Cyber Security Grc Consultant

3 days ago


Canberra, Australia Leidos Full time

**Description**
- We’re a ‘Family Friendly’ certified workplace - we understand the often many and varied roles our team members need to play within their own unique family setting and actively support them.

**Do Work That Matters**

Leidos Australia delivers IT and airborne solutions that protect and advance the Australian way of life. Our 2000 local experts, backed by our global experience and network of partners, are working to solve the world’s toughest challenges in government, intelligence, defence, aviation, border protection and health markets.

**Your New Role and Responsibilities**

Within the Central Processing (CP) Security team, the Cyber Security GRC Specialist plays a key leadership role in shaping and supporting our governance, risk, and compliance efforts across the CP Environment.

This senior position blends technical expertise, strategic insight, and collaborative engagement to ensure our cybersecurity program meets regulatory obligations and aligns with best practices. You’ll work closely with cross-functional teams and stakeholders to uplift the organisation’s security posture and foster a culture of informed risk management.

**Responsibilities**
- Governance, Policy & Compliance: Collaboratively develop, review, and maintain cybersecurity policies and processes aligned with key frameworks (e.g. NIST CSF, ISO 27001, DSPF, ISM); contribute to system authorisation activities and lead compliance initiatives, including POAM remediation.
- Risk Management: Facilitate enterprise risk assessments across systems, vendors, and business units; guide business impact analyses and threat modelling; support informed decision-making through clear tracking and communication of mitigation efforts.
- Third-Party Risk & Due Diligence: Partner with internal stakeholders to lead vendor security reviews and due diligence processes; support risk-informed vendor decisions and foster trusted third-party relationships.
- Awareness, Training & Reporting: Lead the design and delivery of inclusive, enterprise-wide security awareness initiatives; tailor training to diverse teams; prepare reports, dashboards, and insights for leadership and governance forums.
- Leadership, Strategy & Innovation: Act as a trusted advisor across the business; mentor and support junior colleagues; identify opportunities to enhance processes through automation; contribute to the ongoing evolution of the GRC function through strategic planning and collaboration.

**About You**

You’re a collaborative, solutions-oriented professional who brings both technical expertise and a people-first mindset to your work. You value working in inclusive teams, building strong relationships, and delivering meaningful outcomes.
- A degree in Information Security, Computer Science, Risk Management or a related field - or equivalent industry certifications.
- Experience in information security, including specialism in GRC.
- A solid understanding of security standards and frameworks, particularly in regulated environments such as Defence, and experience with the Cyber Security Assessment and Authorisation Framework.
- Strong communication skills - written and verbal - with experience presenting to senior leadership and translating complex ideas into clear, actionable insights.
- Industry-recognised certifications such as CISSP, CISA, CISM, CRISC, CGEIT, ISO 27001 Lead Implementer/Auditor, or IRAP.
- A strengths-based mindset, with capabilities in strategic thinking, risk-based decision making, regulatory understanding, and technical knowledge of cyber controls.
- A self-starter attitude with the ability to work both independently and as a supportive member of high-performing teams.
- This role does require the successful applicant to be an Australian Citizen and hold a NV-1 level security clearance and uplift to an NV-2_

**Diverse Team Members, Shared Values and a Common Purpose**
- Providing our customers with smarter solutions takes an incredible team with diversity of thought, experience and perspectives driving innovation. Inclusion is at the heart of our culture and is one of our core values. It's about creating a workplace where everyone can do important work, feels welcome, valued, and respected, and has equal access to opportunities to thrive. Paul Chase - Chief Executive, Leidos Australia._

Our five Advocacy Groups (Women and Allies Network, Young Professionals, Defence & Emergency Services, Action for Accessibility and Abilities and Pride+) provide an opportunity for team members to connect and collaborate on shared interests, and work to support and celebrate our diverse community.

**Next Steps**
- Recruitment process - virtual / face to face interview & background checks.
- Applicants may also need to meet International Traffic in Arms Regulations (ITAR) requirements. In certain circumstances this can place limitations on persons who hold dual nationality, permanent residency or are former nationals of certain countries as per ITAR 126.1.



