Security Assurance Analyst

2 weeks ago


Melbourne, Victoria, Australia Department of Education Full time $60,000 - $120,000 per year
Overview

Work type: Full time

Salary: Salary not specified

Grade: VPSG5

Occupation: IT and Telecommunications

Location: CBD

Reference: VG/DE/FPIS/ A

.

Role

Security Assurance Analyst

Group/Division/Branch

Financial Policy and Information Services/ Information Management and Technology Division/ Information Security Services

Classification

VPS5

Location

CBD Melbourne (Hybrid)

Reports To

Robert Munoz, Chief Information Security Officer

About the Department

With the increasing sophistication of cyber threats, ensuring the privacy and safety of our staff and students online is more important than ever. The Department of Education's Information Management and Technology Division (IMTD) is seeking a skilled and proactive Security Assurance Analyst to help strengthen and maintain the Department's cyber security framework.

As part of the Information Security Services Branch, you'll play a critical role in ensuring Victorian government schools and departmental operations are secure, compliant, and resilient against emerging cyber risks. Your work will provide assurance to key stakeholders, including the CIO and Executive Board, that strategic information security risks are being effectively managed.

About the Division

Enjoy a career that makes a difference by helping to shape the education experience for Victoria.

  • Be part of a vibrant Department culture with a strong sense of community and inclusion.
  • Join the Education State.
  • At the Department, we are committed to giving every Victorian the best learning and development experience, making our state a smarter, fairer, more prosperous place.

The Information Management and Technology Division (IMTD) guides the Departments' digital capability and is leading digital transformation for the Department including Victorian government schools. The Division architects, manages and supports the largest technology network in Victoria, supporting a user base of approximately 750,000 staff and students.

IMTD provides innovation and leadership in the transformation and management of the Department's digital capability through the implementation of solutions on the department's cloud environment (IaaS), enterprise cloud platforms (PaaS) and software (SaaS).

About the Role

The Security Assurance Analyst is a key contributor to our information security governance program, acting as part of the Department's second-line audit function. In this role, you will:

  • Lead and report on comprehensive manual and automated security testing programs
  • Conduct security assurance audits across systems, personnel, and facilities
  • Identify weaknesses and gaps in processes and controls, using industry frameworks such as ASAE3402, SOC2, or NIST SP
  • Support policy and procedural development that drives continual security improvement
  • Collaborate with internal stakeholders and external auditors to ensure compliance
  • Facilitate evidence collection and reporting to support external audit readiness

This hands-on position will challenge your analytical and problem-solving skills while providing you the opportunity to directly improve security outcomes across a vast digital environment—impacting over 1,500 schools, 50,000 teachers, and 650,000 students across Victoria.

Attributes

As our ideal candidate, you will have:

  • Strong ability to evaluate complex systems and controls, identify risks and gaps, and recommend practical improvements.
  • Accuracy and precision in documenting audit findings, collecting evidence, and reporting on compliance indicators.
  • Capacity to develop and implement effective solutions to strengthen security posture and address audit findings.
  • Clear and professional verbal and writtencommunication skills, especially in reporting technical issues to non-technical stakeholders.
  • Ability to work effectively with cross-functional teams, including technical teams, business units, and external auditors.
  • High ethical standards and a strong sense of accountability when handling sensitive information and security matters.
  • Proactive approach to identifying opportunities for process improvements and driving audits forward independently.
  • Understanding of audit frameworks, cyber security standards, and familiarity with relevant tools and automation platforms.
  • Ability to manage competing priorities in a dynamic environment, especially when facing resistance or ambiguity.
  • Willingness to contribute to the evolution of policies, processes, and standards to align with best practices and emerging risks.

Desirable Qualifications and Experience

Essential:

  • Relevant tertiary qualification in Computer Science, Risk Management, Audit Management, or related field
  • Audit experience using either ASAE3402/3150, SOC2, NIST SP , or COBIT

Desirable:

  • Certifications supporting relevant audit knowledge (GAIC, CISA, IRAP, etc)
  • Technical capability to introduce automation methods to streamline audit functions

Further Information

For more details regarding this position please see attached position description for the capabilities to address in application.

The department values diversity and inclusion in all forms - gender, religion, ethnicity, LGBTIQ , disability and neurodiversity. Aboriginal and Torres Strait Islander candidates are strongly encouraged to apply. For more information about our work, working for the Department, diversity and inclusion, and our employment conditions visit the Department website and our Diversity and Inclusion page

Applicants requiring adjustments can contact the nominated contact person.

