Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Sonesh Seddiqi

Canberra

Summary

Meticulous and results-driven IT Security Manager and Application Administrator with a proven track record in cybersecurity operations, data analysis, and process optimization. Skilled in implementing and sustaining Essential 8 maturity models, vulnerability management, and classified computing solutions. Demonstrates a deep understanding of Australian Government standards, including the PSPF and ISM, with expertise in governance, risk, and compliance activities. Experienced at leveraging advanced toolsets like Tenable, Azure, Splunk, and FortiNet to monitor, analyze, and mitigate cyber threats effectively.

Overview

3
3
years of professional experience
1
1
Certification

Work History

Application Adminstrator

Attorney General's Department
02.2023 - Current
  • Demonstrated a comprehensive understanding of Australian Government standards, including the Protective Security Policy Framework (PSPF) and the Information Security Manual (ISM), to ensure compliance and best practices.
  • Played a critical role in implementing and assisting with the Australian Cyber Security Centre’s (ACSC) Essential 8 maturity model and the application of ISM controls, contributing to enhanced organizational security resilience.
  • Experienced in managing and administering cybersecurity solutions, including SIEM, password vaults, and Tenable.SC, with a proven ability to troubleshoot technical issues, analyze anomalies, and communicate security advisories effectively across diverse audiences.
  • Developed comprehensive risk assessments aligned with government standards and the PSPF, ensuring strong security and compliance.
  • Established a culture of shared responsibility for cyber hygiene within the organization through effective communication of policies, procedures and expectations around securing sensitive information.
  • Streamlined security processes, optimizing system configurations for efficient threat monitoring and mitigation.
  • Conducted regular audits of security infrastructure, identifying weaknesses and recommending improvements.
  • Maintained compliance with industry regulations by conducting thorough audits of applications and associated processes.
  • Developed custom reports using various reporting tools to provide stakeholders with actionable insights into business operations.
  • Implemented automation solutions within applications to reduce manual workload for users without sacrificing accuracy or functionality.
  • Served as the Vulnerability Management Board Secretariat, managing the risk register, creating agendas, and recording minutes to ensure effective governance and decision-making.
  • Supported NSI jury trials by providing tailored ICT solutions, delivering high-quality results recognized by SES Band 3 leadership.
  • Proficient in identifying, evaluating, and articulating technical risks within an enterprise environment, ensuring informed decision-making.
  • Expert in utilizing technical toolsets such as Tenable, Azure, Splunk, and Fortinet to monitor, assess, and enhance organizational security and performance.

A/g IT Security Manager

Attorney General's Department
11.2024 - 01.2025
  • Established and developed monthly and quarterly cybersecurity reporting frameworks presented to the ID Executive Board and other relevant executive committees.
  • Designed and implemented processes for gathering KPIs, SOC-reportable figures, and Essential 8 compliance check-ins to ensure comprehensive security oversight.
  • Leading efforts to enhance and sustain Essential 8 maturity at Level 2, ensuring robust cybersecurity hygiene and resilience across systems
  • Enhanced vulnerability management processes by building robust assurance and auditing mechanisms.
  • Developed actionable metrics utilising SOC toolsets such as Splunk, Tenable, and Azure, driving data-informed decision-making for improved security posture.
  • Effectively communicated technical subjects and cybersecurity advisories to diverse stakeholders, tailoring messages to suit varying levels of technical understanding.
  • Analyzed data sets to identify unusual or anomalous behaviour, enabling proactive threat detection and incident response.
  • Led vulnerability management activities, ensuring alignment with organizational and regulatory standards.
  • Mentored and developed junior IT Security staff, fostering a culture of learning and professional growth.
  • Enhanced overall security by conducting comprehensive risk assessments and implementing tailored security plans.

