GIW QLD Cyber Security Showcase: Aligning Cyber Compliance with Risk-Based Security- Insights from Ejaz Ahmad
Ejaz Ahmad, Head of Cybersecurity Operations at Airservices Australia, shares how aligning compliance with risk-based security builds resilience and creates business value.
In this insightful session, Ejaz Ahmad, Head of Cybersecurity Operations at Air Services Australia, shares a critical perspective from the aviation sector on balancing regulatory compliance with practical risk management.
Key Themes Covered:
Why cybersecurity is a business risk, not just a technology issue
The importance of compliance frameworks and their role in resilience
Navigating uncertainty and building visibility into complex environments
Embracing a risk-based approach to decision-making
Developing cyber professionals who challenge the status quo
Ejaz highlights that compliance alone is insufficient. Organisations must go beyond checklists and embed risk-based security as the foundation for true resilience. He points to challenges such as limited visibility, constant change, and the need to balance business risks, while underscoring the value of skilled professionals who can question assumptions, adapt quickly, and guide their organisations through uncertainty.
Recommendations
The Government Rubik’s Cube
GIW Federal 2025: From Audits to Automation: Continuous Compliance for Secure-by-Design Government with Ken Melero
EntraGoat is a deliberately vulnerable lab that simulates real-world identity misconfigurations in Microsoft Entra ID.
GIW Federal 2025: Securing the supply chain: Managing third-Party risk in government with Rosetta Romano