
IT Security and Compliance Analyst
- Sydney, NSW
- Permanent
- Full-time
- Building and continuing to develop our Information Security Services
- Assisting in the development and maintenance of cyber related policies and procedures
- Monitoring and responding to cyber incidents and alerts for change in service status reports
- Overseeing business continuity planning (BCP) and disaster recover (DR) plans and testing
- Assisting with the management of risks and security incidents
- Tracking security trends and developments, benchmark the organisation's security practices against industry standards
- Conducting functionality and gap analyses to determine compliance with statutory and regulatory requirements
- Establishing processes to review the implementation of new technologies to ensure security compliance
- Assisting in providing training and mentoring to the broader organisation
- Periodically assisting with the assessment of information security risk for the overall organisation
- Reviewing security issues brought out during security testing and provide necessary actions
- Reviewing security-related audit issues and providing guidance as required
- Preparing management reports on information security KPIs/KRIs and progress on security initiatives
- Complete cyber and other security related third party assessments
- Assisting in the delivery of cyber security related audit activities
- Providing frontline cyber security direction and input to applications, hardware and services provided to the organisation
- Providing cyber security related input into technology processes such as patching, managing user accounts and access rights management
- Assisting with security configuration of applications
- Assisting with non-technical issues where required by the organisation
- Experience in the operations of a law firm (highly desirable)
- High level of experience in supporting and using Microsoft Office products such as Outlook, Word, Excel and Teams
- Knowledge of Security frameworks and standards (ISO27001, NIST CSF)
- Experience with Secure Azure AD deployment and management
- Experience with MFA or similar
- Experience with Microsoft Intune or similar
- Experience in developing training manuals and programs
- Experience in implementing and managing online training solutions
- Ability to work in a team and build relationships with peers and team members
- Can-do attitude and willingness to help others
- Ability to contribute ideas, opinions and suggestions in team discussions
- Enthusiasm and responsiveness to internal clients
- Professional and courteous attitude to clients and internal stakeholders
- Supported hybrid working model
- Wellbeing initiatives including regular health and skin checks, flu vaccinations
- A range of discounts and services through a variety of leading retail and service partners
- An additional paid Personal Enjoyment Day each calendar year
- Ability to purchase up to 1 week of additional annual leave per financial year
- An employee referral program
- A commitment to learning and development through our MeridianMinds program
Applications close: