Information Security & Risk Manager
Job Fit Check
Base Career helps you apply smarter for this job.
Role Overview
Job requirements
• Experience with security frameworks such as ISO 27001, NIST or equivalent.
• Sound judgement about where to hold the line on security and where to be flexible.
• Practical, hands-on experience in an IT or security operations function, such as administering systems, networks, cloud platforms, identity or security tooling.
• Experience influencing technical and business stakeholders without relying on direct authority.
• Understanding of secure development, identity governance, least-privilege and third-party security risk.
• Experience with security assurance, control testing, business continuity or incident management governance.
• An interest in protecting critical technology, research environments, source code and sensitive technical information.
• High integrity, discretion and comfort working in environments involving sensitive information.
Job responsibilities
• Own and mature Diraq's Information Security Management System.
• Define information security policies, standards and control requirements.
• Embed security-by-design principles into engineering and technology practices.
• Develop least-privilege and access governance frameworks.
• Assess information security risks across systems, suppliers, partners and strategic initiatives.
• Own the security assurance program, including control testing, self-assessments and audit readiness.
• Establish incident management, business continuity and resilience governance, and run tabletop and continuity exercises.
• Conduct vendor, supplier, collaborator and partner security assessments.
• Work alongside the Global Export Controls Manager to ensure information security controls support controlled technology protection.
• Build security governance processes that scale with Diraq and support future assurance requirements.
• Run practical security awareness training for research, engineering and corporate teams.
Job benefits
• We have a paid volunteer day so you can give back to a cause you care about.
• The role is eligible for our employee equity scheme
• Hybrid work environment
• Unique chance to be directly involved in the next big technological advancement
Full Job Posting
Job requirements
- Experience with security frameworks such as ISO 27001, NIST or equivalent.
- Sound judgement about where to hold the line on security and where to be flexible.
- Practical, hands-on experience in an IT or security operations function, such as administering systems, networks, cloud platforms, identity or security tooling.
- Experience influencing technical and business stakeholders without relying on direct authority.
- Understanding of secure development, identity governance, least-privilege and third-party security risk.
- Experience with security assurance, control testing, business continuity or incident management governance.
- An interest in protecting critical technology, research environments, source code and sensitive technical information.
- High integrity, discretion and comfort working in environments involving sensitive information.
Job responsibilities
- Own and mature Diraq's Information Security Management System.
- Define information security policies, standards and control requirements.
- Embed security-by-design principles into engineering and technology practices.
- Develop least-privilege and access governance frameworks.
- Assess information security risks across systems, suppliers, partners and strategic initiatives.
- Own the security assurance program, including control testing, self-assessments and audit readiness.
- Establish incident management, business continuity and resilience governance, and run tabletop and continuity exercises.
- Conduct vendor, supplier, collaborator and partner security assessments.
- Work alongside the Global Export Controls Manager to ensure information security controls support controlled technology protection.
- Build security governance processes that scale with Diraq and support future assurance requirements.
- Run practical security awareness training for research, engineering and corporate teams.
Job benefits
- We have a paid volunteer day so you can give back to a cause you care about.
- The role is eligible for our employee equity scheme
- Hybrid work environment
- Unique chance to be directly involved in the next big technological advancement
About Diraq
Private Australian quantum-computing hardware company building scalable silicon-based quantum computers for commercial and research customers.
Visit company websiteJobs and hiring trendsApply for this job in 1 click
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career
More from this employer
More jobs at Diraq
Talent Acquisition Specialist
Sydney, AUS
Systems and Network Engineer
Santa Monica, USA
IT Support Engineer
Santa Monica, USA
Quantum Device Characterization Manager
Chicago, USA
Export Controls Manager
Los Angeles, USA
Electronics Engineer
Sydney, AUS
Device Modelling Engineer
Los Angeles, USA
IT Security Analyst
Sydney, AUS