Visa Processing Officer at Department of Home Affa

Department Of Home Affairs
09.2022 - 02.2023
  • Facilitated assessing and finalising applications ranging in complexity, in accordance with relevant legislation and policy, and record information about client contact, escalating and/or referring if necessary
  • Madeevidencebaseddecisions, ranging in complexity,prepared decision records, complying with note making and record keeping responsibilities.
  • Requested outstanding information from clients, business areas and/or external stakeholders in line with business requirements. Conducted independent research to assist with procession applications and verifying claims and documents.
  • Managedandconductedqualityassuranceactivitiestomaintain integrity and consistency of the programme and record keeping.
  • Provideddata/informationforuseinreports,briefs,submissions, risk registers and talking points.
  • Attainedandmaintainedanextensiveunderstandingoftherole and responsibilities of the agency, including and understanding of the APS operating environment more broadly.
  • Ensured in-depth knowledge of and compliance with Home Affairs legislative, financial and administrative frameworks, government decision-making processes and agency guidelines and regulations.
  • Worked with a level of independence, underbroaddirection, with a concurrent need to resolve issues and deliver quality outcomes whilst communicating and making decisions that are based on professional judgement, evaluating risks and in the context of a complex and changing environment.
  • Consistently achieved KPI’s and raised team performance levels.
  • Ensured quality outputs for the team including the development of specialist, professional and/or technical expertise, requiring different approaches for completion.

Executive Assistant

Home Affairs
03.2022 - 09.2022
  • Under limited direction, prepared meeting materials, correspondence, presentations and minutes, including the administration of critical, confidential and sensitive information
  • Provided comprehensive media monitoring service for the branch and exercised judgement in assessing and identifying news items of importance and relevance to the Modern Slavery and Human Trafficking branch.
  • Liaised with stakeholders and assisted with there solution of moderately complex to complex policy, project or operational issues, responding to their needs and expectations as required
  • Provided and coordinating administrative support for my executive and the wider branch when required.
  • Provided clear direction, effective communication in partnership and collaboration, and with a focus on responsive action when engaging with wider branch and public.
  • Managed parliamentary and cabinet requests in a timely manner.
  • Assisted the supervision and development of lower classification levels; built team capacity through coaching, performance feedback; and quality assurance and case review for peers.

Education

Masters of Cyber Security -

University of New South Wales
12-2025

Bachelor of Science And Engineering -

Australian National University
11-2023

Skills

  • Information Loss Prevention Expertise
  • Risk Assessment & Mitigation
  • Cyber Security Compliance (ISM, PSPF, Essential 8, NIST)
  • Threat Modeling & Analysis
  • Cybersecurity Leadership
  • Essential 8 Compliance
  • Cyber Board-Level Reporting & Metrics
  • Vulnerability Management
  • Security Policy Development & Improvement
  • Incident Response & Risk Management
  • Governance & Compliance
  • Threat Hunting
  • Tenable Expertise
  • Technical Troubleshooting
  • Team Mentorship
  • Stakeholder Management
  • Business Development & Client Engagement
  • Security Automation
  • Classified Computing
  • Federal Government Stakeholder Engagement
  • Effective Time Management
  • Interpersonal skills
  • Ability to Work Under Pressure
  • Strong Analytical & Problem-Solving Skills
  • Technical & Non-Technical Communication
  • Multilingual in English, Farsi, Dari, Urdu, Hindi and Turkish

Certification

  • Successfully completed the Essential Eight Assessment Course
  • Successfully attended and completed EC-Council Certified Threat Intelligence Course
  • Attended 5 day Public Sector Women in Leadership Summit
  • Attended 3 day FortiMail course on how to protect your network from existing email-borne threat.


Timeline

A/g IT Security Manager

Attorney General's Department
11.2024 - 01.2025

Application Adminstrator

Attorney General's Department
02.2023 - Current

Visa Processing Officer at Department of Home Affa

Department Of Home Affairs
09.2022 - 02.2023

Executive Assistant

Home Affairs
03.2022 - 09.2022

Bachelor of Science And Engineering -

Australian National University

Masters of Cyber Security -

University of New South Wales
Sonesh Seddiqi