  • Canberra, Australia CyberCX Full time

    Australia’s leading independent cyber security services organisation, CyberCX, is building Australia’s greatest cyber security consulting team. We are looking for exceptional, customer obsessed people at the Consultant level to join our Governance, Risk & Compliance (GRC) practice. These roles are focused on Federal Government and private sector clients...


  • Canberra, Australia Sustainability Consulting Full time

    12 Month Contract / up to $1000 per day - WFH Flexibly / Canberra-Based - Great Projects & Collaborative Culture **Company**: We are working with a locally owned and nationally recognised cybersecurity firm that delivers innovative security services and strategies to numerous government departments. **Role**: We are seeking a skilled Governance, Risk, and...


  • Canberra, Australia Sustainability Consulting Full time

    12 Month Contract / up to $700 per day - WFH Flexibly / Canberra-Based - Great Projects & Collaborative Culture **Company**: We are working with a locally owned and nationally recognised cybersecurity firm that delivers innovative security services and strategies to numerous government departments. **Role**: We are seeking a Junior Governance, Risk, and...


  • Canberra, Australia Exclaim IT Pty Ltd Full time

    **Related jobs**: **Cyber Security Analyst****: - Location Canberra - Employment Type Contract - Custom Text18 Competitive hourly rate on offer - Custom Text19 12-month initial contract - Custom Text20 Work in a Federal Government role - Custom Text21 Exciting project - Custom Text22 Security - See All Jobs **ERP Senior Cyber Security Architect****: -...


  • Canberra, Australia Peoplebank Full time

    Location: - Canberra- Job Type: - Contract- Posted: - about 7 hours ago- Contact: - Archna Singh- Discipline: - Executive IT - Reference: - 255745If you are looking for a career opportunity as a Cyber GRC consultant with a multinational company, and not just another job, then we would like to introduce you to our client. The work performed by Cyber Security...

  • Assistant Director

    3 days ago


    Canberra, Australia Talent International Full time

    **Job Details**: **Location** Canberra **Salary** Negotiable **Job Type** Contract **Ref** BBBH92926_1662525128 **Contact** Yvonne Yang **Posted** 1 day ago - **Initial 12 months contract + 12 months extension**: - ** Australian citizenship is required**: - ** Open to Canberra ACT or Geelong VIC** **About the Role** One of our federal...


  • Canberra, Australia Halcyon Knights - LogicMelon Full time

    Part-time 3 days - Risk & Compliance - ISM, IRAP, PSPF - Canberra / Remote **About the Role**: We have an opportunity for a **Cyber Security Compliance (GRC) Specialist** to work part-time (3 days per week) with a large federal govt. department. You'll work with system and business owners to identify and manage cyber security risks and ensure compliance...


  • Canberra, Australia GMT People Full time

    12 month contract + 12 months extension - Canberra - Must be able to obtain an NV1 clearance. **About the Role**: Our client is seeking a **Cyber GRC Specialist** to provide cyber security services to the agency, including GRC work around any agency systems required to be modified or developed. **What your day will look like**: - Provide specialist cyber...


  • Canberra, Australia Compas PTY Full time

    **Compas** is seeking a **Cyber GRC Specialist **to join a Federal Government Department for a long-term engagement. In this role you will provide cyber security services to the agency. A specific deliverable during the initial engagement will be to progress the GRC work around any agency systems required to be modified or developed in preparation for the...

  • Cyber GRC Analyst

    3 days ago


    Canberra, ACT, Australia Compas Pty Ltd Full time $120,000 - $150,000 per year

    Cyber GRC Consultant Location: ACT Join a critical Defence transition project where you'll shape the security and governance of an interim integration solution. As the Cyber GRC Consultant, you'll be key in ensuring the successful accreditation, compliance, and security of an Automated Ticket Exchange between two core ITSM systems. Your expertise will...