IRAP Assessor
4th October, 2022

An endorsed IRAP assessor assists in securing our systems and data by independently assessing our cyber security posture, identifying security risks and suggesting mitigation measures.

 

Duties Include:

  • Security threat and risk assessment identification and development of security accreditation artefacts,
  • IRAP assessments of proposed ICT designs and solutions
  • Stakeholder management, and communication of security concepts to non-technical audiences both verbally and in writing, and
  • Manage, develop and support complex relationships with stakeholders to achieve work area goals.

Key knowledge or experience requirements include:

  • A certified IRAP assessor per https://www.cyber.gov.au/acsc/view-all-content/programs/irap/irap-assessors ,
  • Have completed a full IRAP assessment for a Federal Government Agency,
  • Possess significant experience conducting security assessments and risk management at an Enterprise scale,
  • Demonstrated security experience within complex ICT environments, and
  • Demonstrated understanding of the Protective Security Policy Framework (PSPF), the Australian Government Information Security Manual (ISM), and Other Australian Government security guidance and advice.

All candidates must be Australian Citizens and hold a current NV1 clearance to apply.

Essential criteria

  1. Be a certified IRAP assessor per https://www.cyber.gov.au/acsc/view-all-content/programs/irap/irap-assessors
  2. Demonstrated security experience within complex ICT environments including: (a.) completed a full IRAP assessment for a Federal Government Agency, and (b.) possess significant experience of security assessment and risk management at an Enterprise scale.
  3. Demonstrated understanding of the Protective Security Policy Framework (PSPF), the Australian Government Information Security Manual (ISM), and Other Australian Government security guidance and advice.

Desirable criteria

  1. Knowledge, experience of, and relationships within the technology industry.
  2. Delivery of technology to support regulatory decision-making processes.
  3. Experience delivering to the Australian Government Digital Service Standard.

 

 

You can’t apply as it’s expired.