Impress employers and recruiters.
Choose from hundreds of resume examples.

Impress employers and recruiters.
Choose from hundreds of resume examples.
Tailor your resume to this Information Security & Risk Manager role.
Rezi rewrites your resume against Diraq's job description. Free.

Tailor your resume to this Information Security & Risk Manager role.
Rezi rewrites your resume against Diraq's job description. Free.
Don't guess if your resume is good enough.
See how it scores against the Information Security & Risk Manager posting at Diraq — free, in seconds.

Don't guess if your resume is good enough.
See how it scores against the Information Security & Risk Manager posting at Diraq — free, in seconds.
About the Role
Diraq is seeking an Information Security & Risk Manager to safeguard the technology, research, source code, and sensitive information behind their quantum computing efforts. This role involves defining security integration into system design, software development, research environments, access management, and partner collaborations across Australia and the United States. The position is crucial for establishing robust security foundations as Diraq scales its operations.
Responsibilities
- Own and mature Diraq's Information Security Management System.
- Define information security policies, standards, and control requirements.
- Embed security-by-design principles into engineering and technology practices.
- Develop least-privilege and access governance frameworks.
- Assess information security risks across systems, suppliers, partners, and strategic initiatives.
- Own the security assurance program, including control testing, self-assessments, and audit readiness.
- Establish incident management, business continuity, and resilience governance, and run tabletop and continuity exercises.
- Conduct vendor, supplier, collaborator, and partner security assessments.
- Work alongside the Global Export Controls Manager to ensure information security controls support controlled technology protection.
- Build security governance processes that scale with Diraq and support future assurance requirements.
- Run practical security awareness training for research, engineering, and corporate teams.
Requirements
- Experience with security frameworks such as ISO 27001, NIST, or equivalent.
- Sound judgement regarding security flexibility and firmness.
- Practical, hands-on experience in an IT or security operations function (e.g., administering systems, networks, cloud platforms, identity, or security tooling).
- Experience influencing technical and business stakeholders without direct authority.
- Understanding of secure development, identity governance, least-privilege, and third-party security risk.
- Experience with security assurance, control testing, business continuity, or incident management governance.
- An interest in protecting critical technology, research environments, source code, and sensitive technical information.
- High integrity, discretion, and comfort working with sensitive information.
Skills
- Information security
- Security governance
- Technology risk
- Assurance
- Secure development
- Identity governance
- Least-privilege
- Third-party security risk
- Security assurance
- Control testing
- Business continuity
- Incident management governance
Location
- Australia
- United States
Work Type
- Hybrid
Experience Level
- Manager
Education Level
- Relevant certifications such as CISM, CISSP, CRISC, ISO 27001 Lead Implementer or ISO 27001 Lead Auditor are beneficial
Benefits
- Paid volunteer day
- Employee equity scheme
About the Company
- Diraq is building the world's first scalable quantum computers using silicon quantum dot technology.
- Diraq already has security and compliance programs in place, this role is about maturing them as the company grows from research and development through commercialisation, protecting technology that is still being invented.
- Unique chance to be directly involved in the next big technological advancement