Talent.com
This job offer is not available in your country.
Security Risk Management Specialist

Security Risk Management Specialist

CanonicalCanberra, Australian Capital Territory, Australia
24 days ago
Job type
  • Remote
Job description

In security risk management we're looking to harness the power of industry best practice combined with driving new innovation on how we do security risk assessments and modelling. Our security risk management team is the primary owner of the strategy and practices of how we identify, track and reduce our security risk across everything we do.

To support this we need to use industry best practices paired with emerging threat information to to promote risk identification, quantification, impact analysis, and modelling to ultimately drive decision making. In this role, you will help establish and execute a broad strategic vision for the security risk program at Canonical. You will not only work within the team but also cross-functionally with various teams across the organisation. The team contributes ideas and requirements for Canonical product security, improving the resilience and robustness of all Ubuntu customers and users subject to cyber attacks. Additionally, the team collaborates with our Organisational Learning and Development team to develop playbooks and facilitate security training across Canonical.

The security risk management team's mission is not only to secure Canonical, but also to contribute to the security of the wider open source ecosystem. They might share knowledge through public presentations and industry events, and share threat intelligence with the wider community or represent Canonical in sector-specific governance bodies.

What you will do in this role :

  • Define Canonical's security risk management standards and playbooks
  • Analyse and improve Canonical's security risk practices
  • Evaluate, select and implement new security requirements, tools and practices
  • Grow the presence and thought leadership of Canonical security risk management practice
  • Develop Canonical security risk learning and development materials
  • Work with Security leadership to present information and influence change
  • Participate in developing key risk indicators, provide inputs to the development of key control indicators, and key performance indicators for various programs
  • Apply statistical models to risk frameworks (such as FAIR, sensitivity analysis, and others)
  • Participate in risk management, decision-making, and collaborative discussions
  • Lead quantified risk assessments and understand the value of qualitative data for improvements to quality and engineering processes
  • Interpret internal or external cyber security risk analyses in business terms and recommend a responsible course of action
  • Develop templates and materials to help with self-service risk management actions
  • Monitor and identify opportunities to improve the effectiveness of risk management processes
  • Launch campaigns to perform security assessments and help mitigate security risks across the company
  • Build evaluation methods and performance indicators to measure efficiency of security functions and capabilities.

What we are looking for

  • An exceptional academic track record
  • Undergraduate degree in Computer Science or STEM, or a compelling narrative about your alternative path
  • Drive and a track record of going above-and-beyond expectations
  • Deep personal motivation to be at the forefront of technology security
  • Leadership and management ability
  • Excellent business English writing and presentation skills
  • Problem-solver with excellent communication skills, a deep technical understanding of security assessments and risk management
  • Expertise in threat modelling and risk management frameworks
  • Broad knowledge of how to operationalize the management of security risk
  • Experience in Secure Development Lifecycle and Security by Design methodology
  • What we offer you

    We consider geographical location, experience, and performance in shaping compensation worldwide. We revisit compensation annually (and more often for graduates and associates) to ensure we recognise outstanding performance. In addition to base pay, we offer a performance-driven annual bonus. We provide all team members with additional benefits, which reflect our values and ideals. We balance our programs to meet local needs and ensure fairness globally.

  • Distributed work environment with twice-yearly team sprints in person
  • Personal learning and development budget of USD 2,000 per year
  • Annual compensation review
  • Recognition rewards
  • Annual holiday leave
  • Maternity and paternity leave
  • Employee Assistance Programme
  • Opportunity to travel to new locations to meet colleagues
  • Priority Pass, and travel upgrades for long haul company events
  • About Canonical

    Canonical is a pioneering tech firm at the forefront of the global move to open source. As the company that publishes Ubuntu, one of the most important open source projects and the platform for AI, IoT and the cloud, we are changing the world on a daily basis. We recruit on a global basis and set a very high standard for people joining the company. We expect excellence - in order to succeed, we need to be the best at what we do. Canonical has been a remote-first company since its inception in 2004. Working here is a step into the future, and will challenge you to think differently, work smarter, learn new skills, and raise your game.

    Canonical is an equal opportunity employer

    We are proud to foster a workplace free from discrimination. Diversity of experience, perspectives, and background create a better work environment and better products. Whatever your identity, we will give your application fair consideration.

    J-18808-Ljbffr

    Create a job alert for this search

    Risk Specialist • Canberra, Australian Capital Territory, Australia

    Related jobs
    • Promoted
    Ict Security Specialist

    Ict Security Specialist

    TasmaniaCanberra, Australian Capital Territory, Australia
    Our Federal Client is at the forefront of national security, driving innovation in intelligence and cybersecurity to safeguard Australia’s interests in an increasingly complex global landscape.We a...Show moreLast updated: 7 days ago
    • New!
    Risk Analysis And Management Officer

    Risk Analysis And Management Officer

    Chandler MacleodCanberra, Australia
    As one of the Australia's largest providers of human resources solutions, Chandler Macleod has a proven track record of unleashing potential in people and companies. For over 40 years Chandler Macle...Show moreLast updated: 9 hours ago
    Senior Cyber Security Assurance And Risk Analyst

    Senior Cyber Security Assurance And Risk Analyst

    Halcyon KnightsCanberra, Australia
    Senior Cyber Security Assurance and Risk Analyst Senior Cyber Security Assurance and Risk Analyst Fed Gov - aviation sector Canberra CBD + WFH (2 days in office) Australian Citizens holding a curre...Show moreLast updated: 7 days ago
    Security Operations Specialist

