Private Advertiser
Senior Grc Consultant (Remote)
Senior Grc Consultant | Private Advertiser |Australia
This organisation is a crucial provider to Australia’s researchindustry, providing a protection and defence against international threatsand attacks while collaborating across the industry to uplift cybermaturity and improve security practices.
As a Senior GRC Consultant, you’ll be working closely with theCISO and Head of GRC to lead a number of initiatives across the...
Senior Grc Consultant | Private Advertiser | Australia
This organisation is a crucial provider to Australia’s research industry, providing a protection and defence against international threats and attacks while collaborating across the industry to uplift cyber maturity and improve security practices.
As a Senior GRC Consultant, you’ll be working closely with the CISO and Head of GRC to lead a number of initiatives across the organisation. Priority is gaining ISO 27001 certification, uplifting SOC 2 reporting measures, and maintaining policies and standards inline with NIST, Essential 8 and ISM.
Your responsibilities:Â
- Assist in creation and development of security policies and procedures that specifically address and align to ISO 27001 standards.
- Creation and maintenance of documentation required for ISO 27001 certification.
- Work closely with the organisation’s Security Operations Centre (SOC)/Blue Team, developing SOC specific policies inline with ISO 27001. This may include incident response procedures, threat intelligence protocols, change management processes for SOC systems.
- Lead internal audits, remediation activities, and risk treatment plans for SOC related risks and across the wider organisation.
Skills and experience needed:
- Experience and expertise in a governance, risk and compliance with experience leading or supporting an organisation to gain ISO 27001 certification.
- Experienced performing security controls implementation, testing, and assurance.
- Deep knowledge of industry standards and frameworks, with ISO 27001 required but broader knowledge across NIST, Essential 8, and SOC 2 advantageous.
- Familiarity with Security Operations Centre (SOC) workflows, processes, and activities. Knowledge of incident response procedures, threat intelligence, and vulnerability management is advantageous.
- Not crucial, but any industry recognised certifications such as Lead Implementer or Auditor across ISO 27001 is beneficial.
Benefits:
- Hybrid working arrangements, with 2-3 days in office flexibly.
- Fantastic work culture, working alongside leaders in the industry with an emphasis on collaboration and knowledge sharing.
- An opportunity of genuine importance to the business, lead the ISO 27001 certification and play a crucial role in the organisation.
If you’re interested in applying or a confidential conversation, please apply with your up to date CV and we will be in touch.
Related Jobs
See more All Other Remote Jobs-
NewSave
-
NewSave
-
NewSave
-
NewSave
-
NewSave
-
NewSave
-
NewSave
-
NewSave
-
NewSave
-
NewSave