Job Details
Manage the overall Information Security program and develop a Resilience Framework b) Develop and Review Information Security Policies and Procedures as per Australian Privacy Act, ISMS and GDPR c) Act as the organization's representative with respect to inquiries from customers, partners, and the general public regarding the organization's security strategy d) Develop and govern Information Classification and Loss prevention policies e) Review the ongoing maintenance of the certification/compliance such as ISO27001 ISMS f) Quickly understand business security & continuity needs and be able to dive deeply into technology issues.
g) Be responsible for creating and communicating Information Security vision h) Ensure the Security architecture principles are well laid out and in line with the business objectives i) Identify and assess IT security risk/ exposure on new and existing infrastructure & information architecture, design, and operations j) Recommend appropriate corrective actions to resolve/mitigate the Information security incidents This includes working closely with the company's compliance, forensic, internal audit and legal teams, as needed.
k) Ensure protection of the intellectual property of the organisation l) Review existing disaster recovery, crisis management, and business continuity plans and provide recommendation and guidance for Business Continuity m) Drive security related training programs, awareness campaigns, metrics and skills for the organization and knowledge transfer to IT staff n) Attend professional meetings, read literature, and participate in training or other educational offerings to keep abreast of new developments and technologies related to disaster recovery, business continuity and information security o) Analyse corporate intelligence data to identify trends, patterns, or warnings indicating threats to security of people, assets, information, or infrastructure