Cyber Security Risk Assessor

1 month ago


Sydney, Australia CYOS Solutions Full time

Application closing date: Monday, 25 November 2024 • 11:59pm, Canberra time

Estimated start date: Monday, 06 January 2025

Location of work: NSW

Working arrangements: Subject to negotiations with line manager, hybrid working arrangements in line with current NDIA policy are available (minimum of 3 days each week in the office, with flexible arrangements in place for the remaining 2 days).

Length of contract: 12 Months

Contract extensions: 1x 12 months

Security clearance: Must have NV1 Clearance 

Rates: $100 - $130 per hour (inc. super)

The National Disability Insurance Agency (NDIA) is an independent statutory agency that is responsible for implementing the National Disability Insurance Scheme (NDIS), which will support a better life for hundreds of thousands of Australians with a significant and permanent disability and their families and carers. The NDIA values a positive contemporary attitude to disability.

The Cyber Security and Resilience Branch implements the requirements of government security policies and frameworks. This is achieved by providing strategic, tactical and operational Agency-wide oversight of Cyber Security and Operations. The Cyber Security & Resilience Team is responsible for identifying key security risks in the ICT environment and ensuring the NDIA is able to identify, mitigate and be resilient to cyber threat activity.

The team develops, governs, and maintains an enterprise data warehouse as well as the NDIA's reporting platforms and production content. They design and build Business Intelligence (BI) interventions and prototype analytic solutions and reports, identifying trends and drivers of performance. 

The Cyber Security Risk Assessor is accountable under broad direction to undertake very complex work that delivers quality outcomes across the diverse functions of the NDIA. The position is required to coordinate and assume responsibility to undertake detailed or sensitive projects that may include performing varied activities involving many different and unrelated processes or methods that may impact on the strategic or operational outcomes that support the NDIA's objectives to “build a wor¹ld-leading National Disability Insurance Scheme”. 

The Cyber Security Risk Assessor is responsible for actively managing key internal and external stakeholder relationships and where required will represent and negotiate on behalf of the NDIA to advance the NDIA's interests across a range of forums. 

Responsibilities of the role include but are not limited to: 

  • Leading and conducting security risk analysis of NDIA internal systems and assessing the cyber threat, inherent vulnerabilities and the likelihood and consequences of adverse threat activity. 
  • Implementing better-practice methodologies and risk management practices aligned with MITRE Att&ck Framework, NIST, ISO 31000/ISO 27001 and the PSPF. 
  • Developing and managing the production of multiple system-specific security documentation artefacts, including Statement of Applicability, System Security Plan, Security Risk Management Plan, Cyber Security Incident Response Plan, Continuous Monitoring Plan and Security Assessment Plan. 
  • Developing and managing Authority to Operate artefacts and managing security risks and controls uplift activities arising from cyber security risk analysis. 
  • Developing targeted security risk advice to allow the NDIA to prevent, detect and respond to cyber threat activity. • Developing IT security standards, policy, procedures, and controls for managing risks in a dynamic threat environment. 

(NOTE: the key responsibilities of the role are based on current priorities and may change over time) 


Essential Criteria

  1. 5 years-plus experience in cyber security with significant knowledge of cyber security risk concepts/Frameworks and their application in Government ICT systems
  2. High-level communication and influencing skills
  3. Degree in Computer science or related field, CISM, CISSP.


  • Sydney, New South Wales, Australia CYOS Solutions Full time

    About the RoleWe are seeking an experienced Cyber Security Risk Assessor to join our team at CYOS Solutions. As a key member of our Cyber Security and Resilience Branch, you will be responsible for implementing government security policies and frameworks across our organisation.


  • Sydney, Australia University of New South Wales Full time

    **Job no**: 527962 **Work type**: full time **Location**: Sydney, NSW **Categories**: Information Technology, Cyber - Employment Type: full time continuing role as a Cyber Security Risk Manager - Excellent salary package including superannuation - Location: UNSW Kensington Campus (Hybrid Working Opportunities) **About UNSW**: UNSW isn’t like other places...


  • Sydney, New South Wales, Australia HiTech Group Full time

    Job Summary:Cyber Security Risk Analyst required to join a multidisciplinary team in a leading Federal Government department. The successful candidate will be responsible for identifying key security risks in the ICT environment and ensuring the department is able to mitigate and be resilient to cyber threat activity.Key Responsibilities:Conducting security...


  • Sydney, Australia University of New South Wales Full time

    **Job no**: 525136 **Work type**: full time **Location**: Sydney, NSW **Categories**: Information Technology, Cyber - Employment: Full time (35 hours per week) - Continuing role as a Cyber Security Risk Advisor - Remuneration: Excellent salary package including leave loading and generous superannuation - Location: Based in Kensington, Sydney (hybrid...


  • Sydney, Australia University of New South Wales Full time

    **Job no**: 527915 **Work type**: Full Time **Location**: Sydney, NSW **Categories**: Information Technology, Cyber - Employment Type: full time continuing role as a Cyber Security Risk Advisor - Exceptional salary package including generous superannuation - Location: UNSW Kensington Campus (Hybrid Working Opportunities) **About UNSW**: UNSW isn’t like...


