03 Sep
|
Jobtailor
|
Sydney
- Support delivery of cyber risk consulting engagements, including cyber risk assessments, maturity reviews, control reviews, incident response readiness, and tabletop exercises
- Assess cyber security risks, vulnerabilities, impacts, and control gaps across people, process, technology, and third-party environments
- Assist in preparing incident response plans, playbooks, and board- or executive-level workshop materials
- Contribute to client advisory work on cyber governance, policies, security frameworks, and resilience uplift roadmaps
- Review and analyse security controls against ISO 27001, NIST, CPS 234, and ASD Essential Eight
- Support evaluation of security technologies, vendors, and implementation approaches
- Help quantify cyber risk and communicate findings to support decision-making and investment prioritisation
- Build client and internal relationships
- Support business development activities and contribute to proposals, thought leadership, and marketing initiatives
- Work collaboratively with senior team members and provide guidance to junior colleagues where appropriate
Requirements
- 2–4 years of experience in cyber security, cyber risk, technology risk, or a related consulting role
- Experience in risk assessments, security reviews, incident response planning, and/or cyber resilience work
- Sound understanding of cyber security concepts, frameworks, and control domains, including governance, vulnerability management, identity and access management, cloud security, and third-party risk
- Strong written and verbal communication skills, including ability to explain technical matters to non-technical audiences
- Solid analytical, problem-solving,
and stakeholder management skills
- Knowledge of and experience working with ISO 27001, NIST, CPS 234, and ASD Essential Eight
- Professional certifications such as CISM, CISSP, CRISC, CISA, or equivalent
- Ability to manage competing priorities, work well in a team, and operate effectively in a client-facing workplace
- Commercial awareness and interest in developing advisory and consulting skills
- Appropriate approval to work in Australia
- Successful completion of a Criminal & Bankruptcy check prior to commencing employment
Core Competencies
Demonstrates expertise in cyber risk assessments, incident response planning, and security frameworks, with a strong ability to communicate complex technical concepts to diverse audiences. Proven experience in managing client relationships and contributing to business development in a consulting environment.
Highest-signal resume keywords
- Cyber Risk Assessment
- Incident Response Planning
- ISO 27001
- NIST
- CISM
Hard Skills
- Cyber Security
- Risk Assessment
- Control Review
- Vulnerability Management
- Identity And Access Management
- Cloud Security
- Third-Party Risk
- Security Frameworks
- Analytical Skills
- Problem-Solving
Soft Skills
- Written Communication
- Verbal Communication
- Stakeholder Management
- Team Collaboration
- Client-Facing Skills
Certifications & Qualifications
- CISM
- CISSP
- CRISC
- CISA
Industry Keywords
- Cyber Risk
- Cyber Governance
- Security Controls
- Incident Response Readiness
- Resilience Uplift Roadmaps
- ASD Essential Eight
- CPS 234
- Commercial Awareness
#J-18808-Ljbffr
📌 Consultant – Cyber Risk Consulting (Sydney)
🏢 Jobtailor
📍 Sydney