04 Dec
Toowoomba Regional Council
Toowoomba Regional
1182 | Information Communication & Technology | Toowoomba CBD
PROTECT,PREVENT AND PROGRESS: Lead EnterpriseCybersecurity Strategy, Risk Governance and Innovation.
About You
As a Principal Cybersecurity and Risk qualified, you are a strategic leader responsible for shaping and driving the organisation’s cybersecurity and risk management direction. You bring deep expertise in developing and implementing enterprise-wide frameworks that protect digital assets, systems, and data from evolving internal and external threats. With a strong focus on governance and compliance, you champion a culture of security awareness and accountability across all levels of the organisation. You provide authoritative guidance on risk identification, assessment, and mitigation, ensuring that cybersecurity strategies are aligned with broader business objectives. Through your leadership, the organisation maintains robust incident response capabilities, meets regulatory requirements, and continuously enhances its security posture through innovation, collaboration, and the application of best practices.
The Team
The Information Communication and Technology (ICT) team enables our people to deliver value through efficient and innovative ICT services. In addition to ensuring our stakeholders are empowered with the technology they need, we are future focused by seeking opportunities to advance and innovate. You’ll be joining a diverse team that support each other in striving for positive outcomes for the future of the Toowoomba Region.
What we offer
- Permanent full-time position based in the Toowoomba CBD.
- Annual salary range of $123,226.69 - $138,941.51 gross per annum, plus 17.5% annual leave loading and up to 12.65% superannuation.
- Enjoy work/life balance with a 72.5 hour fortnight and access to banked leave.
- Development, leadership and management training opportunities.
- Salary sacrificing opportunities to boost your superannuation.
- Salary packaging services available.
- Corporate discounts on selected private health insurance.
- Access to the Fitness Passport Program - providing access to a wide range of local health, fitness, and leisure facilities with one affordable membership.
- Employee Assistance Program – free 24 hour nationwide confidential personal or work-related counselling services for employees and their families.
- A range of progressive health and wellbeing services.
How to be successful in this position
- Tertiary qualification in Cybersecurity, IT, or related field, or equivalent experience.
- Proven leadership in cybersecurity, risk management, and regulatory compliance.
- Recognised certifications such as CISSP, CISM, or CRISC.
- Strong strategic, analytical, and problem-solving skills.
- Effective communicator with the ability to engage executives and diverse teams.
- Results-driven, delivering measurable improvements in security and risk posture.
- Expert knowledge of cybersecurity frameworks (NIST, ISO27001, ACSC) and cloud security.
- Demonstrate accountability, integrity, and alignment with organisational values.
How to apply
For full details of this position, please ensure you download the Position Description, which provides the position success criteria.
To apply, submit the following:
- Your current Resume
- A document (maximum 2 pages) that addresses each of the Position Success Criteria listed in the Position Description. For each criterion:
- Use headings to identify which criterion you are addressing.
- Provide specific examples from your own experience that demonstrate your skills, experience, and achievements related to that criterion.
(Tip: tell us what you did, how you did it, and what the outcome was).
The preferred candidate will be required to undertake a Criminal History Check and a pre-employment medical assessment to assess their ability to perform the genuine occupational requirements of the position.
Please note to have your application considered, ensure that you have followed the instructions outlined above.
Visit our website for information on how to apply for jobs at Toowoomba Regional Council. Applicants are encouraged to apply online.
For further information
Please contact Matthew Willcocks – Manager ICT (CIO) - on within business hours.
The closing date for applications is Thursday 20 November 2025 at 11.45pm.
About Council
The Toowoomba Region is about rich traditions and bold ambitions. Our long and proud agricultural history has evolved Toowoomba into Australia’s second largest inland city supporting diverse townships in the Council area and acting as a service centre for South West Qld and North West NSW. The region is boldly forging new opportunities around the Surat Basin resource sector, education, health, transport, and massive infrastructure investments. Growth hasn’t come at the expense of liveability though, with Toowoomba twice voted in the top 5 most family friendly cities in Australia.
Toowoomba Regional Council services a regional population of 178,500 and employs a team of approximately 1,600 staff, dedicated and passionate about delivering excellent customer service to the community, residents, and visitors throughout the region. We recognise that our success depends upon attracting and retaining skilled and talented staff and offer a wide variety of interesting challenges and opportunities to develop your career.
Council does not accept unsolicited agency approaches or applications for this or any other vacancy. No response will be provided.
#J-18808-Ljbffr
📌 Principal Cybersecurity and Risk (Toowoomba Regional)
🏢 Toowoomba Regional Council
📍 Toowoomba Regional
Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.