Technical IT Security Specialist

4 days ago


Melbourne, Australia Hostplus Full time

Apply
- ** Job no**: RFRA4
- ** Category**: Finance & Technology, Technology

**Acknowledgement of Country**:
Hostplus acknowledges the Traditional Owners of the land, sea and waters, of the area that we live and work on across Australia. We acknowledge their continuing connection to their culture and pay our respects to their Elders past, present and emerging.

**About us**:
At Hostplus, we passionately provide our over 1.6 million members with the best possible service; constantly looking for new ways to deliver better value while helping members get the most out of their super. We are inspired to help our members achieve greater security for their future and ensure they retire with dignity.

Your role at Hostplus will give your career meaning, whether you're in marketing, financial advice, Operations or any of our other divisions - you'll be contributing to ensuring our members retire with the best possible outcomes, and what better feeling is there than knowing your role helps someone to retire with dignity and security?

**About the role**:
As the Technical IT Security Specialist, you will be responsible for ensuring that our suppliers and solutions proposed and developed, adhere to high standards of technical security. The position involves providing expert advice, assessing and testing security controls, recommending, and documenting better security practices.

You will report to the Information Security Manager and will be responsible for specifying and advising on the design of security controls as well as maintaining the controls operating effectiveness through security controls testing, as defined in the Hostplus Information Security Management Framework (ISMF).

Key responsibilities:

- Conduct security threat and vulnerability assessments on the technical design and operating effectiveness of security controls in solutions and services.
- Document agreed security measures as technical, operational and contractual requirements.
- Ensure compliance of IT solutions and services to the security requirements in relevant agreements and the Hostplus Information Security Policy and supporting standards and frameworks.
- Communicate security gaps and issues identified to suppliers and Hostplus management and provide specialist technical security improvement opportunities and advice to internal stakeholders and suppliers.
- Perform and/or coordinate controls assessment and testing activities for new security controls, security weakness remediations or as part of regular controls testing defined in the security calendar.
- Assist in security incident response activities and maintain incident response plans and procedures.
- Assist with maintaining the security module(s) within the Hostplus GRC system.
- Assist in the execution of other security tasks as required by the Hostplus Information Security Manager, Head of IT Service Governance, Executive Manager Technology or the relevant Group Executive.

**About you**:

- Bachelor’s degree in information technology or other relevant qualifications and certifications
- Strong knowledge of security, risk, compliance, and control practices expected of Third Parties, IT General Security Controls or Cyber Security audit experience
- Certification in auditing, security controls and risk management (CISA), SANS GIAC, CompTIA Security+ or CISSP are highly desirable)
- Security framework experience - APRA CPS234, NIST CSF, CIS 18, ASD Essential 8, ASD ISM
- Experience performing security control assessments on business solutions and services.
- Strong project management and stakeholder management to coordinate with various business and internal stakeholders.

**Why work for us**:
Our employees are passionate about what we do and are proud to be part of an organisation which helps everyday Australians achieve a brighter future. We value diversity of thought and have an open & flexible workplace. Some industry leading benefits we offer include:

- 15% superannuation.
- Access to subsidised financial advice.
- Salary packaging.
- Hybrid working arrangements, work remotely & in the office.
- Excellent EBA conditions eg: paid parental leave, long service leave at 5 years, additional leave over Christmas shutdown.

**What next**:
If you are interested in this opportunity, please follow the prompts to formally apply.

We are passionate about creating an inclusive workplace that promotes and values diversity. We believe diversity of thought, background and experience strengthens relationships and delivers meaningful benefits to our people, our members, and the communities we operate in.

**We Care**: We care about our work, our clients and colleagues.

**Better Together**: We’ve got each other’s backs, and we never walk alone.

**Go For it**: We are optimistic, and we focus on solutions, not problems.

**Keep it real**: We are honest, genuine, straightforward and transparent.

**Be Proud**: We are proud of who we are and the work we do every single day.



  • Melbourne, Australia Latitude IT Full time

    Hybrid Work arrangement - ASX50 household Australian brand - Shape API security practices We are currently seeking an Application Security Specialist to lead and uplift one of Australia's biggest brands' API security initiatives. The role involves collaborating with cross-functional teams to develop and implement robust API security measures, best...


  • Melbourne, Victoria, Australia Latitude IT Full time

    Melbourne or Sydney - Hybrid modelDaily rate contractSubmission Deadline:Tuesday 21st OctASAP start dateA leading national organisation within the critical infrastructure and telecommunications space is seeking multiple Senior Technical Security Assurance Specialists. These newly created roles sit within a Line 2 assurance function, focusing on technical...


  • Melbourne, Victoria, Australia IT Alliance Australia Full time $120,000 - $180,000 per year

    One of ourFederal Government Clientsis seeking to engage aLead ICT Security Specialists - EL1.This is a long-term contractual position.Please check below all the job details:Contract Duration: 03 Years (12 Months initially + 24 Months extension)Work Location: Canberra and Melbourne (Hybrid – 03 Days Office / 02 Days home each week)Eligibility: Must...


  • Melbourne, Victoria, Australia Launch Group Full time

    Security Technical Assurance SpecialistLocation:MelbourneTeam:Governance, Risk & Compliance (GRC) – Security AssuranceHybrid working:50/50 in the office$880 per day + GSTContact duration: 2 monthsStart date:27th of OctoberAbout The RoleThe Security Technical Assurance Specialist reports to the Manager of Security Assurance within the GRC & Advisory...


  • Melbourne, Australia Transform IT Full time

    **Applications Technical Lead (Cyber Security)** - Full time role - Melbourne location Working within a dynamic, team-orientated environment, you will engage various key stakeholder groups to identity requirements, issues and deliver suitable outcomes including the provision of technical documentation and testing for mobile device management...


  • Melbourne, Australia Talent International Full time

    **Job Details**: **Location** Melbourne **Salary** Negotiable **Job Type** Full Time **Ref** BBBH102796_1686891028 **Contact** Jarrodd Edwards **Posted** about 2 hours ago **The opportunity** Our client is an Australian Federal Government organisation, who are currently looking for an experienced Cyber Security Specialist to join a long term...


  • Melbourne, Australia Palo Alto Networks Full time

    Company Description **Our Mission** At Palo Alto Networks® everything starts and ends with our mission: Being the cybersecurity partner of choice, protecting our digital way of life. We have the vision of a world where each day is safer and more secure than the one before. These aren’t easy goals to accomplish - but we’re not here for easy. We’re...


  • City of Melbourne, Australia IT Alliance Australia Full time

    Overview One of our Federal Government clients is looking for Cyber Security Technical Writer in Canberra, Brisbane and Melbourne. Responsibilities / Skills and Experience - Communicates with credibility at all levels across the organisation to broad audiences with divergent objectives. - Provides advice and guidance to enhance adoption of and adherence...


  • Melbourne, Australia Torch Professional Services Pty Ltd Full time

    Senior role within the security team - Hybrid Working environment - Key opportunity to make an impact ! **Senior Security Operations and Platform Specialist - 12-month contract** Reporting into the Information Security Manager your role will be to advise on day-to-day operations of the Security Operations and Platform Function within the Security Team, by...


  • Melbourne, Australia CYOS Solutions Full time

    **Application closing date**: Monday, 28 July 2025 - 11:59pm, Canberra time **Estimated start date**: Wednesday, 01 October 2025 **Location of work**: VIC **Length of contract**: Until 30 June 2026 **Contract extensions**: 1x 12 months **Rates**: $90 - $120 per hour (inc. super) The Australian Signals Directorate (ASD) is a statutory agency in the...