Vulnerability Assessor

  • Australia
  • Australian Capital Territory
  • Contract
  • Negotiable

  • Contract until 30 June 2026 with likely extensions
  • ASAP Start
  • NV1 security clearance required

Position Overview
The Technical Vulnerability Assessor plays a critical role in strengthening cyber security assurance across complex ICT environments. This position is responsible for identifying, assessing and clearly communicating cyber security risks that systems and technologies may present to operations, information assets and organisational reputation. Operating with independence and objectivity, the role undertakes detailed technical vulnerability assessments and penetration testing activities, providing evidence-based risk insights to senior decision-makers while maintaining a clear separation from risk approval functions

Key Duties

  • Conduct technical vulnerability assessments across diverse ICT systems and environments.
  • Perform penetration testing across network infrastructure, web applications, APIs and cloud platforms.
  • Undertake passive and active scanning to identify security weaknesses.
  • Execute exploit-based testing to validate vulnerabilities and assess potential impact.
  • Assess system implementations against security requirements and recognised best practice standards.
  • Prepare high-quality technical reports outlining identified vulnerabilities, risk impact, likelihood and recommended mitigation strategies.
  • Clearly communicate complex cyber security risks in a concise and actionable manner to senior stakeholders.
  • Provide considered technical advice on higher-risk proposals where required.

Skills and Experience Required

  • Demonstrated experience as a Penetration Tester or Technical Security Assessor.
  • Strong multi-domain technical testing capability across network environments, web applications, APIs and cloud platforms.
  • Experience in both automated and manual testing methodologies.
  • Sound understanding of vulnerability assessment frameworks and penetration testing methodologies.
  • Proven ability to translate complex technical findings into clear, risk-focused reports for senior decision-makers.
  • Strong analytical skills with high attention to detail.
  • Ability to work independently while maintaining professional integrity and assessment objectivity.
  • Relevant industry certifications such as Offensive Security Certified Professional, CREST, Certified Ethical Hacker, GIAC Penetration Tester, GIAC Web Application Penetration Tester, AWS Security Specialty or equivalent (desirable).

Application Process
If you would like to apply, please contact Emma on 0480 804 408 or email emma.gibbons@talentinternational.com
For over 30 years Talent has been redefining the contracting experience with industry leading support, exclusive contractor benefits & a world-class digital platform ENGAGE to access it all. Apply today to see how we can elevate your career

Apply now

Submit your details and attach your resume below. Hint: make sure all relevant experience is included in your CV and keep your message to the hiring team short and sweet - 2000 characters or less is perfect.

SOC Analyst

  • New Zealand
  • Auckland
  • Permanent
  • Negotiable

About the role

This role suits an analyst ready to step up – taking responsibility for investigations, supporting response coordination, and contributing to SOC maturity.

What you’ll be doing

  • Lead investigation of security alerts and incidents
  • Coordinate and support incident response
  • Identify gaps and improvements in detection and response
  • Contribute to playbooks and continuous improvement
  • Support on-call operations

What we’re looking for

  • Proven experience in a SOC role
  • Strong incident investigation and response capability
  • Experience with SIEM, EDR and cloud platforms
  • Clear communicator who works well across teams and is highly adaptable

Apply now

Submit your details and attach your resume below. Hint: make sure all relevant experience is included in your CV and keep your message to the hiring team short and sweet - 2000 characters or less is perfect.

Cyber Security Specialist

  • Australia
  • Australian Capital Territory
  • Contract
  • Negotiable
  • Initial 6-month contract commencing 16 March 2026 (no extension term)
  • Location: ACT – onsite, 37.5 hours per week
  • Security Clearance: Must be able to obtain and maintain Baseline clearance
  • Key Skills: Commonwealth security frameworks (PSPF, ISM), Essential Eight uplift, ATO documentation, Cyber GRC leadership

An opportunity is available for an experienced Cyber Security Specialist to lead the implementation of a high-profile Cybersecurity Strategy within a Federal Government environment. This role will drive critical uplift initiatives across governance, risk, compliance, and operational security, ensuring ICT systems meet stringent regulatory and assurance standards. You will play a pivotal leadership role in strengthening security posture, improving Essential Eight maturity, and delivering Authority to Operate outcomes across enterprise systems.

