Principal Cyber Security Pen Tester

4 days ago


Melbourne, Victoria, Australia Department of Health Full time $120,000 - $180,000 per year

About the role:

The Principal Cyber Security - Penetration Testing role will be responsible for conducting penetration testing and vulnerability assessments, in collaboration with the Manager, Enterprise Cybersecurity Operations. The role will lead the development and management of penetration testing and vulnerability assessment activities, including the production of cyber security risk reports with findings and recommendations.

The role will assist in the implementation of technical risk treatments, regularly review penetration testing tools and services, and update vulnerability configurations. This includes developing new vulnerability assessment schedules as required. The role will also support the implementation of security controls and coordinate their deployment across a range of predominantly cloud-based platforms and environments.

Additionally, the role will be responsible for performing information security risk assessments, conducting gap analyses, and coordinating security remediation activities across the department.

About us:

At the Victorian Department of Health we want a future where Victorians are the healthiest people in the world. A Victoria where our children and people thrive, our workplaces are productive and safe, and our communities are more connected.

We see it as our job to support Victorians to stay healthy and safe. And to deliver a world-class healthcare system that ensures every single Victorian can access safe, quality care that leads to better health outcomes for all.

About you:

Do you have experience in?

  • Conduct penetration testing and vulnerability assessments in collaboration with the Manager, Enterprise Cybersecurity Operations.
  • Lead the development and ongoing management of penetration testing and vulnerability assessment activities.
  • Prepares technical reports at an authoritative level
  • Develops briefs on highly complex issues that provide options for decision within an organisation
  • Initiates and manages negotiations with peers (internal and external to work unit) to gain commitment to projects, and delivery of activities to meet timelines
  • Proficiency with industry-standard penetration testing and vulnerability assessment tools (e.g., Burp Suite, Metasploit, Nessus, Nmap, Kali Linux).

Qualifications / Specialist Expertise

Qualifications

  • A tertiary qualification relevant to ICT, Information Security, or similar would be highly advantageous.

Specialist Expertise

  • Proven experience in penetration testing, ethical hacking, and vulnerability assessments across complex and cloud-based environments.
  • Demonstrated experience in cyber security risk analysis and reporting, including development of mitigation recommendations.
  • Proficiency with industry-standard penetration testing and vulnerability assessment tools (e.g., Burp Suite, Metasploit, Nessus, Nmap, Kali Linux).
  • Strong understanding of cloud security (Microsoft Azure, AWS), secure coding practices, and system hardening techniques.
  • Familiarity with regulatory standards and frameworks such as ISO 27001, NIST, OWASP Top 10, ASD ISM (Information Security Manual), and the Essential Eight.
  • Experience coordinating remediation efforts and advising on technical risk treatments across multiple teams or departments
  • Additionally completed following certifications

  • CEH - Certified Ethical Hacker and/or

  • OSCP - Offensive Security Certified Professional

What we offer:

  • The opportunity to perform meaningful work, making direct contributions toward enabling Victorians to be the healthiest people in the world.
  • A wide range of growth and development opportunities within the department and wider Victorian Public Service & Sector.
  • A strong commitment to work-life balance, including a diverse array of flexible working arrangements.

How to apply:

Applications should include a resume and a cover letter. Click the 'Apply' button to view further information about the role including key contact details and the advertisement closing date.

We are committed to developing and supporting a workforce that is well equipped and highly motivated to provide responsive and quality services to all Victorians. We continue to build an inclusive workplace that embraces diversity of backgrounds and differences to realise the potential of our employees for innovation and delivering services aimed at enhancing the lives of all Victorians. All roles can be worked flexibly and we encourage applications from Aboriginal people, people with disability, LGBTIQ+ and people from culturally diverse backgrounds. Please contact us if you require any adjustments to participate in the recruitment process at  For more information on our commitment to inclusion and diversity see inclusion and diversity at the Department of Health.

If you have any queries in relation to recruitment processes at Health, or experience any issues in applying, please feel free to email Please note that unsolicited applications will not be replied to. If you have questions regarding the role specifically, we would advise you to reach out to the contact listed on the advertisement directly.

Preferred applicants may be required to complete a police check and other pre-employment checks. Information provided will be treated in the strictest confidence in line with our Privacy Policy.



