15 Aug
|
Lynden Group
|
Melbourne
15 Aug
Lynden Group
Melbourne
SORRY - NO RECRUITERS
Role Description This is a full-time hybrid Cyber Security Consultant (vCISO Pathway) role based in Australia, with flexibility to work from home part of the time. You will work in collaboration with our Lead vCISOs across a growing portfolio of cyber security advisory clients. You start as the second voice in the room and finish as the person clients call first.
This is a client-facing advisory role with an explicit development structure behind it. Executive and board exposure begins in the first month.
The role is open to two candidate profiles: an experienced cyber security consultant, and a strong infrastructure or network engineer ready to move into advisory.
The role is deliberately structured as an apprenticeship into the vCISO seat. You will work alongside experienced practitioners, not beneath one. If your objective is to hold a CISO or vCISO portfolio within three to five years, this is the most direct route we know how to build.
This role is probably not for you if
- You want a defined scope of work each week.
- You prefer to be handed requirements rather than work out what the client actually needs.
- You want to stay hands-on-keyboard as your primary contribution.
- You are uncomfortable being coached in detail and often.
Company Description Lynden Group is an Australian professional services firm with offices in Australia, Asia and Europe. We combine accounting and financial advisory with a cyber security practice, which is unusual and it matters: a great deal of mid-market cyber risk shows up first as a commercial or financial problem, and we see both sides of it. Our cyber and AI work spans vCISO engagements, risk assessments, penetration testing, threat modelling, managed detection and response, board training and cyber resilience programmes.
Qualifications:
Track A: cyber security advisory background
- Four to eight years in cyber security, with meaningful advisory or consulting exposure.
- Enough technical depth to be credible with an engineering team,
and enough commercial sense to be credible with a chief financial officer. Neither alone is sufficient.
- Existing familiarity with Essential Eight, ISO 27001 and NIST CSF as delivery frameworks rather than as reading material.
Track B: infrastructure or network engineering background
We are not insisting on prior cyber security consulting experience. A solid technical operator who understands how environments are actually built and run brings something many advisory candidates do not, which is the ability to tell when a control is described accurately and when it is not.
- Six or more years in infrastructure, networks, platform or systems engineering.
- Demonstrated interest in security and evidence of self-directed learning. Show us what you have taught yourself and how.
- Comfort using modern research and drafting tools well. Framework lookup and first-draft production are no longer the barrier to entry in this work; judgement is, and that is what we will coach.
- Willingness to sit and pass CISSP or CISM within the first eighteen months. We fund it.
Required of both tracks
- Written English at a standard that survives client delivery without editing. This is weighted heavily in our assessment.
- Presence in front of senior people. You do not need to be polished yet, but you need to be composed under questioning and comfortable saying that you do not know and here is how you will find out.
- Working knowledge of the Australian regulatory context: Privacy Act 1988, APRA CPS 234, Security of Critical Infrastructure Act obligations, and the ACSC Essential Eight.
- Willingness to travel to client sites, sometimes at short notice.
- Australian work rights
What You Get That You Will Not Get Elsewhere
- Executive and board exposure that consultants at larger firms typically wait a decade for.
- Direct coaching from a practising vCISOs across a varied client portfolio rather than a single industry.
- A defined progression path with a real choice at the end of it, and the numbers attached to it in writing.
- Exposure across the firm's accounting and financial advisory practice, which is where a great deal of mid-market cyber risk actually surfaces.
📌 Cyber Security Consultant (vCISO Pathway) (Melbourne)
🏢 Lynden Group
📍 Melbourne