Cyber GRC Analyst

Whizdom

Canberra

On-site

AUD 160,000 - 190,000

Full time

8 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Whizdom is seeking a Cyber GRC Analyst to embed governance, risk and regulatory practices aligned to Australian Government frameworks such as PSPF, ISM and Essential 8 and NIST across information systems. The role reports to the Cyber GRC Manager within the cybersecurity team and focuses on implementing controls to ensure compliance and informed risk management.

The position supports authorisation activities, risk assessments, and continuous improvement of cyber security posture in heavily

Qualifications

  • Minimum 3 years working as a Cyber Security or GRC Analyst.
  • Knowledge of PSPF, ISM, Essential 8, NIST.
  • Ability to identify risks, provide risk reduction strategies, and collaborate with business teams to secure stakeholders’ approval and support.
  • Experience in enterprise security environments.
  • Experience in heavily regulated environments (e.g., federal government, telco, energy).
  • Excellent communication skills with stakeholders at varying seniorities.

Responsibilities

  • Develop, deliver and maintain security authorisation documentation (e.g., System Security Plans, Security Risk Management Plans, and Cyber Incident Response Plans) to support Government processes.
  • Implement security standards, ISM, Essential 8, NIST, etc.
  • Provide cyber security advice that assists with monitoring infrastructure components, the design of infrastructure, identify areas for improvements and assist with upgrades or enhancements as required.
  • Conduct cyber security risk assessments to identify and evaluate potential threats and vulnerabilities.
  • Provide SME recommendations and advice on compliance and regulatory requirements to support continuous improvement of cyber security posture.
  • Assist with the development of comprehensive security policies to address and mitigate risks.

Skills

GRC
Risk assessment
Regulatory compliance
Stakeholder communication
Security governance

Job description

Seeking a Cyber GRC Analyst with Knowledge of PSPF, ISM, Essential 8, NIST.


The Cyber GRC Specialist supports the organisations information system authorisation activities by embedding governance, risk, and regulatory compliance practices that are aligned to Australian Government frameworks – particularly the Information Security Manual (ISM), Protective Security Policy Framework (PSPF), and Essential 8. Working under the Cyber GRC Manager and as part of the broader cybersecurity team, this role supports the implementation, monitoring, and continuous improvement of security controls to ensure compliance, maturity uplift, and informed risk management is in line with organisational objectives and Government standards.


Responsibilities


  • Develop, deliver and maintain security authorisation documentation (e.g., System Security Plans, Security Risk Management Plans, and Cyber Incident Response Plans) to support Government processes.

  • Implement security standards, ISM, Essential 8, NIST, etc.

  • Provide cyber security advice that assists with the monitoring of infrastructure components, the design of infrastructure, identify areas for improvements and assist with the implementation of upgrades, or enhancements as required.

  • Conduct cyber security risk assessments to identify and evaluate potential threats and vulnerabilities.

  • Provide SME recommendations and advice on compliance and regulatory requirements to support continuous improvement of cyber security posture.

  • Assist with the development of comprehensive security policies to address and mitigate risks.


Skills and Abilities


  • Minimum 3 years working as a Cyber Security or GRC Analyst.

  • Knowledge of security standards and frameworks such as PSPF, ISM, Essential 8, NIST.

  • Ability to identify risks, provide risk reduction strategies, and collaborate with business teams to secure stakeholders’ approval and support.

  • Experience working within an enterprise security environment.

  • Previously worked in heavily regulated environments such as federal government, telco, energy, etc.

  • Excellent communication skills and ability to communicate with stakeholders varying in seniority and technical understanding.


Permanent role - $164k + Super

Security Required: NV1 or NV2 Security Clearance required

Closing date: Friday 28 August by 9am


Call Joanne Finchett on 0480 002454 or email Joanne@whizdom.com.au for any further information

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber GRC Manager
Cyber GRC Manager

Whizdom • Canberra

On-site
AUD 162,000 - 198,000
NV2 Security Clearance
Cyber GRC Specialist
Cyber GRC Specialist

Client 1 • Canberra

On-site
AUD 120,000 - 150,000
14% superannuation
6 weeks paid annual leave
Mentoring & professional development
Cyber Security GRC Analyst
Cyber Security GRC Analyst

Interpro • Canberra

On-site
AUD 120,000 - 180,000
GRC Manager
GRC Manager

Client 1 • Canberra

On-site
AUD 140,000 - 180,000
14% superannuation
6 weeks paid annual leave
Hands-on leadership role
+3
Cyber GRC Manager
Cyber GRC Manager

HorizonOne Recruitment • Canberra

On-site
AUD 140,000 - 200,000
Six weeks paid annual leave
Superannuation 14.0%
Free onsite car parking
+2
GRC Manager
GRC Manager

Cleared Recruitment • Canberra

On-site
AUD 140,000 - 190,000
Competitive salary
Cyber GRC Lead — ISM/PSPF/NIST Compliance
Cyber GRC Lead — ISM/PSPF/NIST Compliance

Whizdom • Canberra

On-site
AUD 162,000 - 198,000
NV2 Security Clearance
Cyber Security GRC Specialist
Cyber Security GRC Specialist

Laneway Talent • Canberra

On-site
AUD 90,000 - 130,000
Senior Cyber Security Governance Analyst
Senior Cyber Security Governance Analyst

Exclaim IT • Canberra

On-site
AUD 120,000 - 150,000
Cyber GRC Analyst – Government Frameworks
Cyber GRC Analyst – Government Frameworks

Whizdom • Canberra

On-site
AUD 160,000 - 190,000