About this role
One of our federal Government clients is seeking to engage Lead Cyber Advisor(ServiceNow)/Artificial Intelligence Cyber Security and Controls Engineer*for Canberra -*location.
1-*Artificial Intelligence Cyber Security and Controls Engineer - EL1 Level*
Clearance -NV1
Contract Duration -12 months + 24 months
Mandatory Experience
- Familiarity with Australian Government frameworks such as PSPF, ISM, and Essential 8 along with international frameworks such as NIST.
- Demonstrated understanding of AI governance frameworks, responsible AI principles, privacy and data protection requirements, risk management methodologies and cyber security controls.
- Excellent stakeholder engagement skills, including collaboration with technical teams, policy makers, and external partners.
- Experience with implementing Microsoft Purview, DLP, information protection technologies as it related to AI Governance.
- Experience implementing cyber security and compliance controls within Microsoft 365.
- Experience in AI governance, technology risk, cyber security governance, or information security.
2-Senior Cyber Security Governance Analyst
- *Initial contract duration-*12 months
- *Extension term-*12 months
- *Experience level -*Senior - APS6 equivalent
- *Location of work -*ACT
- *Working arrangements -*Onsite
Key duties and responsibilities
Within the program, the role will be responsible for various cyber functions, including but not limited to:
- Contributing to solution design for security considerations;
- Review and provide recommendations to develop security requirements;
- Develop communications and documentation for senior executive decision making;
- Support the coordination of security assurance processes including IRAP and penetration testing;
- Lead the development of formal security documentation.
Essential criteria
- 1.Knowledge of the Information Security Manual, Protective Security Policy Framework and Essential Eight
- 2.Demonstrated experience and capability performing a cyber security GRC role.
- 3.Demonstrated experience managing stakeholder or client interactions to achieve an outcome.
- 4.Demonstrated experience in developing GRC documentation
Desirable criteria
- 1.Minimum 5 years experience in related roles
3- Cyber Advisor(ServiceNow with SaaS)
Contract Duration -2 Months + 12 Months
Security Clearance -*Baseline*
Key duties and responsibilities
- Deliver expert cyber security advice and guidance to the Sourcing Platforms team.
- Interpret the platform’s current security controls against updated ISM and SSPA controls (including changes made quarterly by ASD) and identify new controls required for compliance.
- Update and maintain key security documentation, including:
- Security Risk Management Plan (SRMP)
- System Security Plan (SSP)
- System Security Plan Annex (SSPA)
- Continuous Monitoring Plan
- Change Management Plan
- Disaster Recovery and Business Continuity Plan
- Incident Response Plan
- Support platform security enhancements and recommend measures to mitigate risks, thereby strengthening the platform’s security posture.
Technical skills
- Membership in Category A or B of the ACSC IRAP Assessor Membership program, or a minimum of five years’ technical ICT experience with at least two years dedicated to information security for systems governed by the ISM and related publications.
- Proficiency in implementing the Australian Cyber Security Centre’s Essential 8 strategies.
- Demonstrated ability to identify, analyse, and resolve infrastructure vulnerabilities and application security issues.
- Comprehensive.
Please Note -
Candidates with strong *ServiceNow experience*tied to cyber security, security operations, and security posture uplift will be preferred . Experience with ServiceNow SecOps, vulnerability management, incident response, and the implementation of security controls within ServiceNow will be viewed favourably
If you would like to apply for the above roles, then please send y*our updated resume with Cover Let*ter*to rahul.sharma@italliance.co*m.au
About cyber security & digital forensics roles for ex-police
Cyber security, digital forensics and incident-response roles. DMIs, cybercrime investigators and digital forensics officers bring evidential discipline and investigative judgement that DFIR and security teams struggle to hire.
See all cyber security & digital forensics jobs in Canberra →Why this fits a police background
- Police experience explicitly valued
- Incident command & response
- Protection & firearms
- Working to legislation & regulation
- Security operations