Cyber Security Assessor

Job description

Your new company

Join a leading Victorian State Government Agency delivering a critical Cyber Resilience Program aimed at strengthening cyber security capabilities across a large and complex environment. This high-profile initiative supports strategic cyber resilience objectives and addresses the increasing cyber threats faced by educational institutions. You'll work alongside experienced security professionals to help drive security uplift across enterprise systems and services.


Your new role

As a Cyber Security Assessor, you will play a key role in assessing cyber security risks, developing security documentation, and providing expert security advice to stakeholders across a range of projects and technology environments. Key responsibilities include:
  • Conduct security risk assessments using frameworks such as VPDSS, PSPF, ISM, NIST, Essentials Eight and SOC2.
  • Develop Security Risk Assessment Reports, Security Risk Management Plans (SRMPs), and System Security Plans (SSPs).
  • Perform third-party and vendor security risk assessments (TPRM) and produce risk assessment reports.
  • Review and update security controls, policies, standards, and procedures, ensuring alignment with industry and government frameworks.
  • Provide security-by-design guidance during project and solution design activities.
  • Work closely with project teams, system owners, and business stakeholders to develop and track risk treatment plans.
  • Audit and report on vulnerability management, privileged access controls, and remediation activities.
  • Provide expert advice on cyber security policies, standards, and best practices.
  • Support governance activities through risk reporting, mitigation tracking, and compliance monitoring.


What you'll need to succeed

To be successful in this role, you will have:
  • Proven experience conducting cyber security risk assessments and security assurance reviews.
  • Strong knowledge of government and industry security frameworks including VPDSS, PSPF, ISM, NIST, Essentials Eight, and/or SOC2.
  • Experience developing security assessment reports, security management plans, and security documentation.
  • Demonstrated experience in third-party risk management (TPRM) and security reporting.
  • Strong understanding of security controls, risk management methodologies, and remediation planning.
  • Experience reviewing, developing, and maintaining cyber security policies, standards, and procedures.
  • Knowledge of vulnerability management and security governance practices.
  • Understanding of Microsoft technologies including Azure, Microsoft 365, and Entra ID from a security perspective.
  • Excellent stakeholder engagement, communication, and report-writing skills.
  • ICT or cyber security background with experience working across complex technology environments.
  • Certifications like CISSP, CISM, CRISC, ISO 27001 Lead Implementer/Lead Auditor highly regarded


What you'll get in return

  • Work within a highly visible and strategically important government initiative.
  • Collaborative and supportive team environment.
  • Flexible working arrangements and a strong focus on professional development


What you need to do now

If you're interested in this role, click 'apply now' to forward an up-to-date copy of your CV, or call us now.

If this job isn't quite right for you, but you are looking for a new position, please contact us for a confidential discussion on your career.



Hays appreciates the importance of workforce diversity and inclusion. We are an equal-opportunities employer and have policies, procedures and relationships in place to promote our understanding of all forms of diversity.


LHS 297508 #3008205 - Prachi KalyanArora

Login is optional, you may send application via email

Login to Save Login to Apply

Get AI to assess your suitability to this job

Assess My Fit with AI Beta — Free during trial period

Login to upload your resume and get an instant match score, strengths, and gaps.


Or use your preferred AI chat tool manually:

Use AI chat of your choice: ChatGPT, Gemini, Claude — and:

  1. Paste this into the prompt:
    I am a jobseeker. Below is a job posting. Please: 1. Give a match score (0–100) based on my resume vs the job requirements 2. List my 3–5 key strengths that align with this role 3. List 2–3 areas to improve or gaps to address before applying 4. Give a one-sentence verdict: should I apply, apply with adjustments, or skip? Job posting URL: https://australia.job-q.com/jobs/detail/cyber-security-assessor-6715 After reading the job, ask me to upload or paste my resume.
  2. Upload your resume in the same chat.

Similar Jobs

Identity & Security Enterprise Architect

A leading enterprise is seeking an experienced Identity & Security Enterprise Architect...

WA - Perth

Contractor

Hays

Cybersecurity Analyst – Microsoft

Hays are engaged by a purpose-led brand within the NSW Government, who...

NSW - Sydney CBD

Full Time

Hays

GRC Consultant

You will be working for a Telco company based in Sydney CBD....

NSW - Sydney CBD

Contractor

Hays

Job Summary

  • Published on: 16 Jul, 2026
  • Category: Cyber Security
  • Vacancy: 1
  • Job type: Contractor
  • Salary:
  • Location: VIC - Melbourne CBD
  • Job Nature: Contractor

Company Details

  • Name: Hays
  • Location: VIC - Melbourne CBD