Urgent requirement of Lead Risk Assessor - Contract - Australia
Requirements
Key Accountabilities Include:
- Leading cybersecurity risk assessments across customer projects
- Collaborating with project teams to identify and address security gaps
- Communicating complex technical issues in clear business terms, including to executive stakeholders, such as through the risk decisioning process.
- Making informed decisions and managing stakeholder expectations
- Leading the uplift of team processes, documentation, and engagement models
Additional information:
- Actively collaborate with business stakeholders, engineers, delivery teams, product vendors and partners, as well as other Cyber Assurance stakeholders, to adequately understand and convey the cyber risk of a delivered product or solution
- Define and document re-usable assets such as standardised findings and process improvements to drive improved capability within the function
- Input into the creation and governance of security strategy, standards and frameworks to ensure a coherent and optimised overall security policy within the customer.
- Identify and eƯectively communicate security risks to business stakeholders in a timely manner - harvesting and harmonising insights from all relevant areas including privacy, legal,
engineering and operational stakeholders.
- Foster strategic relationships across industry and technology vendors to anticipate and plan for emerging opportunities and threats to inform risk assessment.
- Mentor and be a role model for new and existing Risk Assessors and candidates on secondment, including shadowing, process guidance and providing feedback.
- Handle complex initiatives while simplifying them to support eƯective execution.
Essential
- Minimum 15+ years of experience within Cybersecurity, with at least 8+ years of experience in GRC ot risk function.
- Practical experience in technical risk assessment.
- Familiarity with standards like ISO, PCI, NIST, and E8
- A team-oriented mindset and ability to translate complex technical risks into clear, actionable business insights
- Experience working in large, complex environments
Highly Desirable
- Prior experience within a non-cyber-related risk or GRC role.
- Industry certifications such as CRISC, CISSP, CISM or SABSA
- Experience in Agile and DevOps
Duration: 06 Months and possible extension Eligibility: Australian/NZ Citizens/PR Holders only
Email:
[email protected]
📌 Lead Risk Assessor - Contract - Australia (Sydney)
🏢 Hastha Solutions
📍 Sydney