Cyber GRC Analyst

Contract Type:

Permanent

Location:

Canberra, Australian Capital Territory, Australia

Industry:

Information & Communication Technology (ICT)

Salary:

$183,680 - $183,680 Annual

Contact Email:

joanne@whizdom.com.au

Date Published:

21-Aug-2026

Reference Number:

V-66009

Cyber GRC Analyst

Seeking a Cyber GRC Analyst with Knowledge of PSPF, ISM, Essential 8, NIST.

The Cyber GRC Specialist supports the organisations information system authorisation activities by embedding governance, risk, and regulatory compliance practices that are aligned to Australian Government frameworks – particularly the Information Security Manual (ISM), Protective Security Policy Framework (PSPF), and  Essential 8. Working under the Cyber GRC Manager and as part of the broader cybersecurity team, this role supports the implementation, monitoring, and continuous improvement of security controls to ensure compliance, maturity uplift, and informed risk management is in line with organisational objectives and Government standards.

Responsibilities
  • Develop, deliver and maintain security authorisation documentation (e.g., System Security Plans, Security Risk Management Plans, and Cyber Incident Response Plans) to support Government processes.
  • Implement security standards, ISM, Essential 8, NIST, etc.
  • Provide cyber security advice that assists with the monitoring of infrastructure components, the design of infrastructure, identify areas for improvements and assist with the implementation of upgrades, or enhancements as required.
  • Conduct cyber security risk assessments to identify and evaluate potential threats and vulnerabilities.
  • Provide SME recommendations and advice on compliance and regulatory requirements to support continuous improvement of cyber security posture.
  • Assist with the development of comprehensive security policies to address and mitigate risks.
Skills and Abilities
  • Minimum 3 years working as a Cyber Security or GRC Analyst.
  • Knowledge of security standards and frameworks such as PSPF, ISM, Essential 8, NIST.
  • Ability to identify risks, provide risk reduction strategies, and collaborate with business teams to secure stakeholders’ approval and support.
  • Experience working within an enterprise security environment.
  • Previously worked in heavily regulated environments such as federal government, telco, energy, etc.
  • Excellent communication skills and ability to communicate with stakeholders varying in seniority and technical understanding.
  • Desirable: ISO27000 series, NIST 800 series, CIS.
Permanent role - $164k + Super 

Security Required:  NV1 or NV2 Security Clearance required 

Location  - Canberra

How to Apply - Please upload your resume to apply. Candidates will need to be willing to undergo pre-employment screening checks which may include, ID and work rights, security clearance verification and any other client requested checks

Closing date: Thursday 27 August by 9am

Call Joanne Finchett on 0480 002454 or email Joanne@whizdom.com.au for any further information

 

 
Apply Now

Share this job

Interested in this job?
Save Job
Create Alert

Similar Jobs

SCHEMA MARKUP ( This text will only show on the editor. )