Location : Remote
Security Clearance : Australian Citizen must have NV2
Position Overview :
The Cyber Security Manager is part of the Engineering Support Team, working under the guidance of the Deputy Chief Engineer. This role involves leading a team focused on mitigating cyber security risks across various internal products. The manager will provide support services, expert advice, and reporting on hardware and software vulnerabilities, cyber supply chain risk management, defensive cybersecurity measures, incident response, and specialized consultations.
You will insure compliance with relevant financial, legislative, and departmental policies, as well as defence directives and standards.
Key Responsibilities :
- Manage vulnerability assessment activities, communicate with stakeholders, and prepare reports on both software and hardware components across all products.
- Develop and maintain the Cyber Supply Chain Risk Management Plan.
- Lead the development and enhancement of Security Operations Center (SOC) capabilities and oversee SOC analysts.
- Plan, execute, and report on threat hunting initiatives.
- Oversee Cyber Security Operations, including creating and updating Standard Operating Procedures.
- Analyse and apply Cyber Threat Intelligence (CTI) to organizational products.
- Engage with cyber security stakeholders within the Defence Digital Group and the broader Defence Department.
- Lead internal cyber security training programs.
- Stay current with emerging cyber security threats and issues, providing briefings and education to internal teams.
- Offer specialized ICT security advice during product design, development, and testing phases.
- Develop, implement, and maintain Incident Response Plans.
Requirements
Essential Experience & Skills :
Experience in ICT Security Governance, Risk, and Compliance (GRC) or equivalent.Skills in open-source intelligence analysis, risk assessments, and technical reporting.Background in SOC-based cyber incident response, both as an analyst and manager.Expertise in threat modelling, threat hunting, and incident management.Proficiency in SIEM tuning and optimization.Experience conducting supply chain risk assessments and reporting.Skills in vulnerability assessment and management.Desirable Qualifications & Skills :
Previous role within a Security Operations Centre (SOC).Knowledge of MITRE ATT&CK framework.Experience with SCAP, STIG, and CIS security standards.Familiarity with Agile / Scrum project methodologies.Knowledge of DevSecOps and CI / CD pipeline security.Skills in digital forensics for networks and hosts.Experience in SIEM design and deployment.Understanding of container security controls and logging.Prior experience with the Australian military or Department of Defence.Collaboration with Australian intelligence agencies.Additional Information :
This contract offers extension options, which will be discussed as needed. Candidates must complete the attached criteria statement and submit it along with their CV, providing relevant examples demonstrating their skills and experience.