● provide risk assessments, security advice and guidance to the appropriate teams and the
assigned customers.
● perform security evaluations of infrastructure changes in accordance to itil framework
● maintain awareness of trends in the development of information security, including through
participation in industry forums.
● developing and implementing organization-wide security protocols including and not limited to
iso27001/essential 8/asd
responsibilities:
● ensuring business compliance in line with internal cyber security framework and standards
● maintain ethan’s current security certifications
● review and update relevant policies across the business required for ethan various certifications
● perform risk assessments, advise teams and clients of risks and negotiate treatment plans
● coordinating response and remediation efforts for cyber security incidents
● support the continuous improvement of information security services and align maturity of
services against industry practices and business requirements
● maintain an understanding of information security trends and threat intelligence, ensuring threats
and controls are understood
● providing guidance and support to team members and business units on cyber security best
practices
● evaluate it risks focused on cyber security
requirements:
● tertiary education, or other relevant qualifications.
● 5+ years of experience working with large organizations such as it consulting, professional
services, or government.
● understanding of risk and governance, cyber security incident management, audit and
compliance, policy, cloud technologies and application security.
● understanding of risk management principles, and the application of risk assessment processes
to information security.
● demonstrated experience with applying information security principles, standards and
frameworks, (acsc) essential 8 & information security manual
(ism) and other applicable frameworks such as nist