Join a high-performing cyber security team supporting critical government systems and initiatives. We are seeking multiple experienced Cyber Security Risk Assessors to contribute to the security posture of a large Federal Government department. This is an exciting opportunity to work across modern cloud platforms, legacy environments, AI technologies, and complex ICT systems while ensuring compliance with Australian Government security frameworks.
The Opportunity As a Cyber Security Risk Assessor, you will be responsible for conducting comprehensive security risk assessments and providing expert advice to support secure system design and accreditation activities. Working within a fast-paced ICT cyber security environment, you will collaborate with technical and non-technical stakeholders to identify risks, recommend mitigation strategies, and develop key security documentation.
Key Responsibilities
- Conduct security risk assessments for ICT systems and applications in line with PSPF, ISM, and Essential Eight requirements.
- Review, develop, and maintain security documentation, including System Security Plans (SSPs) and SSP Annexes (SSP-As).
- Assess security risks across Azure cloud environments, legacy systems, AI technologies, and other complex ICT platforms.
- Provide cyber security advice relating to system and application design.
- Present security risks, recommendations, and security artefacts to technical teams and senior executives.
- Collaborate with cross-functional teams to implement security controls and ensure compliance with Australian Government standards.
- Identify opportunities to strengthen the department's overall cyber security posture.
- Support issue resolution and provide guidance on security-related matters.
- 3-5 years' experience conducting cyber security risk assessments within a Government environment.
- Demonstrated experience assessing Azure Cloud, legacy ICT systems, AI technologies, and complex enterprise environments.
- Strong knowledge of the Protective Security Policy Framework (PSPF), Information Security Manual (ISM), and Essential Eight.
- Experience engaging with both technical and non-technical stakeholders to communicate cyber security risks and recommendations.
- Excellent written and verbal communication skills, including preparing and delivering executive-level briefings.
- Sound understanding of networking infrastructure and associated security considerations.
- The ability to work independently, manage competing priorities, and deliver high-quality outcomes under pressure.
- Strong analytical, problem-solving, and stakeholder management skills.
- Understanding or experience working with Operational Technology (OT) environments.
- Must be an Australian Citizen.
- Must be able to obtain and maintain a Negative Vetting Level 1 (NV1) Security Clearance.
- 40 hours per week.
- Flexible location arrangements available across Australia.
- Successful candidates may work from alternative locations, provided they can attend the Canberra office when required or work from their nearest regional office in accordance with departmental attendance requirements.
If this sounds like a role for you, apply now! Or contact Alan Kocjman for further information - alan.kocjman@peoplebank.com.au
Peoplebank and Leaders IT are committed to creating a diverse and inclusive workplace where everyone belongs. We welcome applications from people of all backgrounds, identities, and experiences. If you need adjustments to the recruitment process due to your circumstances, please let us know—we’re here to support you.




