Cyber Security Assessor
Why This Role Stands Out
This hybrid role offers an exciting opportunity to significantly impact cyber resilience within a respected Victorian State Government Agency, working with cutting-edge security frameworks. You'll thrive here if you possess a strong background in security risk assessment and enjoy collaborating with diverse teams to enhance security across complex environments. This position is perfect for a mid-senior professional eager to deepen their expertise and contribute to a vital public service.
Quick Overview
Job Description
Join a leading Victorian State Government Agency delivering a critical Cyber Resilience Program aimed at strengthening cyber security capabilities across a large and complex environment. This high-profile initiative supports strategic cyber resilience objectives and addresses the increasing cyber threats faced by educational institutions. You'll work alongside experienced security professionals to help drive security uplift across enterprise systems and services.
Your new roleAs a Cyber Security Assessor, you will play a key role in assessing cyber security risks, developing security documentation, and providing expert security advice to stakeholders across a range of projects and technology environments.
Key responsibilities include:- Conduct security risk assessments using frameworks such as VPDSS, PSPF, ISM, NIST, Essentials Eight and SOC2.
- Develop Security Risk Assessment Reports, Security Risk Management Plans (SRMPs), and System Security Plans (SSPs).
- Perform third-party and vendor security risk assessments (TPRM) and produce risk assessment reports.
- Review and update security controls, policies, standards, and procedures, ensuring alignment with industry and government frameworks.
- Provide security-by-design guidance during project and solution design activities.
- Work closely with project teams, system owners, and business stakeholders to develop and track risk treatment plans.
- Audit and report on vulnerability management, privileged access controls, and remediation activities.
- Provide expert advice on cyber security policies, standards, and best practices.
- Support governance activities through risk reporting, mitigation tracking, and compliance monitoring.
- Proven experience conducting cyber security risk assessments and security assurance reviews.
- Strong knowledge of government and industry security frameworks including VPDSS, PSPF, ISM, NIST, Essentials Eight, and/or SOC2.
- Experience developing security assessment reports, security management plans, and security documentation.
- Demonstrated experience in third-party risk management (TPRM) and security reporting.
- Strong understanding of security controls, risk management methodologies, and remediation planning.
- Experience reviewing, developing, and maintaining cyber security policies, standards, and procedures.
- Knowledge of vulnerability management and security governance practices.
- Understanding of Microsoft technologies including Azure, Microsoft 365, and Entra ID from a security perspective.
- Excellent stakeholder engagement, communication, and report-writing skills.
- ICT or cyber security background with experience working across complex technology environments.
- Certifications like CISSP, CISM, CRISC, ISO 27001 Lead Implementer/Lead Auditor highly regarded.
- Work within a highly visible and strategically important government initiative.
- Collaborative and supportive team environment.
- Flexible working arrangements and a strong focus on professional development.
Hays appreciates the importance of workforce diversity and inclusion. We are an equal-opportunities employer and have policies, procedures and relationships in place to promote our understanding of all forms of diversity.
LHS 297508 - Prachi KalyanArora
Skills
Similar jobs
APS6 Senior Cyber Security Governance Analyst
SoftLabs ANZ Limited. · Canberra, Australia
Just nowSecurity Testing - Specialist
Telstra Corporation · Australia
Just nowSecurity Testing Specialist: Penetration & Code Review
Telstra Corporation · Australia
Just nowDetection and Response Engineer (AU)
DroneShield Limited · Sydney, Australia
5 minutes agoInformation Security Analyst
LGT Group · Sydney, Australia
2 hours agoSenior Cyber Security Governance Analyst - Canberra
Ayan Infotech · Canberra, Australia
8 hours ago