Cyber Security GRC

c4isolutions

Sydney

On-site

AUD 140,000 - 200,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Long Service Leave
Health & wellbeing allowance
First year leave
Birthday leave
Higher Education Subsidy
Veteran Career Development
Service Awards
Employee Recognition
Charity Matching

Job summary

C4i Solutions in Sydney is seeking a Cyber Security GRC specialist to support secure and compliant outcomes across Defence programs. You will drive governance, risk assessment, and regulatory alignment with ISM, PSPF, DSPF, and NIST, delivering risk-based advice and accreditation support.

The role focuses on developing security artefacts, leading CSAAF processes to obtain ATO, and embedding governance practices to strengthen cyber maturity while coordinating with Defence stakeholders in a

Qualifications

  • Australian citizen with min AGSVA NV1 clearance (upgrade to NV2).
  • Bachelor's degree in Cyber Security, Information Technology, or related field (or equivalent experience).
  • CISSP, CISM or ISO27001-Lead Auditor, SANS 401 certification.
  • IRAP qualified (highly regarded).
  • Min of 5 years' experience in a Defence classified ICT environment.
  • Willingness to work on-call roster periodically.
  • Strong analytical and reporting skills.
  • Excellent communication and stakeholder engagement in high-pressure, secure ICT environments.

Responsibilities

  • Manage cyber security governance and compliance frameworks (ISM, PSPF, DSPF, E8) within the Defence CyberWorthiness System (DCwS).
  • Lead CSAAF processes to achieve Authority to Operate (ATO) for Defence systems.
  • Engage Defence stakeholders to support ATO workflows and outcomes.
  • Develop and maintain core security artefacts (SAP, BIL, E8 assessments, SSP, SSP-A, SRMP, IRP, CMP, SCCG, POA&M).
  • Lead continuous improvement in cyber security governance, policy development, and best-practice implementation.
  • Risk management across Defence information environments, including identification, mitigation, and reporting.
  • Operate within Defence networks, integration into the Single Information Environment, acceptance into service, and transition to sustainment.

Skills

Governance
Risk management
A&A frameworks
ISM
PSPF
DSPF
NIST
Security documentation
Stakeholder engagement
Analytics

Education

Bachelor's degree
Cyber security

Job description

Be you with us – Shape the future of Defence and Technology

C4i Solutions is a leading Technology, ICT, and Digital Solutions company, delivering real outcomes for our Defence, Government, and Industry partners. We're growing and we're looking for great people who share our values, believe in our mission, and care about what they do. People who value teamwork, take pride in their work, and want to make an impact.

About the Role:

As a Cyber Security GRC professional in C4i Solutions, you will be responsible for supporting the delivery of secure and compliant outcomes across Defence and government programs. You will bring strong expertise in ICT Assessment and Authorisation (A&A), risk management, and security assurance, with a solid understanding of frameworks such as ISM, PSPF, DSPF, and NIST. In this role, you will work closely with stakeholders to provide risk-based cyber security advice, support accreditation activities, and ensure alignment between operational requirements and regulatory obligations. You will play a key role in developing security documentation, conducting risk assessments, and embedding governance practices that strengthen cyber maturity and resilience.

