Palladium: Make It Possible

Manager, Cybersecurity, GISI Consulting Group

Palladium: Make It Possible  •  Brisbane, AU (Onsite)  •  20 hours ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

Manager, Cybersecurity, GISI Consulting Group

About GISI Consulting
Group and Palladium


GISI Consulting
Group (GISI CG) is a top 10 global provider of program and project management
and engineering consulting services delivering outcomes and solutions for some
of the most complex challenges. We deliver services in infrastructure & mobility, earth
& water, and government & society segments across more than 100
countries. With over 5,000 projects
annually and a global team of over 11,000 professionals, our advisory,
consulting, design and program management capabilities enable us to create a
safer and more sustainable world. Learn more about GISI CG at https://gisiconsulting.com/.

Palladium, a GISI company, works to design, develop and deliver
positive impact on the lives and livelihoods of people around the globe;
broaden access to health, water, power, and infrastructure; build enduring,
sustainable, and transformative institutions and market systems to address
global challenges; and conserve the natural world. We operate in over 90
countries and have a workforce of 2,100 talented, motivated, and diverse staff
around the world. This role will be hired through Palladium, an operational
platform for GISI CG.

This Opportunity

The Manager, Cybersecurity will support
GISI Consulting Group’s (GCG) Operating Companies (OPCOs) in strengthening
their cybersecurity posture by advancing their cybersecurity maturity in
alignment with GCG global security strategy, policies, and standards. The role
will act as an advisor to local business and technology teams, conduct
cybersecurity maturity assessments, identify gaps and risks, drive remediation
initiatives, and support the implementation of security best practices across
diverse business environments. The Manager will work closely with the ICT
Cybersecurity and Compliance workstream teams to ensure consistent application
of security controls.

This role is a corporate fixed-term position for up to ten months with
the possibility of an extension to one year.


Location

This role will be based remotely in Australia.

To be
considered for this position, you must have valid work rights in the country
where the role is based. Please note that visa sponsorship is not available for
this role.

Reporting Lines

  • The Manager will work under the direction of the SVP, IT Operations (based in the US)
  • This role will have regular meetings with the Cybersecurity and Compliance workstream teams and key stakeholders from the OPCOs

Primary Roles and Responsibilities

  • Partner with assigned OPCOs to assess, improve,
    and monitor their cybersecurity maturity and alignment with GCG’s
    Information Security Policies and standards
  • Identify, assess, and monitor applicable local
    privacy, regulatory and contractual requirements for assigned OPCOs, and
    ensure alignment with both local obligations and GCG’s standards
  • Develop and maintain remediation roadmaps and
    action plans to address identified security gaps
  • Support OPCOs in implementing security controls,
    standards, and procedures in accordance with GCG’s cybersecurity
    requirements
  • Provide guidance on cybersecurity governance,
    risk management, vulnerability management, incident response, data
    protection, identity and access management, and third-party risk
    management
  • Develop SOPs, templates, checklists, and guidance
    documents to support consistent adoption of cybersecurity best practices

Essential
Criteria

  • Bachelor’s degree in Computer Science, Cybersecurity, or equivalent
  • 8+ years of relevant ICT experience in the field of cybersecurity
  • Strong understanding of cybersecurity frameworks and industry best practices, including NIST CSF, CIS Controls, ISO 27001, and risk management principles
  • Demonstrated experience assessing and improving cybersecurity maturity programs
  • Knowledge of security governance, compliance, vulnerability management, incident response, identity and access management, and data protection
  • Strong analytical and problem-solving capabilities with the ability to translate technical risks into business impact
  • Ability to manage multiple initiatives and priorities across different operating companies
  • Excellent communication, presentation, stakeholder management, and relationship-building skills
  • Strong project management and organizational skills.
  • Ability to work independently while collaborating effectively within a global team environment

Desired Criteria

  • Cybersecurity certification desirable

Applications will be accepted on a rolling basis. We encourage you to
apply early as the position may close once a suitable candidate is found. Please
note that only shortlisted candidates will be contacted.

We welcome
applications from candidates of all backgrounds, including First Nations
peoples, people of diverse sexual orientations, gender identities and
expressions, and people with disabilities - disclosure will not affect your
application, and we will work with you to provide appropriate adjustments.

Please note:
While this role does not involve direct work with children, the successful
candidate will still be required to complete a police check and relevant due
diligence checks as part of Palladium’s commitment to being a child-safe
organisation.

Equity, Diversity & Inclusion - Palladium
is committed to embedding equity, diversity, and inclusion into everything we
do. We welcome applications from all sections of society and actively encourage
diversity to drive innovation, creativity, success
and good practice. We positively welcome and seek to ensure we achieve
diversity in our workforce; and that all job applicants and employees receive
equal and fair treatment regardless of their background or personal
characteristics. These include: (but are not limited to) socio-economic
background, age, race, gender identity and expression, religion, ethnicity,
sexual orientation, disability, nationality, veteran, marital or Indigenous
status.

Should you require any adjustments or accommodations to be made due to a disability or you
are a neurodivergent individual or for any other circumstance, please email our
team at accessibility@thepalladiumgroup.com and we
will be in touch to discuss.

Safeguarding - We define Safeguarding as all the actions taken
by Palladium to protect our people, communities where we work and our clients
from harm, including Sexual Exploitation, Abuse or
Sexual Harassment; Child Abuse in any form; Trafficking for sexual exploitation
of adults or children and any form of Trafficking of children. We have zero
tolerance for all forms of child abuse as well as sexual exploitation, abuse
and harassment and zero-tolerance for inaction to prevent, protect against,
respond to and report harm. We are committed to ensuring that all children
and adults who come into contact with Palladium are
treated with respect and are free from abuse. All successful candidates will be
subject to an enhanced selection process including safeguarding-focused
interviews and a rigorous due diligence process. Our Code of Conduct and Child
Safeguarding and Protection against Sexual Exploitation, Abuse and Harassment
Guidelines have additional details.

Palladium: Make It Possible

About Palladium: Make It Possible

Climate change. Conflict. Inequality. Palladium works with governments, businesses, investors, and communities to solve the world’s most pressing challenges. Our clients trust us to design and implement complex, large-scale programs in any environment, creating lasting impact where it’s needed most.

Founded in 1965 and operating in 100 countries, Palladium is on a mission to be the most impactful business on the planet. www.thepalladiumgroup.com

Industry
Consulting & Advisory
Company Size
1,001-5,000 employees
Headquarters
Washington, DC
Year Founded
1965
Social Media