16 Aug
|
HorizonOne
|
Australia
16 Aug
HorizonOne
Australia
Our client is a highly regarded Australian defence technology organisation that designs, develops and sustains advanced systems that support some of Australia’s most critical Defence capabilities. Through longstanding collaboration with Defence, the organisation has developed expertise in active electronically scanned array technologies, resulting in a highly modular and scalable product suite integral to critical Defence capabilities. The Opportunity This role leads the organisation's information system authorisation activities, embedding governance, risk and regulatory compliance practices aligned to Australian Government frameworks including the ISM, PSPF and ASD Essential 8. Working within the broader cybersecurity team, you'll lead the implementation, monitoring and continuous improvement of security controls that support compliance, maturity uplift and informed risk management. The Role As Cyber GRC Manager, you will lead information system authorisation activities and strengthen governance, risk and regulatory compliance practices across the organisation. You will work closely with the CISO, DCISO, technical teams and business stakeholders to implement and continuously improve security controls aligned with Australian Government requirements, including the ISM, PSPF and ASD Essential Eight. You will provide trusted security advice across infrastructure, enterprise applications and technology projects, translating technical risk into practical recommendations for stakeholders and senior executives. Your responsibilities will include: Leading security authorisation and Government ATO activities Developing and maintaining SSPs, SRMPs and incident response plans Driving implementation of ISM,
Essential Eight and related frameworks Leading cyber risk assessments across systems and projects Advising on security for greenfield and legacy modernisation initiatives Developing policies and controls to manage identified cyber risks. Partnering with technical and business teams to improve security maturity Supporting the CISO and DCISO with executive-level security advice The Ideal Person You will bring significant experience in cybersecurity, GRC or information security within a complex enterprise setting. Experience in Defence, Federal Government, telecommunications, energy or another highly regulated sector would be particularly valuable. You will have a minimum of five to seven years' experience as a Cyber Security or GRC Analyst. You will have strong working knowledge of Australian Government security frameworks, including the PSPF, ISM and ASD Essential Eight, combined with the ability to identify cyber risks and develop practical risk-reduction strategies. You will be comfortable working with stakeholders ranging from deeply technical specialists through to senior executives and will be able to communicate complex security issues in a clear, commercially relevant way. Salary / Rates Remuneration will be aligned with experience Permanent, full-time position Based on site in Canberra You will also have access to the following additional benefits: Six weeks of paid annual leave per year Superannuation of 14.0% Free onsite car parking Paid Parental, Compassionate, Defence Reserve and Voluntary Emergency Services leave Defence Health Insurance and salary packaging options Employee Assistance Program and support for ongoing professional growth and development How to Apply To apply online, please click on the appropriate link. Application Requirements: Resume and cover letter outlining your relevant experience for the role. For a confidential discussion about the role, please contact Prajjwal K C on 02 6108 4878 quoting ref no. 21792 . HorizonOne is committed to building a diverse and inclusive workforce and we encourage applications from people of all cultures, capabilities and backgrounds.
📌 Cyber grc manager (Australia)
🏢 HorizonOne
📍 Australia