Skip to main content
AfterDuty

Cyber Security Compliance Analyst

Thales · Sydney, New South Wales

Type
Full-time
Posted
5 days ago

Overview

Your experience working to strict regulatory frameworks like PACE and CPIA gives you a natural grounding in compliance and assurance, which is exactly what this cyber security GRC role demands. You've spent years maintaining accurate records, managing risk registers, and engaging with diverse stakeholders under pressure, so coordinating audits and driving adherence to standards like ISO 27001 will feel familiar. The role is a development opportunity, so your proven attention to detail and process-oriented mindset will let you build the specific cyber security knowledge on the job.

About this role

At Thales, we know technology has the ability to make our world more secure, sustainable, and inclusive – and that it’s all driven by human intelligence.

Because it takes human intelligence to build and power the systems and solutions that people depend on every day. So we stay curious and make space for diverse points of view. We share what we know and we challenge what’s possible.

From manufacturing and engineering to cybersecurity and space, we’re driving progress in some of the world’s most important industries – and working together to build a future we can all trust.

Our Benefits

  • Competitive remuneration (Insert WAGE EA) + Super + Profit Share
  • ThalesFlex – Hybrid work environment
  • Fitness Passport Discount – Access to a network of Gyms across AUS as cheap as $14.95 P/W
  • Employee discounts with a number of affiliates (Travel, Car hire, Tech, Medical Insurance)
  • Modernised Paid Parental Leave
  • Veterans Leave
  • Novated Lease options
  • Personal & professional training development opportunities
  • Sonder – Wellbeing & Support Partner

Our Team*

This role is part of our corporate team, a central hub for Thales Australia. It’s where our shared services – think finance, legal, HR, procurement – come together to make sure all teams across Australia have access to the business services they need. Cross-functional collaboration helps us build out Thales’ capabilities – and helps us open up new career opportunities for employees all across the business.

Your role

The successful candidate will play a key role in coordinating audits, maintaining risk registers, supporting compliance assessments, improving GRC processes, and fostering a culture of cyber security awareness and accountability.

This role is ideal for a proactive and detail-oriented individual seeking to develop their Cyber Security Governance, Risk and Compliance (GRC) expertise while contributing to the ongoing maturity of the organisation's cyber security governance, risk, compliance, and assurance programs. The position requires strong communication and stakeholder engagement skills, a high level of attention to detail, the ability to self-manage competing priorities, and a demonstrated capability to establish and improve business processes.

  • Contribute to the continuous operation and enhancement of the cyber security governance framework within Thales Australia, with a particular emphasis on Business Managed Networks (BMNs)
  • Support the monitoring of adherence to internal policies, regulatory requirements, and industry standards such as Thales Group policies, ISO 27001, NIST, ISM/Essential Eight, and SOCI
  • Collaborate with business stakeholders to document systems and services they manage, and assist in implementing mandatory cyber security measures
  • Manage the tracking and reporting of compliance obligations, the effectiveness of controls, and remediation efforts, especially concerning BMNs
  • Maintain the accuracy and currency of relevant inventories, registers, and records

Your experience*

  • Excellent written and verbal communication skills, with the ability to engage and adapt messaging for diverse stakeholders including technical teams, executives, government, and suppliers
  • Strong organisational and time management abilities to prioritise competing tasks and deliver results independently
  • High attention to detail and commitment to accuracy, supporting cyber security audits, risk assessments, and compliance activities
  • Experience with documenting, developing, and improving governance, risk, and compliance (GRC) processes, including familiarity with GRC platforms like ServiceNow, 6clicks, Archer, or AuditBoard
  • Proactive and process-oriented mindset with the initiative to drive activities to completion, resolve issues, and remove blockers
  • Skilled at building trust-based stakeholder relationships through collaboration, effective planning, risk management, and continuous improvement of processes
  • Desirable knowledge and experience of cyber security frameworks and standards such as:
  • ISO 27001
  • NIST Cybersecurity Framework (CSF)
  • Information Security Manual (ISM)
  • Essential Eight
  • CIS Controls
  • SOCI

A Defence security clearance is required for this role, applicants must be Australian citizens and eligible to obtain and maintain an appropriate clearance.

Additional information with regards to clearances is available from the Australian Government Security Vetting Agency website http://www.defence.gov.au/AGSVA/. In some cases, individuals who hold a current clearance from a foreign government may be eligible to have this clearance recognised by the Australian Government and be eligible for this role. The Australian Defence Trade Controls Act (DTCA) is applicable and as such, your nationality may be a factor in determining your suitability for this role.

#LI-AM1

It’s easy to dismiss the perfect opportunity if you don’t see yourself as the perfect fit. If this role feels right – no matter your background or personal circumstances – please introduce yourself or join our community. We’re committed to supporting a diverse workplace, and that starts here.

We’re proud to be endorsed by WORK180 as an Employer for All Women, but we know there’s always more we can do. We’ll continue to foster industry partnerships, employee resource groups (ERGs) and development opportunities to make Thales a genuinely equitable employer, for everyone.

Read more about our WORK180 endorsement.

About cyber security & digital forensics roles for ex-police

Cyber security, digital forensics and incident-response roles. DMIs, cybercrime investigators and digital forensics officers bring evidential discipline and investigative judgement that DFIR and security teams struggle to hire.

See all cyber security & digital forensics jobs in Sydney

Why this fits a police background — match score 65/100

  • Police experience explicitly valued
  • Risk & threat assessment
  • Working to legislation & regulation

More cyber security & digital forensics jobs for ex-police

  • Your background running operational units and coordinating multi-agency responses maps directly onto leading national support functions and ensuring consistent, secure operations across multiple sites. You're used to setting clear accountabilities, managing risk, and driving continuous improvement, which is exactly what this role requires. Your experience with compliance and governance, from PACE to internal procedures, means you can bring structure and discipline from day one.

    Posted 2 days ago

  • Integrity and Security Analyst

    NSW Government · Sydney

    Full-time

    A$133,348 – A$146,945Estimated

    This role directly leverages your operational intelligence experience from policing — you'll produce intelligence products that identify security risks and inform frontline decisions, just as you did under the National Intelligence Model. Your ability to assess threats, manage multi-agency coordination, and apply legislative frameworks like PACE or RIPA is exactly what the NSW Electoral Commission needs to safeguard election integrity. The requirement for 10+ years in law enforcement confirms this is a role built for your background, not a sideways move into a completely new field.

    Posted 5 days ago

  • Full-time

    Your investigative experience from policing—evidence handling, chain of custody, case file management, and conducting structured interviews—maps directly onto the core responsibilities of this insider threat role. You are used to working with sensitive information, maintaining confidentiality, and producing defensible reports for multiple stakeholders, which is exactly what this position demands. The analytical and risk-assessment skills you developed through intelligence-led policing and managing complex investigations will let you hit the ground running in identifying and mitigating insider

    Posted 7 days ago