Job Description
Job Title: Senior Cyber Security Governance Analyst
Security Clearance: Negative Vetting Level 1 (NV1)
Duration: Initial 12 months with 1 x 12-month extension
Industry: Information Technology
Functional Expertise: Governance, Risk & Compliance (GRC)
Location of work: ACT
Working arrangements: Onsite
Closing date: 9AM Friday, 28 August 2026
Description:
Our client is seeking a Senior Cyber Security Governance Analyst to support cyber security Governance, Risk and Compliance (GRC) activities. The role will contribute to security considerations, assurance processes and the development of security documentation, while supporting additional requirements as required.
Responsibilities:
- Contributing to solution design for security considerations.
- Review and provide recommendations to develop security requirements.
- Develop communications and documentation for senior executive decision making.
- Support the coordination of security assurance processes including IRAP and penetration testing.
- Lead the development of formal security documentation.
Requirements:
- Must hold a Negative Vetting Level 1 (NV1) security clearance.
- Knowledge of the Information Security Manual, Protective Security Policy Framework and Essential Eight.
- Demonstrated experience and capability performing a cyber security GRC role.
- Demonstrated experience managing stakeholder or client interactions to achieve an outcome.
- Demonstrated experience in developing GRC documentation.
Key Capabilities:
- Cyber security Governance, Risk and Compliance (GRC).
- Security requirements development and review.
- Security assurance processes.
- IRAP and penetration testing coordination.
- Development of formal security documentation.
- Senior executive communications and documentation.
- Stakeholder and client interaction.
Essential Criteria:
- Knowledge of the Information Security Manual, Protective Security Policy Framework and Essential Eight
- Demonstrated experience and capability performing a cyber security GRC role.
- Demonstrated experience managing stakeholder or client interactions to achieve an outcome.
- Demonstrated experience in developing GRC documentation
Desirable Criteria:
- Minimum 5 years’ experience in related roles
How to apply:
Please submit your application including your resume and a completed application form addressing the essential and desirable criteria. Ensure your application highlights your experience and any relevant certifications.