Jobiglo

No results.

This job is no longer available

This job expired on 15/09/2026. It no longer accepts applications.

Cyber Security Analyst – Assessment & Risk (Hybrid, Melbourne)

Hays · Victoria

Contract Hybrid 🇬🇧 English
VPDSS PSPF ISM NIST Essentials Eight SOC2 Microsoft 365 Entra ID

Job description

About the role

Join a leading Victorian State Government agency delivering a critical Cyber Resilience Program. This hybrid, six‑month contract role focuses on assessing cyber security risks, producing security documentation, and advising stakeholders across a complex educational environment.

Key responsibilities

  • Conduct security risk assessments using frameworks such as VPDSS, PSPF, ISM, NIST, Essentials Eight and SOC2.
  • Develop Security Risk Assessment Reports, Security Risk Management Plans (SRMPs) and System Security Plans (SSPs).
  • Perform third‑party and vendor security risk assessments (TPRM) and produce related reports.
  • Review and update security controls, policies, standards and procedures to align with government and industry frameworks.
  • Provide security‑by‑design guidance during project and solution design activities.
  • Collaborate with project teams, system owners and business stakeholders to develop and track risk treatment plans.
  • Audit and report on vulnerability management, privileged access controls and remediation activities.
  • Support governance through risk reporting, mitigation tracking and compliance monitoring.

Required profile

  • Proven experience conducting cyber security risk assessments and security assurance reviews.
  • Strong knowledge of government and industry security frameworks (VPDSS, PSPF, ISM, NIST, Essentials Eight, SOC2).
  • Experience in third‑party risk management and security reporting.
  • Understanding of Microsoft Azure, Microsoft 365 and Entra ID from a security perspective.
  • Relevant certifications (CISSP, CISM, CRISC, ISO 27001 Lead Implementer/Lead Auditor) highly regarded.

Required skills

  • VPDSS framework
  • PSPF framework
  • ISM framework
  • NIST framework
  • Essentials Eight
  • SOC2 framework
  • Microsoft Azure security
  • Microsoft 365 security
  • Entra ID security

What we offer

  • Work on a high‑visibility government initiative.
  • Collaborative environment with experienced security professionals.
  • Hybrid work arrangement in Melbourne.

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec Hays.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.
Le contrat proposé est un Contract basé à Victoria.

Why are you reporting this job?

Thank you for your report. We will review this job.

A question about this job?

Ask it here: you will get the full job summary by e-mail, right away.

💬 Chat with us on Telegram

Published 2 months ago

44 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

Hays

Victoria