Closed

Cyber Security Advisor

Tender ID: 480074


Tender Details

Tender #:
18035  
Status:
Closed
Publish Date:
9 December 2021
Closing Date:
16 December 2021

Tender Description

⁠⁠⁠The Department of Education, Skills and Employment is seeking an experienced cyber security practitioner to help us design and deliver new digital platforms and services for job seekers and employers as part of the Digital Employment Services Platform.

You will have the privilege to work in a highly motivated and delivery focussed environment with multi-disciplinary teams and a mission to deliver better public facing web and mobile applications.

The successful applicant in this role will work with existing architecture, delivery, infrastructure, development and cyber security teams to align DevSecOps activities, verify security controls, build capability and support a high cadence roadmap of innovation.

The successful applicant will be an expert practitioner with a passion for hands on analysis, be able to understand technical cyber security risks and demonstrated experience achieving successful security outcomes across teams and organisations.

As part of this role you will be responsible for:

• Establishing and iteratively improving a security and risk management process that meets both accreditation and actual security outcomes,
• Assisting teams with the development and maintenance security documentation in line with the Australian Government Information Security Manual (ISM),
• Providing advice to delivery and operations teams about uplift in practices and implementation of controls,
• Perform technical security verification of implemented controls on various technology stacks,
In addition to practical, policy and leadership experience in cyber security, experience in any of the following areas would be considered beneficial:
• Providing assurance to projects that follow the DTA Service Design and Delivery Process (SDDP) or other agile methodologies,
• Accreditation in agile environments,
• Penetration testing of websites, mobile applications and APIs,
• Mentoring and capability uplift of web and mobile pen testers,
• Static analysis and vulnerability scanning products and approaches,
• Secure coding practices, including uplift and training.

 



Similar Tenders

Active opportunities matching this tender's categories and regions.