Infrastructure Risk Senior Manager – Advisory
Are you ready to take control and deliver impact? Then join Ernst Young and gain experiences that will last a lifetime.
We are looking to appoint enthusiastic and results oriented Senior Manager to join our Infrastructure Risk Teams in Brisbane to aggressively build the practice by providing superior client service. Working as part of a team you will be providing a comprehensive range of Information Security and IT Infrastructure Risk and Controls services to top tier clients to better manage their business risks and improve controls and business performance. These include:
- Transformation of security programs that drive business performance
- Integration across the enterprise of the information security and IT risk approach
- Identification and evaluation of internal and external threats
- Optimization of measures to mitigate threats
- Understanding data access needs and implementing sustainable, compliant and efficient access processes
- Protecting information that matters and detecting leakage
- Ensuring regulatory and industry compliance
- Developing governances, policies and procedures frameworks
- Improving organizational resilience
- Client service delivery and able to manage multiple engagement teams and projects
- Management and development of a team of staff
- Business development and able to build strong relationship with clients.
Ideally you'll have experience with a globally recognised professional services firm or large corporation with experience in one or more of the following areas:
- Security Program Management - security strategy and road map, organization and governance, frameworks, ISO 27001 compliance, regulatory compliance, policies and policy compliance, information security risk assessment, security reporting and metrics, third-party security risk management, security architecture, security project and program management.
- Threat and Vulnerability Management - attack and penetration, cyber security investigations, vulnerability management, application testing and secure SDLC and control system security. Specialist in this area would most often be assigned to our Advanced Security Centre.
- Identity and Access Management - strategy and governance, request and approval, provisioning and de-provisioning, enforcement, review and certification, role and rules management, reconciliation and reporting and analytics.
- Information Protection and Privacy - data protection strategy, privacy implementation design, data loss prevention (DLP) and privacy assessment and remediation.
- Business Continuity Management state vulnerability assessment, BCM framework development, business impact analysis, post-incident analysis, site threat and risk assessment, recovery strategy development.
- Experience in cloud technologies as desirable
You'll also have a Bachelor's and/or post graduate degree in computer science, information systems, engineering, or a related major. The successful candidate must hold or be willing to pursue related professional certifications such as the CISSP, CISM, and/or CISA.
Additionally desirable technical certifications include CCSA - Check Point Certified Security Principles Associate, CCSE - Check Point Certified Security Expert, CCSP - Cisco Certified Security Professional, CNE - Certified Novell Engineer, ITIL - Information Technology Infrastructure Library, MCSE - Microsoft Certified Systems Engineer, RHCE - Red Hat Certified Engineer, MCSA - Microsoft Certified Systems Administrator, BCI Certificate.
For a career move that expands your horizons, apply today and join a firm that is committed to building an inclusive culture that supports a diverse workforce, helping you to gain experiences that will set you up for a lifetime.
Qualifications:
The preferred applicant will be subject to employment screening by Ernst Young or by their external third party provider.
Ernst Young refers to one or more of the member firms of Ernst Young Global Limited (EYG), a UK private company limited by guarantee. EYG is the principal governance entity of the global Ernst Young organization and does not provide any service to clients. Services are provided by EYG member firms. Each of EYG and its member firms is a separate legal entity and has no liability for another such entity's acts or omissions. Certain content on this site may have been prepared by one or more EYG member firms.
© 2013 Ernst Young, Australia. All Rights Reserved.
Leave a Reply
You must be logged in to post a comment.