Technical Assurance & GRC – Sydney
We are proud to
bring to the Australian market a new key role with a major niche player in the
Information Security landscape for a Senior / Principal InfoSec/GRC Consultant.
As boards everywhere
are beginning to sit up and take notice of clear business risks surrounding
security breaches, data loss a
nd other Cyber threats, spending in the market is
increasing steadily. Currently, we are seeing most of this spend going toward
Consultancy engagements.
Aside from a couple
of the larger heavily regulated organisations who have invested heavily to
build internal capability, we do not anticipate this trend to stop anytime
soon.
So, now is a great
time to use your existing client-facing consultancy experience to increase your
income as well as move to a quality company with a great name in the market. As
market demand grows, so will your value.
This particular
organisation has a significant, stated focus to build out their existing
Information Security Architecture Consulting capability (both GRC and Technical
Assurance) by engaging a Principal / Lead GRC Consultant. This position will
join their impressive team in the heart of the Sydney CBD on a permanent basis.
This role will
provide a number of key accountabilities:
- Develop
Security frameworks & processes across the business unit and for
client programs of work - Advise
on long-term Security frameworks and client Security road-maps - Provide
Risk Management expertise to complex client projects - Forming
deep, strategic with a range of senior client and internal stakeholders - Leading/managing
the sales/business development and engagement processes - Provide
expertise and advice across sales, bid and proposal/tender processes - Advise
clients on tactical Security operations challenges - Guidance
across Security Design Principles and practises for major, complex
projects - Lead,
manage and mentor others in the team
Deep understanding
and practical knowledge of a number of global and Australian frameworks /
standards is essential to be successful in this position (as well as technical
concepts as listed):
- ISO27001
- PCI
- TOGAF
- Federal
ISM - Secure
Coding standards / life-cycles - Infrastructure
(IDS/IPS, SIEM, operating system etc etc) - Endpoint
(AV, Sandboxing, EP management etc) - Mobile
(iOS, Andriod) - Non
technical Security such as physical, procedural and more
This is a long-term,
career-defining role – they look after their people very well and provide a
project list that makes their competitors weep. With a defined strategy to make
Cyber #1 – there has never been a better time to consider a move to a major name
player.
To discuss this role
in great detail, please contact Adam Broadbent on 0487 868787 or email
abroadbent@justpeople.com