GRC Specialist

Cleared Recruitment

Canberra

On-site

AUD 110,000 - 150,000

Full time

2 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

14% superannuation
6 weeks annual leave
Mentoring and development
Career growth
Govt frameworks exposure

Job summary

Cleared Recruitment is seeking a Cyber GRC Specialist to join our Security team in Canberra. You will embed governance, risk and compliance practices aligned to Australian Government frameworks such as ISM, PSPF and ASD Essential Eight.

You will work with the Cyber GRC Manager on security authorisation, documentation and risk management while supporting accreditation to operate and continuous cyber maturity uplift.

Qualifications

  • Minimum three years' experience as a Cyber Security Analyst or GRC Analyst.
  • Strong knowledge of PSPF, ISM, ASD Essential Eight and NIST frameworks.
  • Experience in cyber security risk assessments and risk mitigation.

Responsibilities

  • Develop, deliver and maintain security authorisation documentation (SSP, SRMP, CRP).
  • Support ATO processes for government accreditation.
  • Assessment and Authorisation activities; implement security standards.
  • Provide cyber security advice to infrastructure monitoring and design improvements.
  • Collaborate with stakeholders to improve risk management outcomes.
  • Support continuous governance, risk and compliance initiatives.

Skills

GRC analyst
Risk assessments
Information security frameworks
Stakeholder engagement
Written communication
Cyber security governance
ISMS/PSPF knowledge
NIST familiarity
ASD Essential Eight
Security documentation

Education

Cyber security related qualifications
Desirable: ISO 27000 / NIST / CIS knowledge

Job description

Clearance required
Positive Vetting (PV) or NV2 with the ability

Company overview
Our client is seeking a Cyber GRC Specialist to join their Security team in Canberra. Working within a broader cyber security function, this role supports the implementation, monitoring and continuous improvement of governance, risk and compliance activities aligned to Australian Government cyber security frameworks.

Job Description
The Cyber GRC Specialist supports information system authorisation activities by embedding governance, risk and compliance practices aligned to Australian Government frameworks, including the Information Security Manual (ISM), Protective Security Policy Framework (PSPF) and ASD Essential Eight. Working closely with the Cyber GRC Manager, you will contribute to security compliance, risk management, security documentation and continuous cyber security maturity uplift initiatives.

Duties and Responsibilities

  • Develop, deliver and maintain security authorisation documentation, including System Security Plans, Security Risk Management Plans and Cyber Incident Response Plans.
  • Support Government Accreditation to Operate (ATO) processes.
  • Assessment and Authorisation.
  • Implement and maintain security standards and frameworks including ISM, ASD Essential Eight and NIST.
  • Provide cyber security advice to support infrastructure monitoring, design improvements, upgrades and enhancements.
  • Conduct cyber security risk assessments to identify and evaluate threats and vulnerabilities.
  • Provide subject matter expertise on compliance and regulatory requirements.
  • Assist with the development and maintenance of security policies and procedures.
  • Collaborate with internal stakeholders to improve cyber security posture and risk management outcomes.
  • Support continuous improvement initiatives across governance, risk and compliance functions.

Education/Certifications required

  • Relevant cyber security, information technology or related qualifications.
  • Desirable certifications or knowledge relating to ISO 27000 series, NIST 800 series or CIS frameworks.

Knowledge/Skills required

  • Minimum three years' experience working as a Cyber Security Analyst or GRC Analyst.
  • Strong knowledge of PSPF, ISM, ASD Essential Eight and NIST frameworks.
  • Experience conducting cyber security risk assessments and developing risk mitigation strategies.
  • Ability to engage with stakeholders of varying technical and seniority levels.
  • Experience working within enterprise security environments.
  • Previous experience within highly regulated industries such as Federal Government, telecommunications, energy or similar sectors.
  • Strong written and verbal communication skills.
  • Australian Citizenship with the ability to hold and maintain a PV security clearance.
  • 14% superannuation.
  • 6 weeks paid annual leave.
  • Opportunity to work on significant cyber security and compliance initiatives.
  • Exposure to government-aligned security frameworks and accreditation activities.
  • Mentoring and professional development opportunities.
  • Career growth through continuous learning and development.
  • Collaborative environment working alongside cyber security and technology professionals.

Diversity and Inclusion
We value diversity and are committed to creating an inclusive environment for all employees.

Veterans
Defence and Federal Government industry experience is highly desirable. We strongly encourage veterans and individuals with Defence experience to apply. Your unique skills and background are highly valued, and we are committed to supporting your transition into this role.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

GRC Specialist
GRC Specialist

Client 1 • Canberra

On-site
AUD 110,000 - 150,000
14% superannuation
6 weeks annual leave
Professional development
+2
Cyber GRC Specialist
Cyber GRC Specialist

Client 1 • Canberra

On-site
AUD 120,000 - 150,000
14% superannuation
6 weeks paid annual leave
Mentoring & professional development
Cyber GRC Specialist - PV Clearance, Canberra
Cyber GRC Specialist - PV Clearance, Canberra

Client 1 • Canberra

On-site
AUD 120,000 - 150,000
14% superannuation
6 weeks paid annual leave
Mentoring & professional development
Cyber GRC Manager (PSTV Cleared)
Cyber GRC Manager (PSTV Cleared)

Sirius. • Canberra

On-site
AUD 120,000 - 160,000
Cyber GRC Specialist - PV/NV2 Cleared, Canberra
Cyber GRC Specialist - PV/NV2 Cleared, Canberra

Client 1 • Canberra

On-site
AUD 90,000 - 120,000
Cyber Grc Specialist - Pv/Nv2 Cleared (Canberra)
Cyber Grc Specialist - Pv/Nv2 Cleared (Canberra)

Client 1 • Canberra

On-site
AUD 90,000 - 120,000
Cyber GRC Analyst
Cyber GRC Analyst

Client 1 • City of Brisbane

On-site
AUD 110,000 - 160,000
Private health insurance
Generous annual leave entitlements
Annual incentive programme
+5
Cyber GRC Specialist — PV/NV2 Cleared (Canberra)
Cyber GRC Specialist — PV/NV2 Cleared (Canberra)

Client 1 • Canberra

On-site
AUD 110,000 - 150,000
14% superannuation
6 weeks annual leave
Professional development
+2
Cyber GRC Specialist — Gov Security & Compliance Lead
Cyber GRC Specialist — Gov Security & Compliance Lead

Cleared Recruitment • Canberra

On-site
AUD 110,000 - 150,000
14% superannuation
6 weeks annual leave
Mentoring and development
+2
Cyber Governance, Risk & Compliance Specialist
Cyber Governance, Risk & Compliance Specialist

Bespoke Careers • City of Brisbane

On-site
AUD 91,000 - 152,000