Cyber Governance, Risk and Compliance Assurance Specialist
3 days ago
Department has a requirement for an ICT labour hire resource to fill the role of
Cyber Governance, Risk and Compliance Assurance Specialist
.
Canberra
NV1
12 months + 24 months
This role provides guidance on the application and operation of security controls, performing security risk and business impact analyses, and identifying risks from potential technical solution architectures. The role designs alternate solutions or countermeasures to mitigate identified risks and provide recommendations for appropriate security policies, standards, and guidelines. Managing risks related to the use, storage, and transmission of data, and carry out of risk management activities within specific functions or projects is also a part of this role. This includes identifying risks and vulnerabilities, assessing their impact and probability, developing mitigation strategies, and reporting these to the business. This role will ensure the protection and management of risks associated with information systems, contributing to a secure and compliant digital environment.
The ideal candidate will have a strong technical background, relevant risk assessment qualifications such as the CISSP and/or CCSP, a deep understanding of cyber threats facing government, and the ability to work within a high-security environment. This is a mission-critical role where your expertise will directly contribute to the protection of our global infrastructure.
Key duties and responsibilities
Job Specific role description
- Conduct comprehensive risk assessments across IT systems, applications, and third-party vendors.
- Evaluate and monitor compliance with Australian Government requirements such as the PSPF, ISM, and Essential Eight, and apply additional oversights from international frameworks such as ISO 27001, NIST, and GDPR.
- Develop and maintain cybersecurity policies, standards, and procedures.
- Perform gap analyses and recommend remediation strategies.
- Collaborate with internal stakeholders to ensure alignment with security governance objectives.
- Support audits and certification processes (e.g., IRAP assessments).
- Monitor and report on the effectiveness of security controls.
- Stay current with emerging threats, technologies, and regulatory changes.
- Prepare comprehensive reports for business and senior executive, translating complex technical findings into clear, actionable treatments and recommendations.
The buyer has specified that each candidate must provide a one page pitch to address all criteria specified. This is equal to 5000 characters.
Essential criteria
1.Demonstrated experience in authoring ICT system authorisation documentation including but not limited to: Security Risk Management Plans (SRMPs), System Security Plans (SSPs), and Standard Operating Procedures (SOPs).
2.Experience in technical ICT areas such as system administration, software development, and cloud computing.
3.In-depth knowledge of Australian Government cyber security standards, such as the Protective Security Policy Framework (PSPF) and Information Security Manual (ISM).
4.Familiarity with one or more: AWS, Azure, Kubernetes, Identity and Access Management.
5.Minimum current active NV1 security clearance.
Desirable criteria
1.Knowledge of emerging threats and international frameworks such as NIST, GDPR, and/or PCI DSS.
2.Ability to communicate complex information to both technical and non-technical stakeholders.
- 3.Understanding of data protection, privacy legislation, and compliance requirements.
-
Cloud Migration Specialists
3 days ago
Canberra, n Capital Territory, Australia Cyber Governance Full time $90,000 - $120,000 per yearNew Year - New Career?At Cyber GV, we are all about helping our clients improve their security and resilience with effective governance, reduced risk and improved compliance.We are looking for the following 25 specialists to work with us on a major project tomigrate Applications to Cloudfor the Department of Foreign Affairs and Trade (DFAT), commencing...
-
Governance Risk and Compliance
1 week ago
Canberra, n Capital Territory, Australia Scyne Advisory Full time $120,000 - $150,000 per yearAt Scyne we are public purpose sector specialists who support governments and their agencies, and not-for-profit organisations, to deliver services to Australians, helping to build more resilient, equitable, secure and prosperous communities. We are guided by our values of Stronger Together, Amplify Impact, Build Trusted Relationships, Value Every Person,...
-
Cyber GRC Specialist
3 days ago
Canberra, n Capital Territory, Australia Compas Full time $80,000 - $120,000 per yearCyber Security Specialist – Risk & AssuranceLocation: Canberra, ACTAre you passionate about cyber risk, assurance, and continuous improvement? We are seeking a Cyber Security Specialist to join a high-performing team working in a complex Microsoft 365 environment. In this role, you'll lead cyber risk assessments, support security documentation, and work...
-
Cyber Security Risk
1 week ago
Canberra, ACT, Australia Paxus Full time $80,000 - $120,000 per yearCyber Security Risk & Assurance Specialist (M365/Cloud)Play a critical role in risk, compliance, and assurance for a nationally significant secure cloud collaboration program.About the roleWe are seeking a Cyber Security Risk & Assurance Specialist to provide expert leadership in governance, risk, and compliance across a secure Microsoft 365 and cloud...
-
Lead Cyber Security Officer
7 days ago
Canberra, n Capital Territory, Australia SKL Technology Full time $120,000 - $180,000 per yearCyber Governance, Risk & Compliance (GRC) Assurance SpecialistLocation:Canberra (Hybrid: 3 days in-office, 2 days WFH)Eligibility:Must hold an activeNV1 Security ClearanceContract:Initial 12 months + 2 x 12-month extensions availableWe're seeking a Cyber Governance, Risk & Compliance (GRC) Assurance Specialist to join a high-impact team dedicated to building...
-
Senior Cyber Security Risk Assurance Lead
1 week ago
Canberra, n Capital Territory, Australia Telstra Full time $180,000 - $250,000 per yearWho We AreWe're an iconic Aussie brand with a global footprint. Our purpose is to build a connected future so everyone can thrive. We're all about providing the best experience and delivering the best tech on the best network.This includes making Telstra the place you want to work. For you, that means a having career that grows with you and working with a...
-
Cyber Security Consultant
5 days ago
Canberra, n Capital Territory, Australia Azooa Full time $100,000 - $150,000 per yearCyber Security Professionals – RFQ PCS ACIC Project)Azooa Pty Ltd is preparing a response to theAustralian Criminal Intelligence Commission (ACIC)underRFQ PCS P25/171 Cyber Security Services).We're invitingExpressions of Interest (EOI)from experiencedcyber security professionalsfor multiple positions supporting ACIC's mission-critical cyber operations.If...
-
Cyber Security Consultant
2 weeks ago
Canberra, n Capital Territory, Australia Informatech Pty Ltd Full time $100,000 - $150,000 per yearAbout us:Informatech are a Canberra based ICT consultancy with over 280 staff, specialising in Testing, Technical Services, Project Delivery and Security. On the back of an excellent financial year where we have grown into new markets and grown new customer accounts, we recently were recognised on the Australian Financial Reviews Fast 100 List for the 3rd...
-
Cyber Security Compliance Specialist
1 week ago
Canberra, Australia Aurec Human Capital Group Full timeWe are looking to engage a skilled and enthusiastic **Cyber Security Compliance Specialist **to join our Federal Government client! Our Federal Government Client seeks to engage experienced Cyber Security Compliance Specialist who will work to identify cyber risk and ensure compliance with our clients standards and the Australian Government Security...
-
Cyber Security Specialist
1 week ago
Canberra, Australia Hudson Australia Full timeWe're currently working with a government department that is searching for a Cyber Security Specialist within the the Cyber Security Governance, Risk and Compliance Team which is building its capability with the aim to elevate its maturity. This role will assist significantly with that venture by assisting to establish the capability to provide assurance to...