Security Assurance Analyst

7 days ago


Melbourne, Victoria, Australia Department of Education Full time $81,999 - $124,999 per year
Overview

Work type: Full time

Salary: Salary not specified

Grade: VPSG5

Occupation: IT and Telecommunications

Location: CBD

Reference: VG/DE/FPIS/ A

.

Role

Security Assurance Analyst

Group/Division/Branch

Financial Policy and Information Services/ Information Management and Technology Division/ Information Security Services

Classification

VPS5

Location

CBD Melbourne (Hybrid)

Reports To

Robert Munoz, Chief Information Security Officer

About the Department

With the increasing sophistication of cyber threats, ensuring the privacy and safety of our staff and students online is more important than ever. The Department of Education's Information Management and Technology Division (IMTD) is seeking a skilled and proactive Security Assurance Analyst to help strengthen and maintain the Department's cyber security framework.

As part of the Information Security Services Branch, you'll play a critical role in ensuring Victorian government schools and departmental operations are secure, compliant, and resilient against emerging cyber risks. Your work will provide assurance to key stakeholders, including the CIO and Executive Board, that strategic information security risks are being effectively managed.

About the Division

Enjoy a career that makes a difference by helping to shape the education experience for Victoria.

  • Be part of a vibrant Department culture with a strong sense of community and inclusion.
  • Join the Education State.
  • At the Department, we are committed to giving every Victorian the best learning and development experience, making our state a smarter, fairer, more prosperous place.

The Information Management and Technology Division (IMTD) guides the Departments' digital capability and is leading digital transformation for the Department including Victorian government schools. The Division architects, manages and supports the largest technology network in Victoria, supporting a user base of approximately 750,000 staff and students.

IMTD provides innovation and leadership in the transformation and management of the Department's digital capability through the implementation of solutions on the department's cloud environment (IaaS), enterprise cloud platforms (PaaS) and software (SaaS).

About the Role

The Security Assurance Analyst is a key contributor to our information security governance program, acting as part of the Department's second-line audit function. In this role, you will:

  • Lead and report on comprehensive manual and automated security testing programs
  • Conduct security assurance audits across systems, personnel, and facilities
  • Identify weaknesses and gaps in processes and controls, using industry frameworks such as ASAE3402, SOC2, or NIST SP
  • Support policy and procedural development that drives continual security improvement
  • Collaborate with internal stakeholders and external auditors to ensure compliance
  • Facilitate evidence collection and reporting to support external audit readiness

This hands-on position will challenge your analytical and problem-solving skills while providing you the opportunity to directly improve security outcomes across a vast digital environment—impacting over 1,500 schools, 50,000 teachers, and 650,000 students across Victoria.

Attributes

As our ideal candidate, you will have:

  • Strong ability to evaluate complex systems and controls, identify risks and gaps, and recommend practical improvements.
  • Accuracy and precision in documenting audit findings, collecting evidence, and reporting on compliance indicators.
  • Capacity to develop and implement effective solutions to strengthen security posture and address audit findings.
  • Clear and professional verbal and writtencommunication skills, especially in reporting technical issues to non-technical stakeholders.
  • Ability to work effectively with cross-functional teams, including technical teams, business units, and external auditors.
  • High ethical standards and a strong sense of accountability when handling sensitive information and security matters.
  • Proactive approach to identifying opportunities for process improvements and driving audits forward independently.
  • Understanding of audit frameworks, cyber security standards, and familiarity with relevant tools and automation platforms.
  • Ability to manage competing priorities in a dynamic environment, especially when facing resistance or ambiguity.
  • Willingness to contribute to the evolution of policies, processes, and standards to align with best practices and emerging risks.

Desirable Qualifications and Experience

Essential:

  • Relevant tertiary qualification in Computer Science, Risk Management, Audit Management, or related field
  • Audit experience using either ASAE3402/3150, SOC2, NIST SP , or COBIT

Desirable:

  • Certifications supporting relevant audit knowledge (GAIC, CISA, IRAP, etc)
  • Technical capability to introduce automation methods to streamline audit functions

Further Information

For more details regarding this position please see attached position description for the capabilities to address in application.

The department values diversity and inclusion in all forms - gender, religion, ethnicity, LGBTIQ , disability and neurodiversity. Aboriginal and Torres Strait Islander candidates are strongly encouraged to apply. For more information about our work, working for the Department, diversity and inclusion, and our employment conditions visit the Department website and our Diversity and Inclusion page

Applicants requiring adjustments can contact the nominated contact person.

