DAFF are seeking multiple highly skilled technical resources to join our high-performing and fast paced ICT cyber security team.
The resource should be proficient in conducting security risk assessments of ICT systems and applications in accordance with the Protective Security Policy Framework (PSPF) and the Information Security Manual (ISM), with a strong focus on accuracy and attention to detail. The resource will review and contribute to the development of the full suite of security documentation, including System Security Plan Annexes (SSP-As) and System Security Plans (SSPs).
The applicant must have:
- 3-5 years' experience working within Government conducting security risk assessments in a cyber team.
- Demonstrated experience in conducting security risk assessments with Azure Cloud, Legacy ICT systems, AI Technology and complex systems.
- Current knowledge and experience providing guidance on application and system designs relating to PSPF, ISM and Essential Eight.
- Experience in liaising with non-technical and technical stakeholders in relation to cyber security issues, system risks and recommendations.
- Demonstrated strong written and verbal communication skills, including experience preparing and delivering executive-level briefings. Assist in identifying opportunities to strengthen the security posture of the department's environment.
- Strong understanding of networking infrastructure.
- Understanding of Operational Technologies will be an advantage.
Key duties and responsibilities
- Skills and capability
- Ability to troubleshoot and resolve complex issues.
- Has sound judgement and the ability to work under pressure with limited supervision to produce high-quality outcomes.
- Ability to manage a large workload.
- Ability to develop strong productive relationship, communication skills and issue resolution.
- Robust written ability is required to be able to explain complex systems to a non-technical audience.
- Strong communication skills to present security artifacts to a senior audience confidently.
- Collaborate with cross-functional teams to implement security solutions and ensure compliance with Australian government standards and frameworks.
Criteria
The buyer has specified that each candidate must provide a one page pitch to address all criteria specified. This is equal to 5000 characters.
Essential criteria
1. 3-5 years' experience working within Government conducting security risk assessments in a cyber team.
2. Demonstrated experience in conducting security risk assessments with Azure Cloud, Legacy ICT systems, AI Technology and complex systems.
3. Current knowledge and experience providing guidance on application and system designs relating to PSPF, ISM and Essential Eight
4. Experience in liaising with non-technical and technical stakeholders in relation to cyber security issues, system risks and recommendations.
5. Strong written and verbal communication skills, including experience preparing and presenting executive-level briefings.
6. Demonstrated understanding of networking infrastructure.
Desirable criteria
1.Understanding of Operational Technologies will be an advantage.
Applicants new to DFP may be asked to provide additional information including work rights status via a survey link - if requested, we ask that you provide this information in order to expedite your application.
DFP welcomes applications from Aboriginal and Torres Strait Islander people, people with diverse cultural and linguistic backgrounds and people with disability. In addition, DFP will provide reasonable adjustments for individuals with disability throughout the recruitment process. If you identify as a person with disability and require adjustments to the application, recruitment, selection and/or assessment process, please advise via
[email protected] or 1300 337 000 and indicate your preferred method of communication (email, phone, text) so we can keep in touch and meet your accessibility needs.
By clicking 'apply', you give consent that DFP may use your personal information to process your job application and to contact you for future employment opportunities. For further information on how DFP process your personal information please review the DFP Information Collection and Privacy Policy via https://www.dfp.com.au/legal_documents/privacy_policy. Do not submit any sensitive personal information in your resume.
📌 Lead Cyber Analysts (Sydney)
🏢 Dfp Recruitment
📍 Sydney