
Associate Cybersecurity Consultant
Datacom
full-time
Posted on:
Location Type: Hybrid
Location: Wellington • New Zealand
Visit company websiteExplore more
Tech Stack
About the role
- Work closely with the client CISO/vCISO/ISM in the delivery of the client cybersecurity strategy, including supporting the planning and implementation of cybersecurity activities which improves the client’s cybersecurity posture.
- Analysis of customer environments against IT security best practice or standards such as NZISM, ISO27001 or NIST and identification of appropriate measures that can be undertaken to achieve best practice and compliance.
- Assist with the development of technical information materials and participate workshops on information security trends, threats, good practices and control mechanisms as appropriate.
- Provide operational management oversight in the form of monthly reporting that spans across cybersecurity incidents, server patching, security enhancements and the management of elevated permissions etc
- Participate in incident response as part of the clients CSIRT.
- Participate in risk management activities as part of the client’s Risk Management team.
- Provide Operational Security support and function, where required.
- Participate in Tabletop exercises where required.
- Oversight or involvement in the Vulnerability Management Lifecycle.
- Providing cybersecurity advice to clients.
- Assist in the development and the delivery of the information security awareness training program for client and Datacom personnel, as required.
- Assist the clients in responding to internal and external audit assessments.
Requirements
- Proven years of experience in an IT Security or Cybersecurity role
- At least 5+ years of experience in general IT
- Technical background in security/networking, compute, cloud and general IT is advantageous
- Experience with using popular vulnerability scanning tools such as Microsoft Defender, Rapid7, Qualys, Tenable, etc.
- Experience within a complex organisation is beneficial for this role, as is any experience within a Managed Services provider as a Consultant.
- Strong knowledge of information security topics and an ability to provide advice for the information security steering committee, change management committee and other agency and inter-agency committees.
- Experience in conducting security risk assessments and multi year experience in risk management is beneficial.
- A genuine passion for Cyber/IT Security and maintaining an up to date security knowledge base comprising of a technical reference library, security advisories and alerts, information on information security trends and practices, and relevant laws, regulations, standards and guidelines.
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
cybersecurity strategyIT security best practicesrisk managementvulnerability managementincident responsesecurity risk assessmentsinformation security awareness trainingcloud securitynetwork securitysecurity compliance
Soft Skills
communicationcollaborationanalytical thinkingproblem-solvingorganizational skillsadvisory skillsleadershipclient managementreportingworkshop facilitation
Certifications
CISOvCISOISMISO27001NISTsecurity certifications (e.g., CISSP, CISM)risk management certificationscloud security certificationsnetwork security certificationsinformation security certifications