● Provide risk assessments, security advice and guidance to the appropriate teams and the
assigned customers.
● Perform security evaluations of infrastructure changes in accordance to ITIL framework
● Maintain awareness of trends in the development of Information Security, including through
participation in industry forums.
● Developing and Implementing Organization-Wide Security Protocols including and not limited to
ISO27001/Essential 8/ASD
Responsibilities:
● Ensuring business compliance in line with internal cyber security framework and standards
● Maintain Ethan’s current security certifications
● Review and update relevant policies across the business required for Ethan various certifications
● Perform Risk Assessments, advise teams and clients of risks and negotiate treatment plans
● Coordinating response and remediation efforts for Cyber security incidents
● Support the continuous improvement of information security services and align maturity of
services against industry practices and business requirements
● Maintain an understanding of information security trends and threat intelligence, ensuring threats
and controls are understood
● Providing guidance and support to team members and business units on cyber security best
practices
● Evaluate IT risks focused on cyber security
Requirements:
● Tertiary Education, or other relevant qualifications.
● 5+ years of experience working with large organizations such as IT Consulting, Professional
Services, or Government.
● Understanding of Risk and Governance, Cyber Security Incident Management, Audit and
Compliance, Policy, Cloud technologies and Application Security.
● Understanding of risk management principles, and the application of risk assessment processes
to information Security.
● Demonstrated experience with applying information security principles, standards and
frameworks, (ACSC) Essential 8 & Information Security Manual
(ISM) and other applicable frameworks such as NIST