07 Aug
|
Mantel
|
City of Sydney
07 Aug
Mantel
City of Sydney
Mantel is an Australian-owned technology consulting business with capabilities across Cloud, Digital, Data, Delivery & Security. Since our inception in November 2017, we have experienced remarkable growth across Australia & New Zealand and are honoured to be recognised as a Great Place to Work for 4 years in a row!
We hire smart and talented people and get out of their way. As a principle-based organisation we have a flat structure with no hierarchy. By focusing on our five principles and not getting caught up in red tape, we trust you to get the job done!
Security
Working in our emerging and growing cyber security capability allows you to work closely with clients across our teams. Mantel presents to the market a cohesive, integrated cybersecurity capability, bringing together both security specialists with the broader cloud, data and digital specialists of the Mantel. Our security capabilities span governance, risk and compliance (GRC, our Advisory capability), cyber engineering, and offensive security. We enable large-scale cyber security initiatives for our clients, and improve the protection of IT environments.
About the role
This position will include the delivery of advisory services to our Australian government and corporate customers. Whilst the position may cover a variety of GRC services, at its core, services that relate to the Information Security Manual (ISM), Protective Security Policy Framework (PSPF) and associated federal government security directives will feature. Importantly, this includes the completion of Info‑Sec Registered Assessor Program (IRAP) assessments, as well as related advice.
Your day to day
- Leading / supporting the completion of IRAP assessments, ISM and PSPF implementation consulting, Essential Eight and related items to government customers, as well as providers to government.
- Leading / supporting client engagements to support compliance initiatives against frameworks such as APRA CPS 230 / 234, ISO 27001, Defence Security Policy Framework (DSPF),
Defence Industry Security Program (DISP), ACSC Essential 8, NIST 800‑171, NIST CSF, PCI DSS & SOC 2
- Leading / supporting supplier and vendor assurance reviews, security due diligence assessments, risk assessments, security strategy development, maturity assessments
- Supporting the ongoing maturation of Mantel's capability to deliver IRAP and related services to government and government customers, including delivery methodologies and collateral
- Supporting pre‑sales initiatives within Mantel
- Supporting project teams across Mantel with large client engagements across digital, data and cloud domains.
What you’ll need to be successful
- Being a current certified IRAP assessor. We are looking for people who are able to deliver IRAP work from the get go.
- Extensive knowledge as well as demonstrated experience in the application of the ISM
- Willingness to continually upskill; including learning new technologies and obtaining new certifications
- Good written & verbal communication skills, including strong stakeholder management, presentation and communication skills
- Experience in successfully delivering projects
- Bring a positive can‑do attitude to the team, with a problem solving orientation
- Hands‑on experience implementing security solutions or in other operational aspects of security
- Extensive experience working in regulated environments
- Knowledge of IT Security solutions and best practices with experience in design and/or implementation of a variety of solutions and technologies
Nice to have:
- Experience of the application of the ISM into cloud environments
- Demonstrated knowledge and experience in the application of security‑relevant Australian government mandates and publications, such as the PSPF, DSPF, E8
- Experience in leading teams and multi‑personnel and complex projects
- Other auditing experience (i.e. PCI or ISO certified auditor)
- Cloud certifications (i.e. CCSK or CCSP or Hyper‑saler specific certifications)
- Deep knowledge of compliance assurance and definition for security processes, including and not limited to SOC / ISO / APRA / PCI‑DSS
What you can expect from us:
- We know you won’t have one job for life. At Mantel we believe in supporting our team to take their career in a direction that aligns with their passions. We have internal opportunities across Cloud, Data, Digital, Delivery & Security.
- You’ll get all the tools you need to hit the ground running including a new phone, laptop & swag.
- We believe in unique experiences for all. Our My Deal program allows you to tailor your yearly plan, with the support of your Leader, to decide on what’s most important to you. That might be extra professional development, extra annual or parental leave, time to work on your side hustle, or something else completely different! One size does not fit all.
- You’ll be genuinely supported by an organisation that cares about not only you but your family as well, Mantel offers Flexible Personal Leave options for those unplanned moments in life.
- We support a flexible hybrid approach to working which is guided by our principles; we trust each other to “make good choices” about the best workplace locations for the requirements of the project, role and client. This can change based on our client needs.
Sounds like a valuable match for you? Click “Apply” to share your details & we will be in touch.
We value a diverse workplace and strongly encourage people from all backgrounds and minority groups to apply.
#J-18808-Ljbffr
📌 IRAP Assessor (City of Sydney)
🏢 Mantel
📍 City of Sydney