Senior Security Consultant
CSO Group · Sydney, New South Wales, Australia
Apply & track with Apply EdgeSENIOR SECURITY CONSULTANTCyber Risk & AssuranceOVERVIEWThe Senior Security Consultant plays a crucial role as a trusted advisor in guiding clients through the complexities of cyber risk management and assurance. This role is responsible for helping organisations identify gaps, develop strategies, governance to ensure compliance with industry standards, frameworks and regulations.YOUR ROLECyber Risk AssessmentConduct comprehensive risk assessments to identify potential cyber threats, vulnerabilities, and the potential impact on client organisations. Develop risk mitigation strategies tailored to the client's specific needs.Security AssuranceLead and oversee security assurance projects, ensuring that clients meet regulatory requirements and industry standards (e.g., ISO 27001, CPS234, ). Provide guidance on implementing security controls and policies.Client AdvisoryServe as the primary point of contact for clients, offering expert advice on cybersecurity best practices, emerging threats, and risk management strategies. Build and maintain strong client relationships through regular communication and consultation.Security Framework DevelopmentAssist organisations in developing and operationalising security control frameworks and Information Security Management Systems (ISMS) aligned to business objectives, regulatory requirements, and industry standards. Enable successful adoption through the creation of policies, risk frameworks, criticality assessments, governance artefacts, process documentation, and reporting mechanisms.Manage Supply Chain RiskHelp businesses to appreciate their supply chain risk and develop controls, policies and processes to repeatedly assess and manage this risk.Regulatory Compliance:Stay up to date with changes in cybersecurity laws and regulations. Ensure clients are informed of new requirements and help them achieve and maintain complianceAdherence to company policies including information security and cyber security policiesQUALIFICATIONS & CLEARANCESEducation & QualificationsBachelor's degree in Computer Science, Information Security, or related field.Certifications & TrainingIndustry certifications such as CISSP, CISM, CISA are highly desirableRequired SkillsExtensive experience (typically 5+ years) in cybersecurity, with a focus on risk management, security assurance, and client advisory servicesStrong understanding of cybersecurity frameworks, threat modelling, vulnerability management, and security architecture. Familiarity with cloud security, network security, and incident response toolsThis role requires a blend of technical acumen, strategic thinking, and excellent communication skills to effectively manage client relationships and deliver high-impact solutionsExcellent analytical, problem-solving, and communication skills, with the ability to effectively communicate complex technical concepts to non-technical stakeholdersProven ability to work independently and collaboratively in a fast-paced consulting environment, managing multiple clients, projects and priorities simultaneouslyProven ability to lead and mentor less experienced team membersStrong time management skills with the ability to manage multiple client engagements simultaneouslyHigh ethical standards and integrity, especially when dealing with sensitive information.Enthusiasm for staying updated with the latest security trends, technologies, and threatsAbility to adapt to rapidly changing environments and threatsPersistence in solving problems and a patient approach to dealing with complex issuesBrings a consulting mindset which is client focused and considers growth opportunities for CSOPolice CheckCurrent police check no greater than 90 days old