Profectus is seeking an experienced Lead ICT Security Engineer to deliver security engineering and accreditation outcomes for ICT systems within an Australian Government agency. The role leads security assurance activities across new and existing ICT systems and provides security advice to project teams and senior stakeholders. The work covers security risk assessments, security control implementation, accreditation documentation and stakeholder engagement to achieve and maintain Authority to Operate.
Key Responsibilities
- Lead security engineering activities across complex ICT systems and projects
- Implement and assess security controls to achieve and maintain Authority to Operate (ATO)
- Conduct security risk and threat assessments, identify vulnerabilities and develop mitigation strategies
- Develop and maintain accreditation documentation, including System Security Plans (SSPs) and Concepts of Operations (CONOPS)
- Prepare briefs, reports and recommendations for senior management to support approvals
- Negotiate with ICT engineers, security teams and project stakeholders to achieve accreditation approvals
- Provide security engineering advice to project teams through design, implementation and sustainment
- Explain technical security requirements to technical and non-technical audiences
Required Experience
- Demonstrated experience leading security engineering activities for complex ICT systems in secure government or Defence environments
- Proven experience achieving and maintaining ATO or security accreditation for ICT systems
- Experience conducting security risk and threat assessments and documenting residual risk
- Robust experience writing SSPs, CONOPS, risk assessments and executive briefs
- Working knowledge of Australian Government security policy and standards, including the ISM and PSPF
- Ability to engage, influence and negotiate with engineers, accreditation authorities and senior stakeholders
- Excellent written and verbal communication skills
Desirable Experience
- Formal security qualifications such as IRAP Assessor Training, CISSP, CISM, SABSA or ISSEP
- Experience supporting Defence or national security projects
- Experience with security architecture, cloud security, DevSecOps or infrastructure accreditation
Security Clearance Requirements
- Must be an Australian Citizen
- Must have a current AGSVA Top Secret Positive Vetting (TSPV) Security Clearance
Working Arrangements
- Onsite
- Canberra
Why Profectus Profectus partners with Australian Government agencies to deliver trusted ICT capability across complex delivery programs. We take a long term, relationship driven approach, supporting our people across the full lifecycle of their engagement while contributing to outcomes of national importance.
📌 Lead Security Engineer (Canberra)
🏢 Profectus
📍 Canberra
Reply to this offer
Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.