Senior GRC / Security Consultant (Sydney)

Senior GRC / Security Consultant (Sydney)

17 Sep
|
3Columns
|
Sydney

17 Sep

3Columns

Sydney

Company Profile:

3Columns is a specialist cybersecurity firm delivering a wide range of services, including Security Assurance, Security Governance, Professional Services, and Managed Services. We offer Managed Security Services, Offensive Security Services, Cyber Security Consulting, and professional services to help customers deploy the required controls. The SOC provides Managed Detection & Response and Incident Response.

About the Role:

3Columns is seeking a Senior GRC/ Cybersecurity Consultant to join the team. They will be responsible for delivering outcome-based engagements for a variety of clients and proactively improving Governance, Risk & Compliance capabilities within the organisations they engage with.

The Senior Security

Consultant will lead small to large projects, helping clients develop and implement cybersecurity risk mitigation strategies to support the business and drive the success of organisational strategies. The successful applicant will become an integral part of each client's cybersecurity strategy, developing strong relationships and becoming a trusted partner within each organisation.

Skills and Experience

- Strong experience with ISO27001, NIST and ASD8 Audits and policy documentation
- Ability to apply and audit cybersecurity frameworks such as ISO/IEC 27001,31000, ASD8 and NIST.
- Ability to take organisations on their cybersecurity journey
- Good understanding of GDPR and PCI-DSS, ISM, RFFR, SOC 2
- Experience in conducting Third-Party assessments.
- Ability to develop and utilise the company’s methodologies to provide effective cybersecurity and risk advice.
- Ability to articulate business implications and accurately calculate risks of findings in relation to the business.
- Ability to develop and deliver training and/or speaking material for public and/or private events.
- Proactively researching emerging security risks and controls.

Business Skills

- Excellent written and verbal skills to clearly explain concepts in non-technical terms.




- Consulting Skills with a wide range of audiences
- Strong communication and writing skills.
- Ability to translate IT and technical risks into business risk for the C-Level and Board.
- Solid understanding of commercial arrangements for small to large projects and able to demonstrate the value of service offerings to clients.
- Identifying and articulating security advice aimed at employees, managers and executives.

Personal Skills

- Must be forward-thinking in terms of vision for the business and team culture.
- Must have experience in working with consulting companies and with multiple customers and projects at the same time.
- Come up with innovative ideas to deliver services to the customer
- Ability to speak about security and recommend security controls to experienced security professionals and executives confidently and accurately.
- The ability to work as part of the team.
- Flexibility and motivation to work across various types of engagements.
- The ability to multitask and service multiple clients at once.
- Is detail-oriented, self-motivated and can work independently.

Certifications

You will a proven track record in an Information Security, IT Audit, Risk or Compliance field. You will also be a strategic and innovative thinker with strong organisational skills and an understanding of a range of industries and sectors. Candidates will hold or be studying towards one or some of the following certifications or equivalent:

- ISO 27001 Lead Auditor or Lead Implementer.
- CISSP ( Desirable, not mandatory)
- CISA
- CISM ( Desirable, not mandatory)
- CDPSE ( Desirable, not mandatory)
- Associate PCI DSS QSA ( Desirable , not mandatory)

Past Experience
- Previous or current experience working in a client-facing role is highly regarded.
- Understanding of the PCI-DSS framework.
- Experience working with, presenting to, and liaising with C-level and board members
- Your experience & qualifications

Please note: We will not consider offshore candidates or anyone with less than 7 years of experience in the GRC consulting space.

📌 Senior GRC / Security Consultant (Sydney)
🏢 3Columns
📍 Sydney

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: senior grc / security consultant (sydney) / sydney

Subscribe to this job alert:

Get the latest job offers by email for: senior grc / security consultant (sydney) / sydney