
Vice President, Incident Response Manager, Global Information Security, Australia
- Sydney, NSW
- Permanent
- Full-time
- Proven experience handling Information Security related events and incidents.
- Experience in an operations focused role with an emphasis on cyber incident response.
- Demonstrable experience in the coordination of containment activities related to cyber security incidents.
- Familiarity with security vulnerabilities exploits and APT tools, techniques, and procedures.
- Familiarity with network security vulnerabilities, exploits, malware, and digital forensics desirable.
- An excellent verbal and written communicator who can adapt to their audience.
- Decisive and can make difficult decisions in what can be a high-pressure environment.
- Exercise independent judgment in methods, techniques, and evaluation criteria for obtaining results.
- Able to handle multiple competing priorities in a fast-paced environment and act without causing an undue delay.
- Supportive and can work well as part of a team as well as independently.
- Ability to remain calm under pressure.
- Ability to work in a strong team-orientated environment with a sense of urgency and resilience.
- Must be able to think outside the box and develop solutions to accomplish seemingly impossible tasks whilst remaining risk and objective focused, with an investigative mindset.
- Security+ or equivalent certification.
- GCIH or equivalent certification required within six months of employment.
- Establish oversight of information security events and cyber incidents and communicate analysis, containment and remediation efforts to all business partners.
- Cyber incident response and recovery plans will be available to use and should be maintained by the team. Any issues that require management escalation will be expected to be completed in a timely manner including all appropriate information in relation to risk and action times.
- The Cyber Incident Manager will be expected to provide status updates and post-incident findings for executives and stakeholders in non-technical terms encompassing risk, impact, likelihood, containment and remediation activities and threat actors.
- Risk management including briefing and recommending actions to executive leadership within Global Information Security and other business partners on events and incidents.