Senior Cyber Security Governance Analyst
Job Summary
The Australian Electoral Commission (AEC) is seeking an experienced Senior Cyber Security Governance Analyst (APS6 equivalent) to support the delivery of cyber security governance risk and compliance (GRC) activities as part of the AECs resilience uplift program.
Reporting to the AEC Cyber Security team the successful candidate will play a key role in strengthening the organizations cyber security posture by contributing to security governance initiatives developing security documentation coordinating assurance activities and supporting senior executive decision-making.
This is a critical surge role that will also provide cyber security support during electoral events ensuring election-specific security requirements are met.
- Contribute to solution design activities by providing cyber security guidance and recommendations.
- Review and develop security requirements aligned with government cyber security frameworks.
- Prepare communications reports and documentation to support senior executive decision-making.
- Coordinate security assurance activities including:
- Information Security Registered Assessors Program (IRAP) assessments
- Penetration testing engagements
- Security compliance reviews
- Information Security Registered Assessors Program (IRAP) assessments
- Lead the development and maintenance of formal cyber security governance and compliance documentation.
- Support risk management security assurance and resilience uplift initiatives across the organization.
- Collaborate with internal stakeholders and external service providers to achieve project outcomes.
- Assist with election-specific cyber security requirements during federal electoral events.
- Strong knowledge of:
- Information Security Manual (ISM)
- Protective Security Policy Framework (PSPF)
- Essential Eight Maturity Model
- Information Security Manual (ISM)
- Demonstrated experience performing a Cyber Security Governance Risk and Compliance (GRC) role.
- Proven ability to manage stakeholder and client relationships and drive successful outcomes.
- Experience developing reviewing and maintaining cyber security governance and compliance documentation.
- Strong written and verbal communication skills including preparation of executive-level documentation.
- Minimum 5 years experience in cyber security governance risk and compliance information security or related disciplines.
- Experience supporting government security assurance activities.
- Familiarity with Australian Government cyber security frameworks and compliance requirements.
- Experience working within large-scale programs or complex project environments.
- Must be able to obtain and maintain Negative Vetting Level 1 (NV1) Security Clearance.
- Opportunity to contribute to the security and resilience of Australias electoral systems.
- Work on a high-profile cyber security uplift program within a major Federal Government agency.
- Exposure to government cyber security frameworks including ISM PSPF Essential Eight IRAP and security assurance processes.
- Twelve-month initial contract with a potential twelve-month extension.
- Opportunity to work alongside experienced cyber security and governance professionals.
- Meaningful work supporting national electoral events and critical government operations.
Required Skills:
2 Principal Java/Bespoke Software Engineer (Developer)
Required Education:
2 Principal Java/Bespoke Software Engineer (Developer)