Information about the Department of Education's operations and employment conditions can be located at

For further information pertaining to the role, please contact Robert Munoz - Chief Information Security Officer via or [email protected].

Preferred applicants may be required to complete a police check and may be subject to other pre-employment checks. Information provided to the Department of Education will be treated in the strictest confidence.

Please let us know via phone or email if you require any adjustments to ensure your full participation in the recruitment process or if you need the ad or any attachments in an accessible format (eg large print) due to any viewing difficulties or other accessibility requirements.

Applications close 11:59pm on 18th of June 2025.

Applications close Wednesday 18 June 2025 at 11.59PM

Posted 04 June 2025

  • Melbourne, Victoria, Australia Experis Full time

    Leading Victorian Government client is looking for a Security Assurance Analyst in Melbourne for an initial 6 months contract + possible extension. APPLY NOW**The Security Assurance Analyst is responsible for supporting in the following areas**:- Defining a testing program (both manual and automated) with regular reporting on its progress- Contribution to...


  • Melbourne, Victoria, Australia Department Of Education Full time

    About the DepartmentThe department provides a wide range of learning and development support and services.The department provides policy leadership, plans for the future of education in Victoria and leads key cross-sector collaboration. The department plays an important system steward role by providing support, guidance, oversight and assurance across early...

  • Security Analyst

    5 days ago


    Melbourne, Victoria, Australia Nbn™ Full time

    Job ExpectationsAn exciting opportunity has presented itself at nbn as a Security Analyst reporting to the Senior Manager, Security Controls Assurance.A bit about your roleThe Security Analyst is responsible for providing assurance and guidance on security controls, ensuring continuous improvement, supporting the uplift in security control maturity and...


  • Melbourne, Victoria, Australia Department Of Education Full time

    **About the Department**The department provides a wide range of learning and development support and services.The department provides policy leadership, plans for the future of education in Victoria and leads key cross-sector collaboration. The department plays an important system steward role by providing support, guidance, oversight and assurance across...


  • Melbourne, Victoria, Australia Apex Group Ltd Full time

    Join to apply for the Quality Assurance Analyst role at Apex Group Ltd Join to apply for the Quality Assurance Analyst role at Apex Group Ltd The Apex Group was established in Bermuda in 2003 and is now one of the world's largest fund administration and middle office solutions providers.Our business is unique in its ability to reach globally, service locally...


  • Melbourne, Victoria, Australia NCS Group Australia Full time

    OverviewWe are looking for a skilled Security Analyst to play a crucial role in safeguarding our clients' digital assets by possessing a comprehensive understanding of risk assessment and mitigation strategies. This involves the ability to meticulously analyze potential threats and vulnerabilities within systems and infrastructure, evaluating their...


  • Melbourne, Victoria, Australia NCS Group Australia Full time

    OverviewWe are looking for a skilled Security Analyst to play a crucial role in safeguarding our clients' digital assets by possessing a comprehensive understanding of risk assessment and mitigation strategies. This involves the ability to meticulously analyze potential threats and vulnerabilities within systems and infrastructure, evaluating their...


  • Melbourne, Victoria, Australia Apex Group Ltd Full time

    Join to apply for the Quality Assurance Analyst role at Apex Group LtdJoin to apply for the Quality Assurance Analyst role at Apex Group LtdThe Apex Group was established in Bermuda in 2003 and is now one of the world's largest fund administration and middle office solutions providers.Our business is unique in its ability to reach globally, service locally...


  • Melbourne, Victoria, Australia Apex Group Ltd Full time

    Join to apply for the Quality Assurance Analyst role at Apex Group LtdJoin to apply for the Quality Assurance Analyst role at Apex Group LtdThe Apex Group was established in Bermuda in 2003 and is now one of the world's largest fund administration and middle office solutions providers.Our business is unique in its ability to reach globally, service locally...

  • Security Analyst

    2 weeks ago


    Melbourne, Victoria, Australia Kinetic IT Full time

    Join to apply for the Security Analyst role at Kinetic ITJoin to apply for the Security Analyst role at Kinetic ITAbout Kinetic IT: We are recognised market leaders in the delivery of high-quality technology solutions to large public, private, and government organisations.As an Australian-owned company, we take a lot of pride in delivering exceptional...