CareerPlanSign in

Cyber Security GRC

Sydney, New South Wales💼 Full-time🗓 2026-09-17 → 2026-10-03

Core

Support delivery of secure and compliant outcomes for Defence and government programs through ICT Assessment and Authorisation (A&A), risk management, and security assurance.

Role type

Cyber Security GRC professional (ICT Assessment and Authorisation)

Builds

Authority to Operate (ATO) for Defence systems and compliant security documentation

Domain

Defence and Government ICT

Required skills

ICT Assessment and Authorisation (A&A), risk management, security assurance, framework compliance (ISM, PSPF, DSPF, NIST, Essential Eight), security documentation development, stakeholder engagement, risk identification and mitigation

Preferred skills

IRAP qualification, continuous improvement in governance and policy

Technologies

ISM, PSPF, DSPF, Essential Eight (E8), Defence CyberWorthiness System (DCwS), CSAAF, SAP, BIL, SSP, SSP-A, SRMP, IRP, CMP, SCCG, POA&M

Responsibilities

Manage cyber security governance and compliance frameworks within DCwS; Lead CSAAF processes to achieve ATO; Engage with Defence stakeholders to support ATO workflows; Develop and maintain core security artefacts; Drive continuous improvement in governance and policy; Perform risk management including identification, mitigation, and reporting

Seniority

Mid-Senior, hands-on IC

Sourced via viewjobs · Listed on CareerPlan, which tracks 940,000+ jobs from 20+ sources.