We are seeking an experienced Cyber Security GRC Specialist to support a major resilience uplift program, providing governance, risk, compliance, and security assurance expertise across complex technology initiatives.
Key Responsibilities
- Provide security input into solution design and technical initiatives.
- Review and develop cyber security requirements and recommendations.
- Develop executive-level security communications and documentation.
- Coordinate security assurance activities, including IRAP assessments and penetration testing.
- Lead the development and maintenance of formal security and GRC documentation.
- Engage with technical, business, security, and senior executive stakeholders.
- Support broader cyber security governance, risk,
compliance, and assurance activities.
- Strong knowledge of the Information Security Manual (ISM), Protective Security Policy Framework (PSPF), and Essential Eight.
- Demonstrated experience in Cyber Security Governance, Risk & Compliance (GRC).
- Solid stakeholder and client engagement skills.
- Proven experience developing GRC and security documentation.
- 5+ years' experience in Cyber Security, GRC, Security Assurance, or related roles.
- Previous Federal Government experience highly regarded.
- Experience supporting IRAP, security assessments, penetration testing, and security accreditation processes.