23 Sep
|
Blackroc
|
Queensland
23 Sep
Blackroc
Queensland
Job Description
Cyber Security Analyst – GRC & Assurance
n Brisbane | Contract to June ****with possibility of extension
n
We're currently partnering with a well-established organisation looking for an experienced Cyber Security Analyst to support a broad cyber security uplift program.
n
This is a great opportunity for someone with a strong background across governance, risk, compliance and assurance who enjoys working across both business and technical teams to improve security controls, support assessments and drive remediation activities.
n
The focus is on helping the organisation strengthen its cyber security posture through practical governance, assurance, risk and control activities.
n
The role
n You'll work closely with business stakeholders, technology teams, service providers and senior leaders to support cyber security uplift initiatives, assess control effectiveness and help drive remediation and continuous improvement.
n
Key responsibilities will include:
n
n
Supporting cyber security uplift activities across the organisation
n
Undertaking cyber security reviews, control assessments and maturity assessments
n
Assessing compliance against relevant security policies, standards and frameworks
n
Supporting internal and external cyber security audits and assurance activities
n
Coordinating vulnerability remediation with technical teams and service providers
n
Tracking security risks, issues, actions and treatment plans
n
Maintaining and assessing cyber security controls
n
Developing practical cyber security metrics, dashboards and reporting
n
Analysing security data to identify risks, trends and improvement opportunities
n
Preparing clear executive and governance reporting
n
Providing practical cyber security advice to business and technology stakeholders
n
Facilitating workshops, interviews and security discussions
n
n
About you
n
We're looking for someone with demonstrated experience across cyber security GRC, assurance and uplift, ideally within government or another regulated setting.
n
You'll bring experience in areas such as:
n
n
Cyber security governance, risk, compliance and assurance
n
Security assessments and maturity reviews
n
Cyber security control frameworks and maturity models
n
Vulnerability management and remediation coordination
n
Cyber risk assessments and treatment planning
n
Security control testing and effectiveness assessments
n
Cyber security reporting, dashboards and metrics
n
Working with technical teams, service providers and senior stakeholders
n
n
Knowledge of the following will be highly regarded:
n
n
ISO/IEC *****:****
n
NIST Cyber Security Framework 2.0
n
Queensland Government IS18
n
Security assurance and assessment methodologies
n
Microsoft security technologies and services
n
📌 Cyber Security Analyst (Queensland)
🏢 Blackroc
📍 Queensland