  • Melbourne, Victoria, Australia Victorian Government Full time $120,000 - $180,000 per year

    OverviewWork Type: Ongoing - Full-timeSalary: $138,631 - $185,518Grade: VPS 6Occupation: IT and telecommunicationsLocation: Melbourne - CBD and Inner Metro suburbsReference: VG/DH/EHEALTH/760076The Department of Health plays a critical role in the Victorian health system and is responsible for shaping it to meet the health needs of all Victorians. We're...


  • Melbourne City Centre, Victoria, Australia Victorian Government - Department of Health Full time $120,000 - $180,000 per year

    About the role:The Principal Cyber Security - Penetration Testing role will be responsible for conducting penetration testing and vulnerability assessments, in collaboration with the Manager, Enterprise Cybersecurity Operations. The role will lead the development and management of penetration testing and vulnerability assessment activities, including the...

  • Penetration Tester

    7 days ago


    Melbourne, Victoria, Australia Green Light Worldwide Full time $100,000 - $140,000 per year

    Leading company in its field6 month assignment (chance of extension)Based in Australia / remote workStart in OctoberGreen Light Australia are looking to engage a Pen Tester to join their team.Responsibilities:Conduct penetration tests on networks, cloud environments and applications.Perform vulnerability assessments using automated tools and manual...

  • Penetration Testers

    4 days ago


    Melbourne, Victoria, Australia CyberRisk Full time

    About the businessCyberRisk is a boutique cybersecurity consulting firm and we are experiencing a huge amount of growth.  We're looking for an experienced and talented Penetration Tester to join our team  We offer a fun, flexible and supportive work environment and the opportunity to build a successful career.  When you join us you will become part of a...


  • Melbourne, Victoria, Australia Experis Australia Full time $120,000 - $180,000 per year

    Principal Cyber Security Analyst - Splunk | ISO27001 | MITRE ATT&CK | Incident ResponseLocation:Melbourne (Hybrid) 3 days on-siteType:PermanentSalary:Competitive + SuperAbout the RoleA leading organisation is seeking a Principal Cyber Security Analyst to lead advanced cyber defence and incident response initiatives. You'll work alongside a high-performing...


  • Melbourne, Victoria, Australia FinXL IT Professional Services Full time $120,000 - $180,000 per year

    Location: Canberra ACT - Remote based candidates may be considered on a case-by-case basis.Long-term contractMinimum NV1 clearance requiredAre you a Cyber Security Incident Responder or Threat Hunter with a knack for hunting down digital threats? We're looking for a skilled Principal Cyber Threat Analyst to join our client in Canberra for a long-term...


  • Melbourne, Victoria, Australia The Citadel Group Full time $80,000 - $120,000 per year

    Short Summary:Reporting to the Chief Information Security Officer (CISO) this position carries out cyber security monitoring and ensures that security events are identified in the early stages to ensure that adverse effects are prevented. This position works to optimise cyber security monitoring and response throughout the enterprise.Who are we:At Citadel...


  • Melbourne, Victoria, Australia ESSSuper Full time $90,000 - $120,000 per year

    I am hiringI'm looking for a Cyber Security Architect who's passionate about experimenting with new technologies and improving ESSSuper's member experienceThis role sits at the intersection of SecOps and Technology delivery, working closely with both teams to strengthen our security posture and respond to cyber eventsIt's a great fit for someone who's...


  • Melbourne, Victoria, Australia Talenza Full time $120,000 - $180,000 per year

    Cyber Security Architect - 12 Month Initial - Utilities - Melbourne BasedAbout the companyMelbourne based utilities companyHybrid working set upWorking on a cyber uplift programAbout the roleExciting role for an experienced Security Architect to join up with a large utilities company in Melbourne on an initial 12-month fixed term contract as the company...


  • Melbourne, Victoria, Australia ITbility Full time $120,000 - $180,000 per year

    Senior Cyber Security Risk Assurance Lead6 months +Melbourne/Sydney/ CanberraMy client inMelbourne/Sydney/ Canberralooking forCyber Security Risk Assurance Lead. Kindly go through the below PD and let me know if the role suits and interests you, your friends or colleagues. can send me your resumes/referrals atRequired Skills:• 10+ years' experience in a...