Skip to main content
AfterDuty

Director, Security, Information & Privacy (CISO)

Victorian Government · Melbourne, Victoria

Salary
A$240,938 – A$310,385Estimated
Type
Full-time
Posted
Yesterday

Overview

Your incident command and risk assessment skills from policing directly apply to leading cyber security operations.

About this role

Overview

*Work Type:*Fixed-term - Full-time

*Grade:*Grade in advertisement

*Occupation:*Leadership and management

*Location:*Melbourne - CBD and Inner Metro suburbs

*Reference:*VG/EO20046555

Director, Security, Information & Privacy (Chief Information Security Officer)

  • Lead cyber security, information security, privacy and cyber resilience across Victoria Police
  • Provide strategic leadership of the execution of Victoria Police's information security strategies
  • SES-1 – Total Remuneration Package $240,938 to $310,385
  • Up to five-year contract

Reporting to the Director, Chief Information Officer and Assistant Commissioner, Continuous Improvement, Uplift and Technology, this role provides enterprise leadership of Victoria Police's cyber security, information security and privacy functions. You will lead the development and implementation of the organisation's information security strategy, ensuring Victoria Police maintains a strong security posture and meets its regulatory, legislative and operational obligations.

You will be accountable for cyber security operations, security governance, cyber risk management, security incident response, vulnerability management, security assurance, information privacy and organisational cyber resilience. This includes oversight of enterprise security programs, security controls, compliance activities and the integration of security-by-design principles across technology and business initiatives.

As a member of Command, Victoria Police's senior leadership group, you will contribute to organisational strategy and provide whole-of-organisation leadership, ensuring information security, privacy and cyber resilience support operational policing outcomes, organisational integrity and community trust.

Key responsibilities

  • Define strategies, policies, guidelines and initiatives to strengthen Victoria Police's Information Security controls environments with the goal of reducing risk, improving work practices and achieving compliance with relevant external and internal frameworks and standards regimes.
  • Identify, evaluate and report on relevant Information Security risks and ensure that risks and risk mitigation initiatives are effectively governed.
  • Review and assess Information Security controls to ensure the ongoing effectiveness of policies, standards, and control mechanisms.
  • Define security-by-design requirements for hardware, software and services procurement and project implementation. Assess compliance with defined requirements and provide recommendations to project managers.
  • Lead the management of Information Security breach incidents and investigations in collaboration with inter-jurisdictional and Victoria Police's incident response processes and teams.
  • Lead engagement with industry and with suppliers to effectively source and manage Information Security related products and services.
  • Lead engagement and education initiatives to promote Information Security themes and messages across Victoria Police. Be a positive agent for change, promoting necessary mindset shifts in Information Security awareness, professional and personal responsibilities and ways of working.
  • Chair and participate in committees, forums and working groups to establish and influence Information Security thinking and practice at a tactical and strategic level.
  • Report to Victorian and other mandated regulatory bodies on Victoria Police's Information Security posture and compliance with relevant standards and legislation.
  • Provide expert Information Security advice to Director, Chief Information Officer and Assistant Commissioner, Continuous Improvement, Uplift and Technology, senior leadership team and Victoria Police stakeholders.
  • Represent Victoria Police in relevant interjurisdictional and law enforcement sector-wide governance committees, forums and events relating to Information Security.
  • Enga ge with relevant Information Security peers and colleagues in government, law enforcement and industry to stay abreast of, and influence, developments, trends and leading practices.
  • Lead and develop teams by creating a working environment that empowers people to seek challenges, build capability and deliver results, while fostering trust, transparency and accountability.

About you

You are an accomplished cyber security and information security executive with a proven record of leading enterprise security programs and delivering strategic outcomes in large, complex environments. You bring:

  • Extensive experience leading cyber security, information security, privacy and risk management functions.
  • Superior expertise in enterprise and information systems security, including cyber security governance, regulatory compliance and security program management.
  • Demonstrated success implementing cyber security strategies, governance frameworks, policies and initiatives that improve organisational cyber resilience.
  • Strong knowledge of cyber security legislation, standards, policies, ethics and contemporary security practices.
  • Outstanding stakeholder engagement skills, with the ability to negotiate, influence and build consensus with senior executives, government representatives and strategic partners.
  • Exceptional communication skills, including the ability to analyse, interpret and report complex security and compliance information to senior audiences and governance bodies.
  • Strong strategic thinking, analytical capability and judgement, with the ability to anticipate emerging threats, identify risks and drive effective solutions.
  • Proven leadership capability with experience developing high-performing teams and fostering a culture of accountability, collaboration and continuous improvement.
  • Demonstrated commitment to ethical leadership and Victoria Police values.

Requirements and relevant information

  • Relevant postgraduate tertiary qualification is highly desirable.
  • Relevant IT qualification and professional security management certification is highly desirable, such as:
  • • Certified Information Systems Security Professional (CISSP)
  • Certified Information Security Manager (CISM)
  • Certified Information Systems Auditor (CISA)
  • Applicants must be an Australian Citizen, Permanent Resident or hold a valid work permit or visa.
  • The successful candidate will be required to enter into an Executive Officer Contract of Employment for a period of up to five (5) years.
  • The successful candidate will be required to undergo pre-employment checks, including fingerprint checks, misconduct screening and high-risk probity assessments.
  • The successful candidate will be required to obtain and maintain the appropriate National Security Clearance for the position. Australian Citizenship or an approved citizenship waiver is required to obtain this clearance.

Your application must include

  • CV; and
  • A cover letter, no more than two pages, outlining why you are the most suitable candidate for this role.

Applications close 11:59pm Wednesday 9 September 2026

Please Note: All applications must be submitted through the Victorian Government careers website (Careers.vic). Applications will not be accepted via other platforms or email.

For further information on this role please contact: Director Fiona Sparks, Continuous Improvement, Uplift and Technology, via email at [email protected].

We welcome applications from people with disability and aim to support an inclusiv e recruitment experience. If you require this advertisement in an accessible format or would like to discuss adjustments to the recruitment process, please contact Executive Employment via email: [email protected] or on*(03) 8335 8059*.

About Us

Victoria Police has a dedicated workforce of more than 22,000 employees consisting of police, protective services officers, police custody officers, and public service staff.

About security roles for ex-police

Security management, operations and consultancy roles. Years of operational policing — command, incident response, public order — translate directly into corporate security, and employers in this sector actively rate police experience.

See all security jobs in Melbourne

Why this fits a police background

  • Police experience explicitly valued
  • Incident command & response
  • Investigative casework
  • Multi-agency & police liaison
  • Working to legislation & regulation

More security jobs for ex-police