Jobs
Job Title
Information Security Officer:
Job Description Summary
We are seeking an experienced Client IT Security Manager to lead the ongoing management and enhancement of our Information Security Management System (ISMS) in alignment with ISO 27001, IRAP, and Australian Government security requirements. In this key role, you will oversee audits, risk management, compliance activities, and security governance across our client‑facing environments.
Job Description
Must be an Australian citizen due to account requirements.
Key Responsibilities
ISO 27001 Responsibilities
-
Own and maintain the Australia ISMS, including documentation and review schedules.
-
Manage ISO 27001 audits and implement corrective actions.
-
Lead biannual ISMS management reviews and annual internal audits.
-
Oversee quarterly control monitoring and maintain compliance and risk registers.
-
Coordinate local vendor risk assessments and ensure alignment with global standards.
-
Support incident management, BCP planning, and ISMS testing.
-
Conduct regular security and physical checks.
-
Oversee data retention and deletion in line with regulations.
-
Provide quarterly leadership reports and manage ISMS communications.
-
Participate in global policy and standard review.
IRAP Responsibilities
-
Define assessment boundaries and scope based on Australian government services.
-
Maintain compliance with Authority to Operate (ATO) requirements, assessing risks for any deviations.
-
Review documentation and controls per the Australian Government Information Security Manual (ISM).
-
Ensure alignment with ASD’s IRAP Common Assessment Framework.
-
Develop and update required security artifacts (e.g., System Security Plan, Statement of Applicability, Security Risk Management Plan).
-
Oversee technical configuration reviews, evidence collection, and IRAP assessment reporting.
-
Document and address residual risks
Additional Responsibilities
-
Work with application owners on vulnerability remediation and reporting.
-
Manage cyber security incident notification and communication between internal teams and clients.
-
Support local IT and service line teams with compliance requirements, client tender submissions, and audit requests.
-
Participate in client security audits and support document requests to meet auditor's timeline.
Required Skills & Experience
-
Strong knowledge of ISO 27001, IRAP, and Australian Government ISM.
-
Experience in risk management, audit coordination, and compliance within multinational or regulated environments.
-
Excellent communication, stakeholder management, and leadership.
-
Skilled at managing multiple priorities and collaborating across teams.
-
Preferred certifications: CISM, CISSP, ISO 27001 Lead Implementer/Auditor.
-
Strong team-building and relationship skills, especially during change.
-
Ability to align business goals with partners.
-
Familiar with risk assessment, IT policies, standards, and training.
-
Broad IT expertise (e.g., distributed computing, networks, financial applications, security, business recovery).
-
5–7+ years in IT Risk and/or IT Audit.
If you’re ready to take ownership of a critical security function and work collaboratively across a global organisation, we’d love to hear from you.
As an equal opportunity employer, Cushman & Wakefield encourages Aboriginal and Torres Strait Islander and female candidates to apply. Cushman & Wakefield promotes safety at all times.
INCO: “Cushman & Wakefield”
Total Views
0
Apply Clicks
0
Weekly mock applicants
0
Bookmarks
0
Similar jobs

Security Engineer - Trust & Safety
Canva · Sydney

VDI Endpoint Security Engineer - USDS
TikTok · Sydney, Australia

Security Engineer - Threat Intelligence
Snap Inc. · Sydney, Australia

Security Engineer - Application/Product Security
TikTok · Sydney, Australia

Security Engineer, Detection and Response
OpenAI · Sydney, Australia
About Curtiss-Wright

Curtiss-Wright
PublicThe Curtiss-Wright Corporation is an American manufacturer and services provider headquartered in Davidson, North Carolina, with factories and operations in and outside the United States.
5,001-10,000
Employees
Davidson
Headquarters
Reviews
3.9
39 reviews
Work-life balance
3.9
Compensation
4.2
Culture
3.6
Career
3.9
Management
3.8
77%
Recommend to a friend
Pros
Supportive team and management
Competitive compensation and benefits
Good work-life balance and flexible environment
Cons
Some organizational bureaucracy
Room for improvement in processes
Work-life balance varies by team
Salary Ranges
5 data points
Junior/L3
Junior/L3 · Management Consultant
0 reports
$102,000
total per year
Base
-
Stock
-
Bonus
-
$86,700
$117,300
Interview experience
48 interviews
Difficulty
3.2
/ 5
Duration
14-28 weeks
Offer rate
34%
Experience
Positive 62%
Neutral 27%
Negative 11%
Interview process
1
Phone Screen
2
Technical Interview
3
Hiring Manager
4
Team Fit
Common questions
Technical skills
Past experience
Team collaboration
Problem solving
News & Buzz
GHP Investment Advisors Inc. Decreases Holdings in Curtiss-Wright Corporation $CW - MarketBeat
MarketBeat
News
·
3d ago
Textron, Moog, and Curtiss-Wright Stocks Trade Up, What You Need To Know - StockStory
StockStory
News
·
4d ago
Lobbying Update: $80,000 of CURTISS-WRIGHT CORPORATION lobbying was just disclosed - Quiver Quantitative
Quiver Quantitative
News
·
4d ago
Curtiss-Wright (CW) Valuation Check After Strong Share Price Momentum And Backlog Growth - simplywall.st
simplywall.st
News
·
5d ago