Your duties will include:

  • Leading the Cybersecurity Strategy Implementation program, including Essential Eight uplift and policy enhancement initiatives
  • Developing ICT Certification and Accreditation artefacts to achieve and maintain Authority to Operate (ATO)
  • Overseeing vulnerability management, threat modelling, and risk assessment activities
  • Embedding security requirements into new and existing ICT projects in collaboration with architects and stakeholders
  • Providing executive reporting, risk updates, and compliance insights to senior leadership
  • Mentoring team members and fostering a strong cybersecurity culture across ICT and business units

Skills and Experience we are looking for:

  • Experience in a cybersecurity leadership role within Commonwealth Government environments
  • Deep knowledge of PSPF, ISM, Essential Eight, and whole-of-government security frameworks
  • Demonstrated experience producing security documentation including SRMP, SRA, SSP (including Annex A) and SOPs
  • Proven capability in implementing security controls, compliance measures, and risk mitigation strategies
  • Strong stakeholder engagement skills, with the ability to influence executives and technical teams
  • Relevant tertiary qualifications in ICT/Cyber Security and industry certifications such as CISSP, CISM, CCSP, OSCP, or SANS GCED (desirable)

For over 30 years Talent has been redefining the contracting experience with industry leading support, exclusive contractor benefits & a world-class digital platform ENGAGE to access it all. Apply today to see how we can elevate your career

Apply now

Submit your details and attach your resume below. Hint: make sure all relevant experience is included in your CV and keep your message to the hiring team short and sweet - 2000 characters or less is perfect.

Security GRC Consultant

  • Australia
  • Sydney
  • Permanent
  • Negotiable

Security GRC Consultant
Permanent Opportunity
Salary, $80,000 – $110,000 inclusive of superannuation
Location, onsite 5 days per week
Security Clearance, Must hold current NV1 clearance

About the Opportunity

Our client is a leading global consultancy with deep capabilities across digital, cloud, security and transformation services. With a strong presence in the Australian market and a broad portfolio of government and enterprise engagements, they partner with organisations to deliver complex, high impact programs in secure and regulated environments.

Due to continued growth within their public sector practice, they are seeking a Security Assessment & Authorisation Consultant to join on a permanent basis. This role is ideal for a security professional experienced in risk management, accreditation and compliance within Australian Government frameworks.

Please note, candidates must hold current NV1 security clearance to be considered.

About the Role

As a Security Assessment & Authorisation Consultant, you will perform security risk management and assurance activities across systems, applications and third party services. You will ensure systems meet required security standards, risks are assessed and documented appropriately, and Authority to Operate, ATO, is obtained and maintained in line with government requirements.

You will work closely with system owners, architects, delivery teams, cyber specialists and compliance stakeholders to guide initiatives through the A&A lifecycle and ensure alignment with Australian Government frameworks and internal governance standards.

Key Responsibilities

Security risk management

* Conduct risk assessments to identify, analyse and mitigate security risks across projects and operational environments
* Facilitate risk workshops with key stakeholders to capture and validate security risks
* Monitor and report on risk status, treatment progress and residual risk to governance forums
* Ensure security controls are implemented and tested effectively
* Support day to day coordination of security deliverables alongside program leads

Security assessment and authorisation

* Execute security authorisation processes in line with the ISM and client specific security requirements, including RMF activities
* Prepare and maintain risk assessments, accreditation documentation and supporting artefacts
* Ensure compliance with required security controls across governance, identify, protect, detect and respond domains

Maintaining compliance

* Develop and maintain security documentation including policies, procedures and incident response plans
* Support compliance with Australian Government security requirements, including PSPF and ISM obligations
* Maintain accurate records of security authorisations, exceptions and audit evidence

Stakeholder engagement and reporting

* Liaise with Authorising Officers, system owners and project teams to ensure documentation meets required standards
* Provide guidance on ISM, Essential Eight and department specific controls during delivery
* Support the implementation and ongoing management of GRC tooling
* Track and report on authorisation status, deliverables and compliance gaps
* Assist with continuous monitoring and audit activities

Skills and Experience

* Experience in security risk management and system accreditation within Australian Government environments
* Strong understanding of PSPF, ISM and NIST aligned principles, govern, identify, protect, detect, respond
* Deep knowledge of Essential Eight requirements in classified or controlled environments
* Experience preparing and managing accreditation packages
* Strong documentation skills with high attention to detail
* Ability to interpret and apply ISM controls in practical delivery scenarios
* Experience with collaboration platforms such as SharePoint or Confluence
* Familiarity with GRC platforms and compliance tracking tools
* Strong stakeholder engagement and communication skills

Qualifications

* Bachelor’s degree in Cybersecurity, Information Technology or related discipline
* Certifications such as CISSP, CISM, CRISC, IRAP Assessor or equivalent highly regarded

Security Clearance Requirement

* Must hold current NV1 security clearance, this is mandatory
* Australian citizenship required
* Candidates without NV1 clearance will not be considered

What’s on Offer

* Permanent role within a globally recognised consultancy
* Salary range $80,000 – $110,000 inclusive of superannuation
* Opportunity to work on high profile, mission critical government programs
* Clear career progression pathways within a structured consulting environment

If you are an NV1 cleared security professional looking to step into a permanent consulting role where you can influence complex government environments, this is a strong opportunity to consider.

