Laneway is recruiting on behalf of our client for an experienced Cyber Security GRC Specialist to support a major cyber security resilience uplift program.
n
This is a Canberra-based opportunity focused on cyber security governance, risk and compliance activities, security assurance, documentation and stakeholder engagement within a complex setting.
n
The Role
n
You will contribute to a range of cyber security GRC activities, working closely with cyber security teams, technical stakeholders and senior decision-makers.
n
Key responsibilities include:
n
n
- Contributing to solution design with a focus on cyber security considerations
n
- Reviewing and providing recommendations on security requirements
n
- Developing security advice, communications and documentation to support senior executive decision-making
n
- Supporting the coordination of security assurance activities, including IRAP and penetration testing
n
- Developing and maintaining formal cyber security documentation
n
- Supporting governance, risk and compliance activities across the cyber security environment
n
- Working with stakeholders to identify and address security risks and requirements
n
- Providing practical cyber security advice to support program and project outcomes
n
- Supporting security activities during key delivery periods and operational requirements
n
n
About You
n
You'll ideally have:
n
n
- Demonstrated experience working in a cyber security GRC role
n
- Strong knowledge of the Information Security Manual (ISM)
n
- Understanding of the Protective Security Policy Framework (PSPF)
n
- Strong knowledge of the Essential Eight
n
- Experience developing formal cyber security and GRC documentation
n
- Experience supporting security assurance activities, including IRAP and penetration testing
n
- Strong stakeholder and client management skills
n
- Ability to communicate complex security matters clearly to technical and non-technical audiencesExperience preparing documentation and advice for senior stakeholders
n
- Strong written communication and attention to detail
n
- Ability to work collaboratively across technical, security and business teams
n
n
The Opportunity
n
n
- 45 hours per week
n
- Full-time onsite
n
- Temporary work-from-home arrangements may be considered on a case-by-case basis
n
- NV1 security clearance required — active or inactive clearance will be considered
n
n
The role will support key delivery periods, with flexibility required to work extended hours and weekends where needed to meet client requirements.
n
The initial engagement is aligned to the delivery program, with the potential for extension depending on ongoing client requirements and future program needs.
n
Candidate applications will require a one-page pitch addressing the selection criteria.
n
We value diverse perspectives, backgrounds, and experiences, and encourage applications from people of all identities, communities, and career journeys.