Security Consultant
Canberra, AU
Full Time Mid-level / Intermediate Clearance required AUD 58K - 108K *
BAE Systems
BAE Systems Digital Intelligence is home to 4,500 digital, cyber and intelligence experts. We work collaboratively across 10 countries to collect, connect and understand complex data, so that governments, nation states, armed forces and commercial businesses can unlock digital advantage in the most demanding environments.
Security Consultant
About us
Digital Intelligence operates in multiple countries and is home to over 4,800 world-class data, digital, cyber and intelligence experts within the BAE Systems Group. We work collaboratively to deliver digital expertise to our customers, partners as well as other parts of the Group. Working in partnership with us, organisations including governments, armed forces and commercial businesses can unlock their digital advantage and tackle the evolving challenges of the digital age.
Cyber security consultants are a critical part of our delivery business and provide a diverse range of services to our clients. We are seeking talented people to provide this subject-matter expertise to our customers and grow our existing team. These roles will be focused on providing assistance to customers seeking to protect themselves from security risks and implement new security capabilities across a variety of ICT and operational technology (OT) systems.
About you
You are dedicated, skilled and knowledgeable. You are passionate about what you do and working with your team to get things done and support the national cyber mission.
About the role
- Assesses risk at the technical or system process level, delivered through the assessment of systems for compliance against defined security control frameworks
- Drafts high-quality risk assessments and reports detailing security issues, technical and governance control improvements, and recommendations to address identified security risks
- Provides an accurate categorisation of threats, threat actors and vulnerabilities, delivered through the completion of security threat and risk assessments of ICT and / or OT systems
- Develops security policies, procedures and plans, to ensure effective governance
- Collaborates with peers across the Digital Intelligence business, both in Australia and overseas, to look for ways to continuously add value to the business, build your professional network, and share experiences
- Understands business and information risk context (typical business drivers, cyber security threats and implementation challenges) of our customers
- Judges risk at a technical and business process level and clearly articulate both verbally and in writing to key stakeholders.
- Reviews effectiveness of controls (in relation to known controls frameworks as appropriate) and proposing proportionate security improvements.
- Analyses and research security technologies to support the development of innovative solutions.
Functional requirements
- Measures effectiveness of controls in place
- Measures business impact associated with systems or processes, via document review or structured questionnaires
- Supports interviews or investigations, including on-site visits and stakeholder workshops
- Communicates and works with our customers to assist them in effectively managing cyber security risk
- Familiar with information security standards, such as the Australian Government Information Security Manual (ISM) and 27001
- Familiar with information security frameworks, such as NIST Cybersecurity Framework
- Hold at least one relevant industry certification, such as SANS ICS515, SANS ICS410, CISA, CRISC, GICSP, or CompTIA Security + (or demonstrate on track to achieving)
- Hold a national security clearance, or be willing to obtain.
Business expertise and interpersonal skills
- Possess strong written and verbal communication skills
- Have demonstrated stakeholder management experience
- Demonstrate attention to detail, be proactive and organised
- Be able to respond to setbacks in an agile and resilient manner
Life at BAE Systems Digital Intelligence
We are embracing Hybrid Working. This means you and your colleagues may be working in different locations, such as from home, another BAE Systems office or client site, some or all of the time, and work might be going on at different times of the day.
By embracing technology, we can interact, collaborate and create together, even when we’re working remotely from one another. Hybrid Working allows for increased flexibility in when and where we work, helping us to balance our work and personal life more effectively, and enhance well-being.
Diversity and inclusion are integral to the success of BAE Systems Digital Intelligence. We are proud to have an organisational culture where employees with varying perspectives, skills, life experiences and backgrounds – the best and brightest minds – can work together to achieve excellence and realise individual and organisational potential.
Division overview: Financial Services
At BAE Systems Digital Intelligence, we pride ourselves in being a leader in the cyber defence industry, and the financial sector is one of the biggest targets for cyber-attacks. Our Financial Services business unit is responsible for all of our clients in the financial sector and handle all areas of these relationships. The Financial Services Division helps banks, insurers and other major financial institutions to combat fraud, unauthorised trading and money laundering, and meets their regulatory compliance obligations.
As a member of the Financial Services business unit, you will be responsible for providing critical services to clients in the financial sector and ensure that we remain a leading name in cyber security. We all have a role to play in defending our clients, and this is yours.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Agile CISA Clearance Compliance CompTIA CRISC GICSP Governance NIST Risk assessment SANS Security Clearance Vulnerabilities
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.