Location: ACT QLD SA VIC
Requirement: Must have NV1 clearance
Risk assessment and development of security authorisation artefacts. Demonstrated security experience within complex ICT environments. Strong stakeholder management skills and the ability to communicate security concepts to nontechnical audiences both verbally and in writing. Understanding of global Cyber Security trends attack vectors and techniques. Tertiary or other relevant qualifications are advantageous.Key duties may include but are not limited to:
Identify test and assess applicable security controls in line with the Australian Government PSPF ISM and agency policies and guidelines.
Analyse and document security risk and recommend treatments and modifications to security practices and procedures using expertise and technical knowledge.
Contribute to the system authorisation program of work system projects and programs by developing or reviewing security artefacts including Threat and Risk Assessments and System Security Plans.
Manage develop and support complex relationships with stakeholders to achieve work area goals.
Manage and maintain the agreed service levels.
Assist with the development and implementation of security policies procedures projects and strategies.
Continuously work to improve the efficiency and effectiveness of the cyber security service.
Educate and inform departmental staff to promote understanding and ensure adherence to security policy and processes.
Requirements
Extensive demonstrated experience with risk and information security frameworks policies and standards including the Federal Government Protective Security Policy Framework (PSPF) and Information Security Manual (ISM) and international standards (ISO 27001/2).
Demonstrated working experience in security threat and risk assessment and development of security authorisation artefacts.
Weighted Criteria
Demonstrated security experience within complex ICT environments.
Strong stakeholder management skills and the ability to communicate security concepts to nontechnical audiences both verbally and in writing.
Understanding of global Cyber Security trends attack vectors and techniques.
Demonstrated experience in Federal Government.
Relevant tertiary or other qualifications
Mandatory Criteria Extensive demonstrated experience with risk and information security frameworks, policies, and standards, including the Federal Government Protective Security Policy Framework (PSPF) and Information Security Manual (ISM), and international standards (ISO 27001/2). Demonstrated working experience in security threat and risk assessment and development of security authorisation artefacts. Weighted Criteria Demonstrated security experience within complex ICT environments. Strong stakeholder management skills, and the ability to communicate security concepts to non-technical audiences both verbally and in writing. Understanding of global Cyber Security trends, attack vectors and techniques. Demonstrated experience in Federal Government. Relevant tertiary or other qualifications
Education
Cyber security Analyst