    Security Operations Specialist

    Kinexus AustraliaCanberra, Australia
    Security Operations Specialist (Multiple) - RFQ-AGO22 / 23-136 - SOW 1 - Rereleased.The position includes monitoring the SOC toolsets identifying gaps and anomalies in IT system activity, creating an...Show moreLast updated: 7 days ago
    Security Incident Management Analyst

    Security Incident Management Analyst

    Ignite Specialist Recruitment ServicesCanberra, Australia
    Experienced security incident manager needed by a large goverment agency we are working with to review controls, provide uplift recommendations, and deliver training. Develop security incident manag...Show moreLast updated: 5 days ago
    Security Services Specialist

    Security Services Specialist

    Vertical Scope GroupCanberra, Australia
    Opportunities for Security Services Specialists experienced in design and delivery of specialist security equipment within SCIF environments and high security programs. Join Vertical Scope Group - D...Show moreLast updated: 2 days ago
    Cyber Security Specialist

    Cyber Security Specialist

    CalleoCanberra, Australia
    Our client, a large Federal Government is seeking an IT Cyber Security Officer IT Security Officer will include, but are not limited to the following : . IT Security Managerreport accreditation and pa...Show moreLast updated: 22 days ago
    Security Specialist

    Security Specialist

    ExperisCanberra, Australia
    Role : Security Specialist_ • •_ _.Estimated start date • • : 12 months.Working arrangements • • : Onsite.Our large Federal Government client is looking for an experienced security specialist who will be ab...Show moreLast updated: 9 days ago
    Information Security Consultant - Cissp Cism Risk

    Information Security Consultant - Cissp Cism Risk

    Genesis It&T Pty LtdCanberra, Australia
    A leading global technology company is currently looking to hire an experienced Information Security Consultant to be responsible for providing risk assessments, security advice and guidance for th...Show moreLast updated: 13 days ago
    Security Incident Management Analyst

    Security Incident Management Analyst

    Onpoint 365Canberra, Australia
    Security Incident Management Analysts • •.Work terms • • : Initial 12-month contract with possible 12-month extension.Must be in office a min of 3 days can WFH 2 days a week. Department • • : Department of H...Show moreLast updated: 5 days ago
    • Promoted
    Cyber Security Specialist

    Cyber Security Specialist

    Paxus - Technology + Digital TalentCanberra, Australian Capital Territory, Australia
    Cyber Security Specialist - EL1.Full Time, Non-Ongoing (up to 2 years) with the view of becoming permanent.S26 Transfer is available for this role. Ability to obtain and maintain Negative Vetting Le...Show moreLast updated: 17 days ago
    Risk Management Positions

    Risk Management Positions

    DownerCanberra, Australia
    Downer Professional Services (DPS).We work on complex and impactful Defence government and infrastructure projects that shape the future of our nation. Our people are at the core of our success brin...Show moreLast updated: 19 days ago
    Cyber Risk Management Consultant

    Cyber Risk Management Consultant

    E2 CyberCanberra, Australia
    Job Description : Cyber Risk Management ConsultantJob Summary : Our client is seeking mid-level GRC consultants to join their team to help support the development and delivery of assessments, transitio...Show moreLast updated: 22 days ago
    Security Risk And Reporting Analyst

    Security Risk And Reporting Analyst

    MedibankCanberra, Australia
    Will you actively create a healthier future for tomorrow? • •.At Medibank we're encouraged to think big.We have a clear purpose to impact better health outcomes for our customers, patients and our co...Show moreLast updated: 4 days ago
    • Promoted
    ICT Security Specialist

    ICT Security Specialist

    Remote PtyCanberra, Australian Capital Territory, Australia
    The ICT Security Specialist will maintain SIEM, monitor firewalls and system elements for security incidents.They will develop security documentation and practices, and maintain and improve the sec...Show moreLast updated: 7 days ago
    • Promoted
    APS6 Cyber Security Risk Analyst

    APS6 Cyber Security Risk Analyst

    Softtest PaysCanberra, Australian Capital Territory, Australia
    Australian Citizens residing in Australia only respond.Preferred NV1 Clearance or be willing and eligible to obtain.Minimum of 5 years experience in Cyber Governance, Risk and Compliance, or a rela...Show moreLast updated: 13 days ago
    Cyber Security Specialist

    Cyber Security Specialist

    TalentCanberra, Australia
    You can be based in Canberra or BrisbaneMust have NV1 security clearanceAbout the role : We are seeking a highly skilled and experienced Senior Cyber Security Assurance and Risk Analyst to join our ...Show moreLast updated: 10 days ago
    Security Risk Management Specialist

    Security Risk Management Specialist

    CanonicalCanberra, Australia
    In security risk management we're looking to harness the power of industry best practice combined with driving new innovation on how we do security risk assessments and modelling.Our security risk ...Show moreLast updated: 13 days ago
    • Promoted
    Cyber Risk Management Consultant

    Cyber Risk Management Consultant

    e2 CyberCanberra, Australian Capital Territory, Australia
    Cyber Risk Management Consultant.Our client is seeking mid-level GRC consultants to join their team to help support the development and delivery of assessments, transition of information to concise...Show moreLast updated: 29 days ago
    TSPV - ICT Security Specialist

    TSPV - ICT Security Specialist

    Compas Pty LtdCanberra, ACT, AU
    ICT Security Specialist – Exciting opportunity to support critical ICT systems in a high-security environment!.Active TSPV Security clearance required. We are seeking an experienced ICT Security Spe...Show moreLast updated: 13 days ago