Security Consultant- Grc
Description Delivery of Consulting Services Information Security Assessments Information Security Awareness consulting Pre-sales - working with the sales function to present and respond to technical requirements Technical expertise on specific services/products for pre-sales for key/large enterprises as/when needed Delivery of consulting services to clients, as per scopes of work that are signed before commencement Delivery of ad-hoc advisory to clients within the realms of information security, governance, risk, and compliance Evangelise security best practices, research, and knowledge sharing amongst customers and prospective customers Services Delivery Management Adhere and contribute to SLAs, metrics, reporting, project scoping and management, customer escalation, engagement management, etc.
Management of internal security governance, risk, and compliance - using the 'eating our own cooking' approach.
Outcomes and measures Develop Information security governance & risk management strategies, frameworks (ISO27001 & PCI-DSS), policies, standards, and metrics to measure maturity of overall security operations in alignment with business priorities and its tactical/strategic objectives.
Perform reviews, assessments, and system implementations based on industry/regulatory requirements such as ISO27001, NIST Cybersecurity Framework, SOC2/SSAE-18, Australian ISM, etc.
Scope required activities and perform project estimates as required, ensuring that consulting activities defined in these scopes are delivered to the highest standards.
Engage in skills transfer - both internally and with customers.
Deliver assignments securely on time within budget and share results and recommendations to both technical and non-technical customers, in the form of either in-person presentations, written or verbal reports.
Develop and maintain strong relationships with customers through timely delivery of projects.
Conduct project management, where required.
Maintain InfoTrust's internal security standards and confidentiality of customer material as defined in our ISO 27001:2013 aligned ISMS.
Professional skills, qualifications and experience Minimum of 2-3 years' experience in IT, preferably in information and cybersecurity.
Minimum 1-2 years' experience in a GRC focused role.
Experience in conducting IT security and cyber/information security assessments.
Experience assisting with audits (internal & external) and auditors.
Proven track record building strong relationships with key business leaders and stakeholders.
Practical understanding of Information Security Standards & Frameworks, for e. g.
NIST CSF, ISO 27001, GDPR, ASD, ISM.
Good to have - 1 or more professional Information Security certifications (ISO 27001, CISSP Associate, CompTIA Security+ or equivalent).
Personal Attributes & Interpersonal Skills Strong Stakeholder management capabilities.
Outstanding verbal and written communication.
Adaptability to change.
Ability to align Cyber/Information Security objectives with key business goals.
Prepared to act as a 'hands-on' leader, as required.
Leadership Competencies Decision making competency.
Strong business acumen.
Performance management.
An understanding of business engagement drivers.
Personality Core Values Customer Driven.
Accountable.
Team Player.
Humble.
Trustworthy.
Health and Safety Responsibilities Comply with OHS legislation.
Work in accordance with safe working practices.
Ensure that any hazard or injuries are reported to your manager.
Environmental awareness is followed in daily performance of duties.
#J-18808-Ljbffr
Diventa il primo a rispondere a un'offerta di lavoro!
-
Perché cercare un lavoro con PostiVacanti.it?
Ogni giorno nuove offerte di lavoro È possibile scegliere tra un'ampia gamma di lavori: il nostro obiettivo è quello di offrire la più ampia selezione possibile Ricevi nuove offerte via e-mail Essere i primi a rispondere alle nuove offerte di lavoro Tutte le offerte di lavoro in un unico posto (da datori di lavoro, agenzie e altri portali) Tutti i servizi per le persone in cerca di lavoro sono gratuiti Vi aiuteremo a trovare un nuovo lavoro