Job Description
Remote is seeking a Senior Security Architect to join the team at the Australian Geospatial-Intelligence Organisation (AGO). The successful candidate will provide security architecture advice and strategy to support the delivery of complex ICT systems within secure and classified environments.
Working across one or more projects, the Senior Security Architect will collaborate with technical, business and security stakeholders to design solutions that comply with Australian and international security frameworks. The role requires strong experience in information security, compliance and risk assessment, together with highly effective communication and negotiation skills. (RFx28350)
Role Description
Key responsibilities
-
Provide security architecture advice and develop security strategies for complex ICT projects operating in secure and classified environments.
-
Work with business analysts, systems engineers, solution architects and security specialists to design and recommend secure, compliant solutions.
-
Interpret and apply relevant Australian and international security policies, standards and compliance frameworks.
-
Liaise with certification and accreditation authorities to establish appropriate security compliance and assurance requirements.
-
Support project teams to design and implement security controls and security functions across project deliverables.
-
Conduct security risk assessments for new technologies, systems and capabilities, and recommend appropriate treatments.
-
Develop and review security architecture artefacts, risk documentation and other security documentation required for formal assessments and approvals.
-
Work with certification and accreditation teams to support compliance assessments, system authorisation and formal security approvals.
-
Review project designs and technical documentation to identify security risks, dependencies and compliance gaps.
-
Plan and coordinate security and assurance activities in alignment with project schedules, milestones and deliverables.
-
Negotiate practical security outcomes with technical teams, project stakeholders and approval authorities.
-
Contribute security advice across multiple projects of varying size and complexity.
Essential criteria
-
Developing architectural products and artefacts to support project deliverables and GCD outcomes;
-
Developing security documentation to support authorisation activities;
-
Developing project deliverables that require security expertise;
-
Attending and representing the GCD and ICT Security at various project and governance forums and workshops;
-
Stakeholder engagement to ensure buy-in for security recommendations, and maintaining engagement with technical assurance and architecture authorities;
-
Delivering security risk assessments to support GCD activities; and
-
Delivering expert advice and recommended courses of action and ICT solutions for any risks or issues raised.
Desirable
-
Extensive technical solution architecture experience.