Cyber Security Assurance Analyst

Kinetic Group

City of Melbourne

Hybrid

AUD 110,000 - 150,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Kinetic Group in Melbourne is seeking a Cyber Security Assurance Analyst to help shape assurance practices as part of a major cyber uplift. You will work with the Information Security Manager to define security requirements during procurement and project delivery, assess vendors, and ensure controls are embedded across the application landscape.

This role focuses on building an assurance register, leading third-party security activities, and supporting ISO 27001 certification efforts within a

Qualifications

  • Experience reviewing and negotiating security clauses in commercial and vendor contracts.
  • Background in vendor and third-party risk assessment (TPRM), including gap assessment against security requirements.
  • Working knowledge of ISO 27001 Annex A controls and the Essential 8.
  • Comfortable reading solution architecture and design documentation and translating it into control requirements.
  • Certifications such as ISO 27001 Lead Implementer or Lead Auditor, CISSP, CISM or CRISC are highly recommended.
  • Experience with GRC or register tooling (Jira, ServiceNow GRC or Archer) and strong analytical skills.
  • Excellent communication and interpersonal skills, with the confidence to negotiate directly with vendors, Legal and Procurement.
  • Values resonate with Passion, Integrity, Respect, Authenticity, Humility.

Responsibilities

  • Define and maintain security requirements for procurement, projects and solution delivery.
  • Conduct cyber assurance assessments of vendors, suppliers and proposed technology solutions.
  • Review and negotiate security requirements within commercial and technology contracts.
  • Partner with Architecture, Project and Procurement teams to embed security throughout delivery lifecycles.
  • Validate security controls and manage remediation activities prior to production deployment.
  • Own and maintain the Cyber Security Assurance Register across Kinetic's application landscape.
  • Lead third-party security assurance and risk assessment activities.
  • Support ISO 27001 certification, governance reviews and ongoing compliance reporting.

Skills

Vendor risk assessment
GRC experience
ISO 27001 knowledge
Contract security clauses
Stakeholder communication

Tools

Jira
ServiceNow GRC
Archer

Job description

Cyber Security Assurance Analyst
  • Newly created GRC function
  • Join a growing cyber function with the opportunity to help shape assurance practices and security standards
  • Initial 12 month max-term contract - Melbourne location
About the Role

Due to significant global growth, Kinetic are undertaking a large scale, multi stream program of work designed to transform our technology landscape, create simplified, consistent ways of working, and ensure our future growth plans are underpinned by seamless technology products and processes.

Part of this transformation program is a major cyber security uplift across the Kinetic business. As the Cyber Security Assurance Analyst, you’ll ensure security is designed into our applications and vendor relationships from the outset, rather than added on afterwards. Reporting directly to the Information Security Manager, you’ll define security requirements during market scans and procurement, negotiate them into vendor contracts, and confirm they carry through design and implementation. You’ll also build and maintain the assurance register that evidences our security control posture across the application landscape, supporting Kinetic's ISO 27001 certification and governance audit obligations.

What You Will Do
  • You’ll work closely with the Information Security Manager to:
  • Define and maintain security requirements for technology procurement, projects and solution delivery.
  • Conduct cyber assurance assessments of vendors, suppliers and proposed technology solutions.
  • Review and negotiate security requirements within commercial and technology contracts.
  • Partner with Architecture, Project and Procurement teams to embed security throughout delivery lifecycles.
  • Validate security controls and manage remediation activities prior to production deployment.
  • Own and maintain the Cyber Security Assurance Register across Kinetic's application landscape.
  • Lead third-party security assurance and risk assessment activities.
  • Support ISO 27001 certification, governance reviews and ongoing compliance reporting.
What You Will Need
  • Experience reviewing and negotiating security clauses and schedules in commercial and vendor contracts.
  • Background in vendor and third-party risk assessment (TPRM), including gap assessment against security requirements.
  • Working knowledge of ISO 27001 Annex A controls and the evidence required to demonstrate them, along with an understanding of the Essential 8.
  • Comfortable reading solution architecture and design documentation and translating it into control requirements.
  • Certifications such as ISO 27001 Lead Implementer or Lead Auditor, CISSP, CISM or CRISC are highly recommended.
  • Experience with GRC or register tooling (such as Jira, ServiceNow GRC or Archer) and strong analytical skills and attention to detail.
  • Excellent communication and interpersonal skills, with the confidence to negotiate directly with vendors, Legal and Procurement.
  • Most importantly, our values resonate with you – Passion, Integrity, Respect, Authenticity, Humility.
About us:

At Kinetic, we don't just move people - we're creating the positive change our planet needs. As a leader in sustainable transport, we're committed to creating cleaner, safer, and greener environments for generations to come.

Our size and scale give our people real opportunities to learn, grow, and progress in their careers. Calm, positive and respectful team players thrive here. Our people embrace change and are encouraged to stretch their comfort zone while making a difference. We challenge each other to be our best.

We're driven by respect, diversity and genuine connection. From networking groups to community partnerships and volunteering, our camaraderie naturally brings people together. Our energy and dedication keep communities moving and our people growing.

Kineticis proud to be an Equal Opportunity Employer and our people represent the community which we service. We invite all suitably qualified applicants to apply, including First Nations People, and people from diverse social, cultural and gender backgrounds.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Security Assurance Analyst — 12-Month Contract (Melbourne)
Cyber Security Assurance Analyst — 12-Month Contract (Melbourne)

Kinetic Group • City of Melbourne

Hybrid
AUD 110,000 - 150,000
Penetration Tester
Penetration Tester

Kinetic IT • Australia

Hybrid
AUD 110,000 - 170,000
Employee discounts platform
Discounted gym membership
Cyber Security GRC Analyst
Cyber Security GRC Analyst

FourQuarters Recruitment • City of Melbourne

On-site
AUD 148,000 - 203,000
Cyber GRC Analyst
Cyber GRC Analyst

Paxus • City of Brisbane

On-site
AUD 110,000 - 150,000
Penetration Tester
Penetration Tester

Kinetic IT • City of Brisbane

Hybrid
AUD 110,000 - 170,000
Hybrid options
Flexible hours
Mobility and part-time roles
+1
Senior Marketing Manager
Senior Marketing Manager

Kinetic IT • Australia

Hybrid
AUD 140,000 - 190,000
Hybrid work options
Flexible hours
Mobility & part-time roles
+4
Penetration Tester
Penetration Tester

Kinetic IT • Council of the City of Sydney

Hybrid
AUD 110,000 - 170,000
Growth-focused culture
Opportunity Marketplace
Hybrid options
+2
Technical Business Analyst - Data Platforms & AI
Technical Business Analyst - Data Platforms & AI

Kinetic • City of Melbourne

On-site
AUD 110,000 - 150,000
Hybrid work model
Cyber Security Consultant (GRC)
Cyber Security Consultant (GRC)

Anitech Pty Ltd • City of Melbourne

Hybrid
AUD 120,000 - 160,000
Contract Manager
Contract Manager

Kinetic IT • Canberra

On-site
AUD 120,000 - 170,000
Growth-focused culture
Career development opportunities
Flexible work options
+2