Lead Cyber Security Analyst – Risk Assessments | Government
n
This is a hands-on assessment role within a high-performing Federal Government cyber security team. The successful candidate will personally conduct security risk assessments, identify and document security risks, recommend appropriate treatments, and produce high-quality security documentation.
n
Key responsibilities
n
Conduct detailed security risk assessments of ICT systems and applications
n
Assess Azure cloud environments, legacy ICT systems, AI technologies and other complex systems
n
Identify security risks, control gaps and compliance issues, and develop practical risk treatment recommendations
n
Review system and application designs against the PSPF, ISM and Essential Eight
n
Prepare and maintain security risk assessments, System Security Plans, System Security Plan Annexes and supporting security artefacts
n
Clearly document assessment findings, risks, controls, recommendations and residual risk
n
Present security findings and artefacts confidently to senior and executive stakeholders
n
Work with technical and non-technical stakeholders to explain cyber security risks and recommended treatments
n
Collaborate with cross-functional teams to implement security solutions and improve the organisation's security posture
n
Manage multiple assessments and competing priorities in a fast-paced environment
n
About you
n
At least 3–5 years' experience working within a government cyber security team and conducting security risk assessments
n
Proven hands-on experience completing security assessments for Azure cloud, legacy ICT, AI technologies and complex systems
n
Current and practical knowledge of the PSPF, ISM and Essential Eight
n
Solid experience preparing security risk assessments, System Security Plans, System Security Plan Annexes and related documentation
n
Demonstrated ability to identify, analyse, document and communicate security risks and recommendations
n
Experience providing security guidance on application, infrastructure and system designs
n
Strong understanding of networking infrastructure
n
Experience engaging with technical teams, business stakeholders, risk owners and senior executives
n
Excellent written communication skills, with the ability to explain complex technical risks to non-technical audiences
n
Must be able to obtain and maintain an NV1 security clearance
📌 Lead Cyber Security Analyst - Risk Assessments | Government (Canberra)
🏢 seek.com.au
📍 Canberra
Reply to this offer
Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.