Skip to main content
AfterDuty

GRC Consultant

CyberCX · Canberra, Australian Capital Territory

Type
Full-time
Posted
19 days ago

Overview

Your experience managing risk and ensuring compliance in high-pressure policing environments translates directly to this governance role.

About this role

About CyberCX

CyberCX is Australia and New Zealand’s leading cyber security services provider, trusted by private and public sector organisations to help manage cyber risk, respond to incidents, and build resilience in an increasingly complex threat landscape.

With a workforce of over 1,400 professionals, CyberCX delivers end-to-end cyber capabilities across consulting and advisory, governance, risk and compliance, incident response, penetration testing, cloud and infrastructure solutions, identity and access management, and managed security services.

As a GRC Consultant, you’ll have the opportunity to work in Multi-Disciplinary Teams (MDT) that cover our end-to-end services, solving our clients most challenging cyber security problems across diverse technology environments. You’ll help our clients proactively Identify, Protect, Detect, Respond, and Recover from threats.

What You'll Do

  • Support complex, cyber security projects in the Governance, Risk and Compliance domain
  • Work with our customer base to assist them in identifying and effectively managing cyber security risk.
  • Develop, implement and maintain the Security SRMP, SSP’s, SRAs (assist with) documentation, supporting certification and accreditation for the service being delivered.
  • Maintain and improve the system security documentation package.

What You'll Bring

  • Broad knowledge across a range of compliance frameworks (ISO 27001, PCI DSS, NIST, GDPR, etc.)
  • Experience with ISM, Essential Eight, DSPF, or PSPF is highly desirable.
  • Experience working with Defence or the Defence Industry preferred
  • Demonstrated experience in developing security documentation such as Security Risk Management Plans (SRMP), and System Security Plans (SSP).
  • Minimum 12 months of experience dealing with a diverse range of Information Technology & Communications projects or challenges.
  • Experience with the ISM or implementing and/or auditing an ISO 27001 ISMS.
  • Networks and Systems Administrators who have experience in implementation of complex systems wishing to shift focus to GRC.

Due to the nature of the work, an*NV1* clearance is required.

Why CyberCX?

  • Joining CyberCX means being part of a passionate, purpose-driven team working to make Australia and New Zealand the safest places to connect online. You’ll enjoy:
  • Access to industry-leading experts and professional development opportunities.
  • A supportive, flexible, and collaborative workplace culture.
  • Competitive salary and benefits package.

Ready to make an impact?

Apply now and join a team that’s helping shape the future of cyber resilience.

We kindly request no agency submissions for this role. Unsolicited CV’s will not be accepted, and no fees will be payable.

About cyber security & digital forensics roles for ex-police

Cyber security, digital forensics and incident-response roles. DMIs, cybercrime investigators and digital forensics officers bring evidential discipline and investigative judgement that DFIR and security teams struggle to hire.

See all cyber security & digital forensics jobs in Canberra

Why this fits a police background

  • Police experience explicitly valued
  • Incident command & response
  • Working to legislation & regulation

More cyber security & digital forensics jobs for ex-police

  • Cyber Security Officer

    Brennan IT · Canberra

    Full-time

    Your experience with evidence handling and investigative discipline translates directly into GRC audit and assurance work.

    Posted 3 days ago

  • eSafety - Cyber Security Analyst, APS 6

    Australian Communications and Media Authority · Canberra

    Full-time

    Your digital forensics and cybercrime investigative experience gives you an edge in threat detection and incident response.

    Posted 4 days ago

  • Senior Network Security Engineer

    Airservices Australia · Canberra

    Full-time

    • Work with industry-leading network security technologies in a complex, always-on environment where your expertise contributes to secure, resilient and high-performing network services • Fixed term contract|2 Years • Brisbane, Canberra, Melbourne or Sydney Summary Join Airservices Australia's…

    Posted 4 days ago

  • Cyber Security Analyst

    SKNG Services · Canberra

    Contract

    Key information • Estimated Start Date: 01/09/2026 • Initial contract duration: 12 months • Extensions term: 12 months • Location: ACT • Working arrangements: Onsite • Security clearance: NV1 Why SKNG representation? When you choose SKNG, you are making a strategic investment in your professional…

    Posted 5 days ago