Cyber Strategy and Capability Analyst
- Cyber Strategy and Capability Analyst
- Initial contract up until March 2027 with possibility of extension
- Adelaide Based Position
We are seeking experienced Cyber Security Advisers to shape and deliver a Cyber Security Plan, Roadmap and Capability Model. Lead strategic uplift across architecture, risk and governance, partner with stakeholders, and strengthen cyber resilience aligned to national strategy.
Responsibilities:
- Participate in the development of the Cyber Security Plan and Roadmap to proactively address emerging threats and align with strategic objectives. This includes supplementary security strategies such as audit logging, identity and access management, digital forensics.
- Support the development and implementation of a Cyber Security Capability Model as the single reference point describing the breadth, depth and state of the organisation’s cybersecurity capabilities across people, processes, and technologies.
- Partner with stakeholders to deliver strategic guidance and direction as part of supporting strategies, plans and roadmaps, in line with the Cyber Security Plan and Roadmap.
- Support the organisations’s participation in broader Whole-of-Government cyber security engagements, particularly in relation to the execution of the 2023-2030 Australian Cyber Security Strategy and Commonwealth Uplift Plan.
Qualifications:
- Demonstrates performance and competency levels commensurate with the following Skills Framework for the Information Age (SFIA) skills:
-
Enterprise and business architecture (STPL) Level 5
-
Strategic planning (ITSP) Level 5
-
Measurement (MEAS) Level 5
-
Risk management (BURM) Level 5
- Understands key cyber and security frameworks, or can quickly learn them, including the Information Security manual (ISM), Protective Security Policy Framework (PSPF), Australian Cyber Security Centre’s (ACSC) Essential Eight, as well as ISO 27001, NIST Cybersecurity Framework.
- Brings experience in strategic design, enterprise and business architecture, with the ability to translate complex concepts and identified opportunities into practical outcomes.
- Builds strong relationships across technical and business areas, identifying requirements and gaps, addressing these and influencing stakeholders to achieve shared strategic goals.
- Understands cyber security risks and uplift needs, providing clear advice and guidance on activities to improve the organisation’s security maturity in line with government best practice and vision.
- Demonstrates strong leadership and judgement, managing multiple priorities, navigating ambiguity, and keeping executives and key stakeholders informed and engaged.
- Familiar with technologies and ICT landscapes and challenges within large organisations, as well as knowledge of contemporary technologies and concepts such as artificial intelligence, and quantum computing.
- Skilled in translating technical risk concepts for non-technical audiences and preparing clear, concise documentation and presentations for executive and governance stakeholders.
Apply Now or reach out to Ivan Aureus at 0480 806 152 for a confidential chat.