Apply now

Submit your details and attach your resume below. Hint: make sure all relevant experience is included in your CV and keep your message to the hiring team short and sweet - 2000 characters or less is perfect.

Cyber Strategy and Capability Analyst

  • Australia
  • Adelaide
  • Contract
  • Negotiable
  • Cyber Strategy and Capability Analyst
  • Initial contract up until March 2027 with possibility of extension
  • Adelaide Based Position

We are seeking experienced Cyber Security Advisers to shape and deliver a Cyber Security Plan, Roadmap and Capability Model. Lead strategic uplift across architecture, risk and governance, partner with stakeholders, and strengthen cyber resilience aligned to national strategy.

Responsibilities:

  • Participate in the development of the Cyber Security Plan and Roadmap to proactively address emerging threats and align with strategic objectives. This includes supplementary security strategies such as audit logging, identity and access management, digital forensics.
  • Support the development and implementation of a Cyber Security Capability Model as the single reference point describing the breadth, depth and state of the organisation’s cybersecurity capabilities across people, processes, and technologies.
  • Partner with stakeholders to deliver strategic guidance and direction as part of supporting strategies, plans and roadmaps, in line with the Cyber Security Plan and Roadmap.
  • Support the organisations’s participation in broader Whole-of-Government cyber security engagements, particularly in relation to the execution of the 2023-2030 Australian Cyber Security Strategy and Commonwealth Uplift Plan.

Qualifications:

  • Demonstrates performance and competency levels commensurate with the following Skills Framework for the Information Age (SFIA) skills:
    • Enterprise and business architecture (STPL) Level 5

    • Strategic planning (ITSP) Level 5

    • Measurement (MEAS) Level 5

    • Risk management (BURM) Level 5

  • Understands key cyber and security frameworks, or can quickly learn them, including the Information Security manual (ISM), Protective Security Policy Framework (PSPF), Australian Cyber Security Centre’s (ACSC) Essential Eight, as well as ISO 27001, NIST Cybersecurity Framework.
  • Brings experience in strategic design, enterprise and business architecture, with the ability to translate complex concepts and identified opportunities into practical outcomes.
  • Builds strong relationships across technical and business areas, identifying requirements and gaps, addressing these and influencing stakeholders to achieve shared strategic goals.
  • Understands cyber security risks and uplift needs, providing clear advice and guidance on activities to improve the organisation’s security maturity in line with government best practice and vision.
  • Demonstrates strong leadership and judgement, managing multiple priorities, navigating ambiguity, and keeping executives and key stakeholders informed and engaged.
  • Familiar with technologies and ICT landscapes and challenges within large organisations, as well as knowledge of contemporary technologies and concepts such as artificial intelligence, and quantum computing.
  • Skilled in translating technical risk concepts for non-technical audiences and preparing clear, concise documentation and presentations for executive and governance stakeholders.

Apply Now or reach out to Ivan Aureus at 0480 806 152 for a confidential chat.

Apply now

Submit your details and attach your resume below. Hint: make sure all relevant experience is included in your CV and keep your message to the hiring team short and sweet - 2000 characters or less is perfect.

Certification Engineer

  • Australia
  • Australian Capital Territory
  • Permanent
  • AU$0.00 - AU$180000 per annum
  • ICT security certification, accreditation cycles, and Defence security framework
  • Permanent full-time (preferred) or contract opportunity
  • Canberra – onsite role
  • NV1 security clearance required

Our Client

Our client aims to reinvent tomorrow by solving the world’s most critical problems for thriving cities, resilient environments, mission-critical outcomes, operational advancement, scientific discovery and cutting-edge manufacturing, turning abstract ideas into realities that transform the world for good. Our client provides a full spectrum of professional services including consulting, technical, scientific and project delivery for the government and private sector.

The Role

This role is critical to the successful certification and accreditation of complex ICT environments supporting high-profile government capability. As a Certification Engineer, you will drive security assessment activities that directly inform accreditation decisions, ensuring systems meet stringent security, compliance and risk requirements within an evolving delivery environment.

