Reporting to the Program Director, you will be responsible for leading the technical planning, design, and development of highly complex security architectures and end-to-end architectural alignment for the Cyber Security Program.
Key responsibilities
- Lead the design and architecture of cyber security solutions across cloud, network, endpoint, and application layers.
- Evaluate emerging technologies, tools, and platforms for improving security capabilities.
- Define and maintain security architecture principles and reference models.
- Collaborate with DevOps, Engineering, and Risk teams to embed security controls into systems and processes.
- Conduct threat modelling, security assessments, and architecture reviews.
- Provide subject matter expertise in areas such as identity, access, encryption, and secure data flows.
- Support the development of secure coding practices and DevSecOps pipelines.
- Oversee and lead the assessment, analysis, development, publication, implementation and compliance of program/project(s) deliverables and related standards and procedures at an enterprise level.
- Specify and design large or complex systems based on appropriate design standards, methods, and tools, consistent with agreed enterprise and solution architectures.
- Oversee and lead the design and implementation of cyber security solutions, ensuring alignment with best practice IM/ICT design and delivery frameworks.
- Fulfil the responsibilities of this role in accordance with Queensland Public Service (QPS) values
- Follow defined service quality standards, occupational health and safety policies and procedures relating to the work being undertaken to ensure high-quality, safe services and workplaces.
- Follow defined service quality standards, occupational health and safety policies and procedures relating to the work being undertaken to ensure high-quality, safe, services and workplaces.
Is this opportunity for you?
To be successful in this role, you will have practical experience, including exposure to industry best practice frameworks for large-scale and complex delivery of Cloud and Cyber Security Architecture Solutions.
The ideal candidate will have demonstrated experience and knowledge in architecting, designing, and building enterprise security systems across the following:
- 5+ years in cyber or cloud architecture or related technical security roles
- Strong knowledge ofcloud security architecture and secure cloud design, particularly acrossAmazon Web Services (AWS) and/or Microsoft Azure, including cloud landing zones, security architecture patterns, cloud governance and shared responsibility models.
- Strong understanding of security principles acrosscloud, networks, Identity and Access Management (IAM), DevSecOps, application security and data security.
- Security controls such as access control, encryption management, firewalls, certificate/key lifecycles, authentication technologies such as Microsoft EntraID, and Cloud landing zones in relation to Azure and AWS
- Experience with industry frameworks: SABSA, ISO 27001, ISO 27003, and Australian Cyber Security Centre (ACSC) mitigation strategies e.g., Multi-Factor Authentication and Vulnerability Management Systems
- Security governance and policy
- Business driven architecture and security design
- Ability to influence and communicate security concepts to both technical and non-technical audiences
- Background in security engineering or infrastructure/cloud architecture, risk mitigation, Cloud and Network Security, SIEM, Data Loss Prevention, Perimeter Security/Remote Access, API Management and architectural methodologies to Prevent, Detect and Protect solutions a plus.
- Certifications desirable: TOGAF, CISSP, SABSA, AWS Certified Security or equivalent