GIW QLD Cyber Security Showcase: Aligning Cyber Compliance with Risk-Based Security- Insights from Ejaz Ahmad
Ejaz Ahmad, Head of Cybersecurity Operations at Airservices Australia, shares how aligning compliance with risk-based security builds resilience and creates business value.
In this insightful session, Ejaz Ahmad, Head of Cybersecurity Operations at Air Services Australia, shares a critical perspective from the aviation sector on balancing regulatory compliance with practical risk management.
Key Themes Covered:
Why cybersecurity is a business risk, not just a technology issue
The importance of compliance frameworks and their role in resilience
Navigating uncertainty and building visibility into complex environments
Embracing a risk-based approach to decision-making
Developing cyber professionals who challenge the status quo
Ejaz highlights that compliance alone is insufficient. Organisations must go beyond checklists and embed risk-based security as the foundation for true resilience. He points to challenges such as limited visibility, constant change, and the need to balance business risks, while underscoring the value of skilled professionals who can question assumptions, adapt quickly, and guide their organisations through uncertainty.
Recommendations
GIW Federal 2025: Tony Chapman on National Office of Cyber Security - Insights from major cyber incidents and exercises
The Government Rubik’s Cube
EntraGoat is a deliberately vulnerable lab that simulates real-world identity misconfigurations in Microsoft Entra ID.
Let's Chat: Building Human-Centered Cyber Teams