24 Aug
|
SkyDB
|
Canberra
Canberra, ACT | Full-time Onsite
We're Hiring | Senior Cyber Security Governance Analyst !
!!!!!!!
Canberra, ACT | Full time Onsite
12-Month Contract + 12-Month Extension
Up to 45 hours per week during peak operational periods
Security Clearance: NV1 required prior to commencement
Start: September ****
SkyDB is seeking an experiencedSenior Cyber Security Governance Analystto support a major cyber security resilience uplift program within a critical Australian Government environment.
This is an excellent opportunity for amid-to-senior level Cyber Security GRC professionalwith practical experience across governance, risk, compliance, security assurance and the development of formal security documentation.
The successful candidate will work closely with cyber security teams, technical specialists, project stakeholders and senior decision-makers to ensure security requirements are appropriately considered, documented and implemented across the program.
About the Role
The position will support cyber securityGovernance, Risk and Compliance (GRC)activities as part of a broader resilience uplift program.
You will contribute to security considerations across solution design, assist with defining security requirements, coordinate assurance activities and develop formal documentation required to demonstrate security compliance and support decision-making.
During major electoral events, the role may also supportevent-specific cyber security requirements, making this a particularly important position within a high-profile operational environment.
Key Responsibilities
Contributing tosolution designby identifying and addressing security considerations.
Reviewing business and technical requirements and providing recommendations for appropriate security controls.
Developing and reviewingcyber security requirementsacross projects and initiatives.
Preparing clear and concise communications, reports and documentation to supportsenior executive decision-making.
Supporting and coordinatingsecurity assurance activities, including IRAP assessments and penetration testing.
Working with external assurance providers to coordinate assessments, track findings and support remediation activities.
Leading the development and maintenance of formal security documentation.
Preparing documentation required to support IRAP assessments, includingSystem Security Plans (SSPs), Security Risk Management Plans (SRMPs), SSP Annexes / Statements of Applicability and related security artefacts.
Supporting security authorisation and accreditation activities.
Maintaining security records, reports, minutes and governance artefacts.
Working collaboratively with technical and business stakeholders to ensure security requirements are understood and addressed.
Supporting cyber security requirements during periods of heightened operational activity and major electoral events.
Key Skills & Experience
The ideal candidate will have a strong background inCyber Security Governance, Risk & Compliance, with practical experience applying Australian Government security frameworks.
Essential Experience
Demonstrated experience working in aCyber Security GRCrole.
Strong practical knowledge of:
Information Security Manual (ISM)
Protective Security Policy Framework (PSPF)
Essential Eight
Demonstrated experience developing formalGRC and security documentation.
Experience coordinating security assurance activities, includingIRAP assessments and penetration testing.
Strong stakeholder and client management experience, with the ability to work with technical, business and senior stakeholders to achieve outcomes.
Excellent written and verbal communication skills, particularly when preparing documentation and recommendations for senior decision-makers.
Strong understanding of security risk, governance and compliance principles.
Desirable Experience
5+ years' experiencein relevant cyber security, GRC, governance, risk or assurance roles.
Previous experience working withinCommonwealth Governmentenvironments.
Experience within State/Territory Government or large, complex private-sector environments will also be considered.
Experience supporting security resilience or cyber security uplift programs.
Experience preparing documentation such as SSPs, SRMPs, SSP Annexes/SoAs, authorisation reports and security governance records.
Australian Government Security Requirements
An active NV1 Security Clearance is required prior to commencement.
Candidates who already holdNV1 or a higher Australian Government security clearance are strongly preferred.
The role involves access to classified information, and candidates who do not currently hold the required NV1 clearance may be removed from consideration during the selection process.
Australian Citizenship is required to hold an NV1 clearance.
Working Arrangements
This is afull-time onsite position based in Canberra, ACT.
Temporary work-from-home arrangements may be considered on a case-by-case basis for the right candidate; however, regular remote work should not be expected.
The standard working pattern is7.5 hours per day, Monday to Friday (37.5 hours per week).
Additional hours may be required during major electoral events or other periods of heightened operational activity.
Extended hours and weekend work may therefore be required during key event periods.
Contract Details
Initial Contract:12 months
Extension:Up to a further 12 months
Location:Canberra, ACT
Work Arrangement:Full-time onsite
Experience Level:Senior / APS6 equivalent
Security:NV1 required prior to commencement
Why This Opportunity?
This is an opportunity to contribute to ahigh-impact cyber security resilience programwithin an organisation responsible for supporting Australia's electoral processes.
You'll work on meaningful cyber security initiatives involving governance, security assurance, risk management and Australian Government security frameworks, while collaborating with experienced cyber and technology professionals.
If you're an experiencedCyber Security GRC professional with an active NV1 clearanceand are looking for your next opportunity in Canberra, we'd love to hear from you.
#J-*****-Ljbffr
📌 Senior Cyber Security Governance Analyst (Canberra)
🏢 SkyDB
📍 Canberra