Security Consultant
Core
Provide subject-matter expertise to protect customers from security risks and implement new security capabilities across ICT and operational technology (OT) systems.
Role type
Security Consultant (Cyber Security)
Builds
Security policies, procedures, plans, risk assessments, and reports detailing security issues and control improvements.
Domain
Cybersecurity, Information Security, Government & Defense
Deliverable
client delivery
Required skills
Risk assessment, Security policy development, Threat analysis, Control effectiveness measurement, Security frameworks knowledge, Stakeholder communication
Preferred skills
CRISC, CISM, ISO 27001 Lead Auditor certifications
Technologies
ICT systems, OT systems, Australian Government Information Security Manual (ISM), NIST Cybersecurity Framework
Responsibilities
Assess risk at technical or system process levels against security control frameworks; Draft risk assessments and reports on security issues and control improvements; Categorize threats, threat actors, and vulnerabilities for ICT/OT systems; Develop security policies, procedures, and plans; Collaborate with peers across Australia and overseas to add business value; Judge risk at technical and business process levels for stakeholders; Review effectiveness of controls and propose security improvements; Analyze and research security technologies for innovative solutions.
Seniority
Individual Contributor