You are a cyber security and risk professional with experience in governance, compliance and risk management practices. You have a strong understanding of cyber security principles, risk assessment methodologies and industry frameworks, and enjoy identifying risks and working with teams to mitigate issues that improve organisational security and resilience.
You combine strong analytical and problem-solving skills with the ability to communicate complex concepts clearly to both technical and non-technical stakeholders. You are collaborative, detail-oriented and proactive, with a passion for continuous learning and staying informed about emerging threats, evolving regulations and industry best practices.
• Tertiary qualification in Information Technology, Cyber Security, Risk Management or a related field. Certifications such as CRISC, CISM or ISO 27001 are highly desirable.
• 3+ years’ experience in cyber security, risk management, governance or compliance-related roles.
• Experience conducting risk assessments, supporting risk mitigation initiatives and contributing to governance programs.
• Knowledge of cyber security and governance frameworks such as SCF, NIST and ISO 27001.
• Understanding of Australian regulatory and compliance requirements and industry standards.
• Experience with threat modelling and secure design principles.
• Strong analytical, problem-solving and risk assessment capabilities.
• Excellent written and verbal communication skills, with the ability to engage technical and non-technical stakeholders.
• Strong documentation and reporting skills with attention to detail.
• Proven ability to collaborate effectively across teams and contribute to organisation-wide cyber security initiatives.