About the role:
  • Managing cyber security governance and compliance frameworks, including ISM, PSPF, DSPF, and Essential Eight (E8) requirements, within the overarching Defence CyberWorthiness System (DCwS).
  • Leading Cyber Security Assessment and Authorisation Framework (CSAAF) processes to achieve Authority to Operate (ATO) for Defence systems.
  • Engaging effectively with Defence stakeholders and decision-makers to support ATO workflows and outcomes.
  • Developing and maintaining core security artefacts in alignment with CSAAF requirements, including SAP, BIL and E8 assessments, SSP, SSP-A, SRMP, IRP, CMP, SCCG, and POA&M.
  • Leading and driving continuous improvement in cyber security governance, policy development, and best practice implementation.
  • Risk management, encompassing risk identification, mitigation strategies, and reporting within Defence information environments.
  • Operate within Defence networks and system security, including integration into the Single Information Environment, acceptance into service, and transition to sustainment of Defence capabilities and systems.
About you:
  • Australian citizen (required for Defence projects) with a min AGSVA NV1 clearance (Ability to upgrade to NV2).
  • Bachelor's degree in Cyber Security, Information Technology, or related field (or equivalent experience) and;
  • A relevant certification such as CISSP, CISM or ISO27001-Lead Auditor, SANS 401.
  • IRAP qualified (Highly regarded).
  • A min of 5 years' experience within a Defence classified ICT environment.
  • Be willing to work as part of an on-call roster on a periodic basis.
  • Strong analytical and reporting skills.
  • Excellent communication and stakeholder engagement skills Ability to work in high-pressure, secure ICT environments.
Why Join Us?
  • Veteran-Focused: As a Veteran-owned and operated company, we value your service. Our Veteran Career Development Program is designed to support your transition and future career growth. Defence Veterans are strongly encouraged to apply.
  • People First: Were a company that puts people at the centre. Fostering a culture of wellbeing, engagement, and respect for your unique skills.
  • A Culture That Values You: Be part of a passionate, supportive, and growing team that recognises your contribution and rewards success.
  • And we like to keep things real. We work hard, support each other, and make space for a laugh along the way.
Benefits We Offer:
  • Long Service Leave @ 7 years: Take long service leave after 7 years' service (Pro-rata).
  • Health & wellbeing allowance: Our annual Health & Wellbeing allowance ($250) helps you stay fit and healthy.
  • First year leave (5 days): We offer 5 additional leave days in your first year to help you settle in!
  • Birthday leave: We know your birthday is a special day! Take the day off and relax on us!
  • Higher Education Subsidy: Obtain a higher qualification relevant to your role while working with us and receive a $2500 contribution annually. This includes certification fees on digital learning courses.
  • Veteran Engagement: At C4i Solutions, we understand that leaving the ADF can be a daunting time. We've been there, as we know from our own experience. Our Veteran Career Development Program offers a range of support and development activities for ADF veterans and their partners, so that your transition from the ADF is seamless and supported.
  • Service Awards: We acknowledge your service with us through 1, 5, and 10-year awards.
  • Employee Recognition: We reward our people when they go above and beyond.
  • Donate for a Cause: Donate to a charity of your choice and we'll match it up to a value of $200!
  • PLUS, much more!
Be you, with us:

If you're looking for a workplace where your skills, experience, and dedication are genuinely valued we'd love to hear from you. We are a close-knit team of veterans, problem-solvers, tech heads, dads, mums, soccer coaches, and weekend adventurers who love what we do, like to have a bit of fun, and don't take ourselves too seriously. What brings us together is a passion for doing great work that makes a real difference to those who serve. www.C4isolutions.com.au

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Defence Cyber Security GRC Specialist
Defence Cyber Security GRC Specialist

C4I Solutions Pty • Sydney

Hybrid
AUD 140,000 - 190,000
Cyber Security GRC
Cyber Security GRC

C4I Solutions Pty • Sydney

On-site
AUD 140,000 - 190,000
Cyber Security Specialist
Cyber Security Specialist

C4i Solutions • Canberra

On-site
AUD 120,000 - 160,000
Long service leave
Health & wellbeing allowance
First year leave
+6
Technology Specialist Cyber GRC
Technology Specialist Cyber GRC

C4I Solutions Pty • Penrith City Council

On-site
AUD 140,000 - 200,000
Long Service Leave
Wellbeing Allowance
First-Year Leave
+7
Technology Specialist Cyber GRC
Technology Specialist Cyber GRC

C4i Solutions • Penrith City Council

On-site
AUD 110,000 - 140,000
Long Service Leave
Health & wellbeing allowance
First year leave
+6
Technology Specialist - Cyber GRC
Technology Specialist - Cyber GRC

C4I Solutions • Canberra

On-site
AUD 90,000 - 120,000
Long Service Leave @ 7 years
Health & wellbeing allowance ($250 annually)
5 days additional leave in the first year
+4
Cyber Security Assessor
Cyber Security Assessor

C4I Solutions Pty • Sydney

On-site
AUD 150,000 - 190,000
Long Service Leave
Health & wellbeing allowance
Higher Education Subsidy
Defence Cyber Security Assessor – Onsite Sydney
Defence Cyber Security Assessor – Onsite Sydney

C4I Solutions Pty • Sydney

On-site
AUD 150,000 - 190,000
Long Service Leave
Health & wellbeing allowance
Higher Education Subsidy
Cyber Security Architect
Cyber Security Architect

C4i Solutions • Sydney

On-site
AUD 150,000 - 210,000
Long service leave
Health allowance
First year leave
+6
Cyber Security Architect
Cyber Security Architect

c4isolutions • Sydney

On-site
AUD 180,000 - 240,000
Long service leave
Health & wellbeing allowance
First year leave (5 days)
+6