09.07.2023
Cyber – Incident Response - Business Resilience - Consultant to Director
KPMG Australia
Sydney, NSW, Australia
Microsoft OfficeExcelWordPowerPointLinux
You may be interested in the following jobs
Consultant to DirectorSalary Range60k to 180k+Incident ResponseThe role will be working in the Cyber Incident Response Team within our Forensic practice. Cyber security is one of the areas which KPMG has identified for tremendous investment and growth. Our clients face a challenging cyber threat and look to us to help them understand and respond to that threat. This is a hands-on role with opportunities to grow into management. The successful candidate is expected to manage cyber-security incidents as well as perform digital forensics (disk, volatile memory, network packets, logfiles) and help advance KPMG’s capabilities.Responsibilities:• Help manage and co-ordinate cyber security incidents for our clients, working closely with the incident management lead within the team.• Digital forensics of relevant incident data (disk, volatile memory, network packets, log files).• Maintaining a current view of the cyber threat, and being able to advise clients on the threat landscape and attacks which may be relevant to them.• Develop KPMG’s in house cyber-response tools• Help assess client incident response capability maturity.• Help stand-up or improve clients’ own incident response capabilities.• Help with project management of engagements to deliver high quality work in a timely manner, including:• Scoping• Basic financial management, Engagement and risk management and Production and review of deliverables.• Liaising with clients on delivery, implementation and sales issues.Qualifications and Skills:• A broad understanding of the cyber security threat landscape.• Strong technical background in computers and networks, and programming skills.• Experience of dealing with cyber security incidents and associated response measures.• Experience of being part of an incident response team, either holding a formal role, or being able to evidence your personal contribution to the team.• Understanding of a wide range of information security and IT methodologies, principles, technologies and techniques.• Excellent communication skills (both written and oral) and project management skills.• Strong IT and network skills – knowledge of common enterprise technologies – Windows and Windows Active Directory, Linux, Cisco, etc.• Working programming skill-set to be able to author and develop tools. Most in-house security tools in KPMG are written in Python, but we accept that a competent programmer will be able to transfer skillsets across languages.• Technical proficiency in at least one of these areas: network security/traffic/log analysis; Linux and/or Mac/Unix operating system forensics; Linux/Unix disk forensics (ext2/3/4, HFS+, and/or APFS file systems), advanced memory forensics, static and dynamic malware analysis / reverse engineering, advanced mobile device forensics• Advanced experience in industry computer forensic tools such as X-Ways, EnCase, FTK, Internet Evidence Finder (IEF) / AXIOM, TZWorks, and/or Cellebrite• Advanced experience in preservation of digital evidence (including experience preserving cloud data and handling encryption such as BitLocker, FileVault, and/or LUKS)• Experience with and understanding of enterprise Windows security controls• (Preferred) Degree level qualified, MSc in Information Security, IT or relevant STEM subjects.• (Preferred) General information security certificates such CISSP, CISM or CISA.• (Preferred) Incident management certifications such as:• CREST certified incident manager (CCIM)• GIAC Certified Incident Handler (GCIH)• (Preferred) Digital forensics certificates such as:• CREST certified registered intrusion analyst (CRIA)• CREST certified network intrusion analyst (CCNIA)• CREST certified host intrusion analyst (CCHIA)• CREST certified malware reverse engineer (CCMRE)• GIAC Certified (Network) Forensic Analyst (GCFA, GNFA)Business ResilienceKPMG's Management Consulting division is looking for individuals who are passionate about Business Resilience and Cyber risk to join their growing Business Resilience team on a permanent basis. This opportunity will require you to play an active role in growing KPMG's Technology, Risk and Cyber Security service line. You will work closely with clients to evaluate their business strategy, understand their technology environment, and provide recommendations to enable them to improve their ability to respond to disruption risks and threats.Responsibilities:· Working with senior stakeholders on a range of jobs – forming a central point for day-to-day co-ordination of our engagements.·Assisting the clients to manage disruption risks in a way that enhances their ability to meet business objectives, stakeholder expectations and compliance obligations.· Performing gap assessments covering the Operational Resilience, Business Continuity, Disaster Recovery, Emergency Management and Crisis Management capabilities of our clients against recognised global and domestic standards and regulations (e.g. ISO22301, ISO27031, APRA CPS232, AS3745-2010).· Developing benchmarking reports to provide our clients with insight on where they stand when measured against relevant industry practices.· Improving our clients' understanding and management of disruption risk in both critical processes and technology through designing and implementing effective controls.· Expanding the technical skills at the Senior Consultant and Consultant levels in the existing team· Reduce the reliance on key Managers and Associate Directors (within the existing team) to deliver technical consulting work.· Developing your consulting skills in a range of Resilience services such as Business Continuity, Disaster Recovery, Emergency Management and Crisis Management.· Leading junior staff to deliver the appropriate outcomes.Qualifications and Skills:· We are interested in individuals with experience as Resilience specialists, performing gap assessments covering the Operational Resilience, Business Continuity, Disaster Recovery, Emergency Management and Crisis Management capabilities of our clients· Knowledge and understanding of recognised global and domestic standards and regulations (e.g., ISO22301, ISO27031, APRA CPS232, AS3745-2010).· Strong communication skills – particularly in report writing, facilitating interviews, and enriching conversations, presenting to small and large groups, and facilitating day-to-day stakeholder engagement· Excellent report writing and document design skills to quickly distil complex content into easy-to-understand and visually appealing experiences· Exceptional MS Office (Word, PowerPoint, Excel, Outlook) and research skills are essential· A commitment to excellence, problem fixing, and forming high-quality relationships· Ability to support, lead and inspire stakeholders – including colleagues and clients· Strong analytical skills, exceptional attention to detail and natural curiosity are essential· Industry or professional services experience; and· A willingness to invest in yourself, and in the development of others and KPMG.We have offices in the following locations:SydneyMelbourneBrisbanePerthAdelaideCanberraHobart
Apply to Job
Attention! You will be redirected to another site