSKY program. CMATS is a complex system and you work in a complex and challenging environment that employs well-defined system engineering processes to ensure fit for use and fit for purpose. In this role you actively manage the cyber risk of the CMATS solution through identification and evaluation of relevant risks in the context of threat sources, vulnerabilities, existing controls, business impact, and target security accreditations.
**KEY ACTIVITIES AND RESPONSIBILITIES**
As a Cybersecurity Risk Manager, you managing cyber risk through the following activities:
- Perform cyber risk assessments, capture and analyse all security requirements, and determine applicable security controls, and develop a threat model based on an agreed list of threat sources and events.
- Identify system, segment, component, and product vulnerabilities, and their impact on the CMATS solution and customer, and develop remediation strategies as appropriate.
- Monitor the effectiveness of remediation strategies and periodically update the security risk register.
- Create and maintain key cyber engineering and accreditation documents such as the Security Accreditation Plan, System Security Plan (SSP), Security Risk Management Plan (SRMP), the Threat and Risk Assessment (TRA), the security risk register, and other relevant contractual documents.
- Produce engineering design artefacts in relation to mitigation strategies including design considerations, design constraints, or design decisions that impact the overall solution design of CMATS.
- Support project IV&V activities, including the Certification and Accreditation phases in which the residual security risks are monitored and appropriately tested and assured, using agreed remediation strategies including penetration tests.
- Present the identified security risks, the analysis conducted to demonstrate effectiveness of proposed risk remediation strategies, and the proposed solutions to customer representatives during the Security Working Groups (SWG).
- Provide advice to internal and external customers on security risks of the CMATS system.
- Liaise with the appropriate federal government security organisations, customer representatives, certification authorities, and relevant service providers.
- Work with other project team members to develop cost and schedule estimates.
- Attend and actively participate in internal and external technical reviews.
**SKILLS & EXPERIENCE**
- Excellent knowledge of the Australian Government Information Security Manual (ISM) and PSPF, and accreditation requirements.
- Working with formal risk management methodologies and documents.
- Contemporary security solutions in heterogeneous environments (Linux and Windows) using a range of technologies and products
- Participating in end-to-end engineering processes with documented traceability
- Authoring and reviewing technical documentation
- Strong presentation and verbal communications and liaison skills
**QUALIFICATIONS**
- Bachelor-level qualification or higher in Information Security (or equivalent demonstrated experience)
- CISSP, CISM, SANS GIAC, SABSA, or similar professional security certifications
**SOME OF OUR GREAT BENEFITS**
- Competitive base salary + Super + Bonus
- Paid health insurance for you and your family
- Employee discounts with a number of affiliates (Travel, Car hire, Tech)
- Access to Fitness Passport
- Modernised Paid Parental leave
- Veterans Leave
Wellbeing matters at Thales, and where possible we encourage flexible working.
-
Cybersecurity Risk Manager
22 hours ago
Melbourne, Victoria, Australia beBeeCybersecurity Full time $150,000 - $200,000Our organization is seeking an experienced Cybersecurity Risk Manager to join its team of cybersecurity professionals. The successful candidate will be responsible for managing and mitigating security risks across our systems, networks, and applications.Job Description:The Cybersecurity Risk Manager will play a key role in ensuring the confidentiality,...
-
Cybersecurity Risk Manager
3 days ago
Melbourne, Victoria, Australia beBeeCybersecurity Full time $95,000 - $135,000Job TitleIT Security Analyst RoleWe are seeking a seasoned IT security professional to play a pivotal role in ensuring the effective management of risks across our organisation. As a key member of the Information Management and Technology Division, you will contribute significantly to the development of robust risk management practices.The ideal candidate...
-
Lead Cybersecurity Risk Manager
3 days ago
Melbourne, Victoria, Australia beBeeCybersecurity Full time $120,000 - $180,000Senior Cybersecurity and Risk Management LeaderOur organization is seeking a highly skilled Senior Cybersecurity and Risk Management Leader to oversee our cybersecurity initiatives and assurance activities. This role requires strong leadership skills, technical expertise, and experience in managing risk and security programs.The successful candidate will be...
-
Cybersecurity and Technology Risk Manager
6 days ago
Melbourne, Victoria, Australia beBeeCybersecurity Full time $65,000 - $157,000Job Title: Cybersecurity and Technology Risk ManagerThe Role:We are seeking a highly skilled and experienced Cybersecurity and Technology Risk Manager to join our team. In this role, you will be responsible for leading the development and implementation of our cybersecurity strategy, working closely with senior stakeholders across the organization.About the...
-
Cybersecurity Risk Management Specialist
2 days ago
Melbourne, Victoria, Australia beBeeCybersecurity Full time $120,000 - $180,000Cybersecurity Risk Consultant Job SummaryWe are seeking a skilled Cybersecurity Risk Consultant to join our team. As a consultant, you will play a crucial role in helping clients identify and mitigate potential cybersecurity risks.
-
Cybersecurity Risk Specialist
5 days ago
Melbourne, Victoria, Australia beBeeSecurity Full time $120,000 - $145,000Cybersecurity GRC Consultant RoleAs a cybersecurity GRC consultant, you will deliver clear and practical security assessments to help organizations meaningfully reduce risk. This role involves working across industries, supporting implementation and uplift efforts aligned to frameworks like ISO 27001, NIST CSF, and the Essential Eight.The ideal candidate...
-
Cybersecurity Risk Management Professional
6 days ago
Melbourne, Victoria, Australia beBeeRiskManagement Full time $80,000 - $120,000Cybersecurity Risk Management ProfessionalWe are seeking a Cybersecurity Risk Management Professional to join our Advisory team in Melbourne. As a key member of our team, you will work across industries to deliver clear, practical security assessments that help organisations meaningfully reduce risk.Job Description:In this hybrid client-facing role, you'll...
-
Cybersecurity Risk Specialist
3 days ago
Melbourne, Victoria, Australia beBeeCybersecurity Full time $100,000 - $120,000Cybersecurity Consultant OpportunityAs a Cybersecurity Consultant, you will be responsible for delivering clear, practical security assessments to help organisations meaningfully reduce risk.Key Responsibilities:Conduct cybersecurity risk assessments aligned to industry frameworks such as ISO 27001 and NIST CSF.Perform gap assessments and control maturity...
-
Cybersecurity Risk Manager
1 week ago
Melbourne, Victoria, Australia beBeeGovernance Full time $180,000 - $220,000Expert Governance and Compliance ProfessionalAs an experienced governance and compliance professional, you will play a pivotal role in providing expert advice to clients on managing their cybersecurity risks and ensuring adherence to relevant regulations. Your key responsibilities will include conducting thorough risk assessments, evaluating existing...
-
Chief Cybersecurity Risk Manager
2 days ago
Melbourne, Victoria, Australia beBeeCybersecurity Full time $95,000 - $125,000Cybersecurity GRC Specialist RoleWe are seeking a skilled Cybersecurity GRC Specialist to join our advisory team. This role will involve working across various industries to deliver practical security assessments that help organisations mitigate risks.Conduct comprehensive risk assessments aligned to industry frameworks such as ISO 27001 and NIST CSF.Perform...