  • Sydney, Australia LGT Crestone Wealth Management Full time

    Min Experience- 10 yearsYour team - Working as a part of the Risk, Legal & Compliance team with overall responsibility to drive all strategic and operational cyber security and IT risk functions. - Working alongside the Head of Technology, senior business and risk executives and project management team within the reporting structure of the Chief Risk...

  • Incident Responder

    6 months ago


    Sydney, Australia Quigly Cyber Full time

    Diverse, inclusive and supportive team - Proudly making a difference with the transition to renewable energy - You love Cyber Security Quigly are a boutique consultancy with a great network of clients across many industries. **Company Overview** Join one of Australia's top organizations. Our client improves the lives of millions - from lighting up sports...


  • Sydney, New South Wales, Australia Pyramid Global Technologies Full time

    About the RoleWe are seeking a seasoned Cyber Security Risk Management Lead to join our team at Pyramid Global Technologies.This is a challenging and rewarding role that will play a key part in shaping our Information Security Management System (ISMS). As Cyber Security Risk Management Lead, you will be responsible for delivering and continuously improving...


  • Sydney, Australia HAYS Full time

    12-month contract role - federal government agency - Cyber Security Risk Assessment Officer **Your new company** This government agency is looking for a Cyber Security Risk Assessment Officer to join their Cyber Security team in an initial 12-month contract role with room for extension. You will have the opportunity of working at a federal government...


  • Sydney, New South Wales, Australia Tal Services Limited Full time

    Established in Australia, TAL Services Limited is a leader in the financial services industry. Our company description reveals our commitment to developing leadership, promoting diversity, and retaining great talent.Welcome to TAL. We want to grow with you. Achieve with you. And support you to do your best work. That's why we're focused on developing...


  • Sydney, New South Wales, Australia Pyramid Global Technologies Full time

    About the RolePyramid Global Technologies seeks a highly skilled Cyber Security Risk Management Lead to support the delivery and continuous improvement of its Information Security Management System (ISMS). The successful candidate will have a minimum of 10 years of experience in cyber security roles within major organisations, focusing on management of...


  • Sydney, New South Wales, Australia Charterhouse Full time

    Cyber Security Risk ConsultantWe are seeking a highly skilled Cyber Security Risk Consultant to join our team at Charterhouse.Salary: Up to $900 per day (inclusive of superannuation).About the RoleThis contract role is available immediately and will continue until June 2025, with potential for extension. You will be working with a NSW Government client,...

  • Security Assessor

    6 months ago


    Sydney Central Business District, Australia HAYS Full time

    Cybersecurity Assessor, Holding Baseline Clearance, $900-1000 +Super p/d, Sydney, 12-months **Your new company** Your new position will be within one of the leading federal government agency. The organisation is currently embarking on a cybersecurity uplift program and requires resource to assist with this program of work. **Your new role** As a Security...


  • Sydney, Australia Softtest pays pty ltd Full time

    Australian Citizens residing in Australia only respond.Preferred NV1 Clearance or be willing and eligible to obtain. Essential criteria 1. Minimum of 5 years experience in Cyber Governance, Risk and Compliance, or a related field of cyber security 2. Must be an Australian citizen and hold a minimum NV1 Security Clearance 3. Demonstrated experience in the...


  • Sydney, New South Wales, Australia Softtest pays pty ltd Full time

    At Softtest pays pty ltd, we are seeking a highly skilled Cyber Security Risk Analyst to join our team.Estimated Annual Salary:$120,000 - $150,000 AUDAbout the RoleThis is an exceptional opportunity for a professional with a strong background in cyber governance, risk and compliance, or a related field of cyber security.Key ResponsibilitiesConduct thorough...


  • Sydney, New South Wales, Australia RSM Full time

    About the RoleWe are seeking an experienced Cyber Security Risk Management Specialist to join our team in Australia. In this role, you will be responsible for performing IT / Cyber / technology risk assessments, technical security related reviews, and assessing the effectiveness of processes/controls and risks related to third party organisations.


  • Sydney, New South Wales, Australia TAL Full time

    At TAL, we are seeking a highly skilled Cyber Security Risk Management Specialist to join our team in Third-Party Tech & Cyber Risk. This role plays a critical part in aligning with our strategy and executing third-party technology risk management, cyber security management, and relevant technology and cyber clauses within the contractual management...


  • Sydney, New South Wales, Australia EFinancialCareers Ltd. Full time

    About the RoleCyber security is a critical component of our organization, and we're seeking an experienced Strategic Risk Leader to join our team. As a key member of our Cyber Security function, you will be responsible for providing strategic advice on operational and compliance risk management. Your expertise will help us design and implement effective...


  • Sydney, New South Wales, Australia RSM Full time

    Job SummaryWe are seeking a skilled Cyber Security Specialist to join our team. As a key member of our security team, you will be responsible for managing client relationships, providing expert advice on IT general controls and application controls, and conducting risk assessments.About RSMRSM is a leading professional services firm that connects clients to...


  • Sydney, New South Wales, Australia Stockland Full time

    Stockland Overview">We are a leading retail property group in Australia, with a long history of innovation and commitment to customer satisfaction. Our technology team is at the forefront of driving digital transformation across the organization, and we are now seeking a highly skilled Cyber Security Risk Manager to join our team.">Job Description">In this...