Lead Cyber Advisor (IRAP Assessor)
Core
Lead cyber security assessments for complex ICT systems, identifying risks and evaluating controls to support risk-based decisions throughout the system lifecycle.
Role type
Senior IC cyber security assessor (IRAP)
Builds
Security assessment reports, briefings, decision records, and improved security policies/tools
Domain
Cyber security / ICT systems / Government
Required skills
Risk assessment, threat modelling, business impact analysis, control reviews, system architecture analysis, vulnerability identification, residual risk assessment, mitigation strategy formulation, security policy development, stakeholder engagement, mentorship
Preferred skills
IRAP Assessor endorsement, cloud security certifications
Technologies
ICT systems, security controls, assessment tools
Responsibilities
Lead cyber security assessments for complex systems and projects; Conduct risk assessments, threat modelling, business impact analysis and control reviews; Analyse system architectures, configurations and evidence to identify vulnerabilities and security gaps; Assess residual risk and recommend mitigation strategies; Prepare security assessment reports, briefings and decision records; Advise stakeholders and mentor cyber security practitioners; Help improve security policies, assessment methods, tools and reporting standards