Jobs
My ads
My job alerts
Sign in
Find a job Career Tips Companies
Find

Security risk advisor

Melbourne
Department Of Education
Posted: 22 January
Offer description

About The Role

The Senior Security Risk Advisor provides expert leadership in identifying, assessing and managing technology and information security risks across the Information Security Services (ISS) branch. Working with a high degree of autonomy, the role aligns risk governance and delivery with recognised frameworks (including ISO 31000, VPDSS, VMIA, ISO 27001, NIST, SOC 2 and COBIT). Key outcomes include maintaining a structured risk hierarchy across enterprise‑to‑branch levels; facilitating technical risk assessments and treatment planning; strengthening control maturity and traceability via a security control library; and delivering actionable risk reporting, dashboards, KRIs and KPIs for executives and governance forums. The role also contributes to the design and uplift of key risk procedures such as risk acceptance, exemptions and escalation, and promotes modern, data‑driven risk oversight through digital GRC tooling.


Attributes

Demonstrated capability to operate independently and provide pragmatic, risk‑based advisory support in complex technology and cyber environments. Strong stakeholder engagement and influencing skills, including advising senior leaders and governance forums. Proven facilitation skills for technical risk assessment workshops and embedding risk practices across projects, programs and operational teams. High analytical capability to evaluate mitigations and compensating controls, monitor residual risk and control maturity, and drive timely closure of treatments through structured follow‑ups. Ability to translate technical findings across cloud, identity and access management, application security (including OWASP), vulnerabilities and security operations into clear business impacts and decision options for non‑technical stakeholders. Strong written communication skills, including executive briefings, risk papers and high‑quality dashboards and reporting packs. Continuous improvement mindset with experience improving data quality, automation and scalable risk governance processes.


Desirable Qualifications & Experience

Tertiary qualification (bachelor's degree or diploma) in Cyber Security, Information Technology, Risk Management or a related discipline. Preferably 5–7+ years' experience leading technology and cyber risk management in complex environments. Strong working knowledge and practical application of VPDSS, ISO 31000, ISO 27001, NIST/ISM, COBIT, SOC 2 and VMIA‑aligned governance and assurance expectations, including risk tiering, treatment strategies and control validation approaches.

Experience across security operational and technical domains, including familiarity with SIEM (e.g., Splunk), EDR, SOC/MDR operations and vulnerability management, with an understanding of secure architecture and threat modelling. Experience implementing or enhancing GRC platforms and digital risk oversight tooling (e.g., ServiceNow, ReadiNow, 6clicks), including delivery of executive‑level risk reporting and dashboards.

Desirable industry certifications include CISSP, CISM, CRISC and/or ISO 27001 Lead Implementer/Auditor, alongside formal training in risk and governance frameworks (e.g., ISO 31000, COBIT, NIST, SOC 2).


About The Division

The Information Management and Technology Division (IMTD) supports one of the largest technology networks in Victoria, leading the department's technology, digital capability, business systems and digital transformation. This network consists of schools, corporate and early childhood education (ECE) including more than 1500 government schools, 50,000 teachers and 650,000 students. IMTD applies agile practices focused on user experience, security, integration and designs and delivers solutions on the department's cloud infrastructure services (IaaS), enterprise cloud platforms (PaaS) and software services (SaaS).


About The Department

The department provides a wide range of learning and development support and services, policy leadership, plans for the future of education in Victoria and leads key cross‑sector collaboration. It plays an important system steward role by providing support, guidance, oversight and assurance across early childhood and school education systems and directly providing school education and 50 new early learning centres.


Further Information

For more details regarding this position please see the attached position description for the capabilities to address in application.

The department values diversity and inclusion in all forms—gender, religion, ethnicity, LGBTIQ+, disability and neurodiversity. Aboriginal and Torres Strait Islander candidates are strongly encouraged to apply. For more information about our work, working for the Department, diversity and inclusion and our employment conditions visit the Department website and the Diversity and Inclusion page.

Applicants requiring adjustments can contact the nominated contact person. Information about the Department of Education's operations and employment conditions can be located at For further information pertaining to the role, please contact Allison Thaddeus – Project Manager via email

Preferred applicants may be required to complete a police check and may be subject to other pre‑employment checks. Information provided to the Department of Education will be treated in the strictest confidence.

Please let us know via phone or email if you require any adjustments to ensure your full participation in the recruitment process or if you need the ad or any attachments in an accessible format (e.g., large print) due to any viewing difficulties or other accessibility requirements.

Applications close 11:59pm on Sunday 1st February 2026.

#J-18808-Ljbffr

Send an application
Create a job alert
Alert activated
Saved
Save
Similar job
Junior lawyer – negligence litigation & redress (hybrid)
Melbourne
Department Of Education
Lawyer
Similar job
Lawyer, negligence, litigation and redress unit
Melbourne
Department Of Education
Lawyer
Similar job
Principal lawyer and manager, negligence, litigation and redress unit
Melbourne
Department Of Education
Lawyer
Similar jobs
Department Of Education recruitment
Department Of Education jobs in Melbourne
jobs Melbourne
jobs Victoria
Home > Jobs > Security Risk Advisor

About Jobstralia

  • Career Advice
  • Company Reviews

Search for jobs

  • Jobs by job title
  • Jobs by sector
  • Jobs by company
  • Jobs by location

Contact / Partnership

  • Contact
  • Publish your job offers on Jobijoba

Legal notice - Terms of Service - Privacy Policy - Manage my cookies - Accessibility: Not compliant

© 2026 Jobstralia - All Rights Reserved

Send an application
Create a job alert
Alert activated
Saved
Save