Information about the Department of Education's operations and employment conditions can be located at

For further information pertaining to the role, please contact Robert Munoz - Chief Information Security Officer via or [email protected].

Preferred applicants may be required to complete a police check and may be subject to other pre-employment checks. Information provided to the Department of Education will be treated in the strictest confidence.

Please let us know via phone or email if you require any adjustments to ensure your full participation in the recruitment process or if you need the ad or any attachments in an accessible format (eg large print) due to any viewing difficulties or other accessibility requirements.

Applications close 11:59pm on 18th of June 2025.

Applications close Wednesday 18 June 2025 at 11.59PM

Posted 04 June 2025

  • Melbourne City Centre, Victoria, Australia Department of Education Full time $80,000 - $120,000 per year

    RoleSecurity Assurance AnalystGroup/Division/BranchFinancial Policy and Information Services/ Information Management and Technology Division/ Information Security ServicesClassificationVPS5LocationCBD Melbourne (Hybrid)Reports ToFelix Chow - Security Assurance ManagerAbout the RoleThe Security Assurance Analyst is a key contributor to our information...


  • Melbourne, Victoria, Australia NCS Group Australia Full time

    OverviewWe are looking for a skilled Security Analyst to play a crucial role in safeguarding our clients' digital assets by possessing a comprehensive understanding of risk assessment and mitigation strategies. This involves the ability to meticulously analyze potential threats and vulnerabilities within systems and infrastructure, evaluating their...


  • Melbourne, Victoria, Australia NCS Group Australia Full time

    OverviewWe are looking for a skilled Security Analyst to play a crucial role in safeguarding our clients' digital assets by possessing a comprehensive understanding of risk assessment and mitigation strategies. This involves the ability to meticulously analyze potential threats and vulnerabilities within systems and infrastructure, evaluating their...


  • Melbourne, Victoria, Australia V2X Full time $80,000 - $120,000 per year

    OverviewWe are seeking an Information Systems Security Analyst (ACL) to support cybersecurity operations at Ascension Auxiliary Air Field (AAAF). This position is fully on-site due to the classified nature of the systems supported. The Analyst is responsible for implementing, enforcing, and continuously improving cybersecurity policies, standards, and...


  • Melbourne, Victoria, Australia Adactin Full time $120,000 - $180,000 per year

    Adactin, one of the fastest-growing companies in Australia and the APAC region, thrives on its solutions and services on INNOVATION. Our vision, combined with our experience in the market, has continuously allowed us to grow our expertise which is visible in our comprehensive portfolio.We innovate, strategize, consult and operate for organizations to achieve...


  • Melbourne, Victoria, Australia AJQ Full time $90,000 - $120,000 per year

    AJQ Consulting is a leading provider in the delivery of Information Technology & Professional Services. Our success is built on our team. We are proud to be partnering with an Australian pioneer in flexible investment bonds, they are at the forefront of providing innovative investment solutions. We are looking for an Information Security Analyst to join...


  • Melbourne, Victoria, Australia VicRoads Full time $90,000 - $120,000 per year

    At VicRoads the work you do has real impact. Our work connects people and communities. We keep Victorians moving safely and smoothly today and help them be ready for tomorrow.VicRoads empowers our people to learn and grow- focusing on impact and innovation. We reflect the diversity of Victoria and foster clever thinking to keep you and the community...

  • Security analyst

    1 week ago


    Melbourne, Victoria, Australia Kinetic IT Full time $80,000 - $120,000 per year

    About Kinetic IT:We are recognised market leaders in the delivery of high-quality technology solutions to large public, private, and government organisations. As an Australian-owned company, we take a lot of pride in delivering exceptional service that exceeds our customers' expectations and positively contributing to our industry and community.  We hire...


  • Melbourne, Victoria, Australia Lendlease Corporation Full time

    Construction Security Assurance Officer page is loaded## Construction Security Assurance Officerlocations: Craigieburn, Victoria, Australiatime type: Full timeposted on: Posted Todaytime left to apply: End Date: September 30, 2025 (12 days left to apply)job requisition id: REQ-7064301**About Lendlease:**Lendlease is Australia's leading real estate...


  • Melbourne, Victoria, Australia Lendlease Corporation Full time

    Construction Security Assurance Officer page is loaded## Construction Security Assurance Officerlocations: Craigieburn, Victoria, Australiatime type: Full timeposted on: Posted Todaytime left to apply: End Date: September 30, 2025 (12 days left to apply)job requisition id: REQ-7064301**About Lendlease:**Lendlease is Australia's leading real estate...