Your duties will include:

  • Conducting ICT security certification assessments and preparing Certification Reports and Briefs
  • Supporting ongoing accreditation cycles to enable system acceptance and network integration
  • Assessing remediation progress and tracking security uplift activities
  • Providing advice aligned with PSPF, ISM and DSPF requirements
  • Engaging with ICT certification authorities and key stakeholders
  • Contributing to ICT security risk management and assurance activities

Skills and Experience we are looking for:

  • Two or more of the following: CISSP, CISM, ISO 27001 Lead Auditor, GIAC, GCFA or CISA
  • Recent experience conducting ICT security assessments within complex environments
  • Strong understanding of PSPF, ISM and DSPF frameworks
  • Proven experience in ICT security risk management methodologies
  • Experience working with Defence ICT certification bodies such as DDG and ASD
  • Desirable: IRAP Assessor

Application Process

If you would like to apply for this opportunity, please click ‘APPLY’. For further information, please contact Jaela Smith on 02 6129 6302 or email jaela.smith@talentinternational.com

Apply now

Submit your details and attach your resume below. Hint: make sure all relevant experience is included in your CV and keep your message to the hiring team short and sweet - 2000 characters or less is perfect.

Cyber Security Specialist

  • Australia
  • Adelaide
  • Contract
  • Negotiable
  • Cyber Security Specialist – Multiple Roles
  • Adelaide Based
  • 6-Month Initial Contract (with possible extension)
  • Australian Visa Holders Only (No Sponsorship Available)

We’re seeking experienced Cyber Security Specialists to support critical programs across cloud and on-prem environments.

Key Focus Areas:

  • Secure cloud configuration aligned to recognised frameworks (NIST, ISO, CIS, ISM)
  • Security architecture & engineering
  • Security assessments, audits & remediation
  • Monitoring, incident detection & response
  • Collaboration with stakeholders to uplift security posture

Essential:

  • 5+ years’ cyber security experience (architecture/engineering focus)
  • Strong knowledge of security frameworks & cloud security baselines
  • Experience with security tools (IAM, SIEM, EDR, firewalls)
  • Excellent stakeholder engagement skills

📩 Apply now or reach out for a confidential discussion. You can reach Shilpa Sharma at 08 8228 1501.

Apply now

Submit your details and attach your resume below. Hint: make sure all relevant experience is included in your CV and keep your message to the hiring team short and sweet - 2000 characters or less is perfect.

Cyber Security Adviser - Risk and Compliance Analyst

  • Australia
  • Australian Capital Territory
  • Contract
  • Negotiable

About the Team

You’ll be part of a specialist Cyber Governance, Risk & Compliance team responsible for ensuring cyber risk and security compliance across major projects, programs, and the broader service provider ecosystem.

The team oversees key cyber assurance activities aligned to Security Risk Assessments (SRAs), Security Approval to Operate (SATO), IRAP assessments, and certification requirements, supporting the organisation’s commitment to strong security posture and regulatory compliance.

Working closely with Cyber Operations and project delivery stakeholders, the team plays a critical role in ensuring digital services are secure, reliable, and trusted by the community.

About the Role

Our Federal client are seeking an experienced Cyber Security Adviser to lead and support governance, risk, and compliance activities across high-priority initiatives.

In this role, you will:

  • Design and implement authorisation boundaries frameworks in collaboration with GRC project teams

  • Conduct Cyber Security Risk Assessments (SRAs) and develop practical risk mitigation strategies

  • Support compliance activities aligned to government Authorisation Frameworks

  • Manage urgent SRA requirements for high-priority and time-sensitive projects

  • Work effectively in a multi-vendor environment, maintaining strong stakeholder and client engagement

  • Prepare and deliver clear, executive-level briefings and presentations

Skills & Experience

To be successful, you will bring:

  • Strong knowledge of information security principles and risk management frameworks such as ISO 27001, ISM, NIST, and PSPF

  • Proven experience conducting SRAs and SIAs, including threat modelling, risk treatment planning, and control effectiveness assessment

  • Experience with government and enterprise authorisation frameworks, including security accreditation and compliance in cloud and multi-vendor environments

  • Ability to assess emerging risks, particularly across AI technologies and cloud platforms (AWS, Azure, IaaS)

  • Strong capability in translating technical risk into clear, non-technical language for executives and governance forums

  • Excellent stakeholder engagement skills, with the ability to manage competing priorities and deliver under pressure

  • High-quality written and verbal communication skills, with a detail-oriented, risk-focused mindset

If you would like to apply for this opportunity, pleas click ‘APPLY’. For further information, please contact Vamshi Krishna on 0470260909 or email vamshi.krishna@talentinternational.com

For over 30 years Talent has been redefining the contracting experience with industry leading support, exclusive contractor benefits & a world-class digital platform ENGAGE to access it all. Apply today to see how we can elevate your career

Apply now

Submit your details and attach your resume below. Hint: make sure all relevant experience is included in your CV and keep your message to the hiring team short and sweet - 2000 characters or less is perfect.

Principal Architect – Cybersecurity

  • United States
  • Permanent
  • from $190k to $220k per Yr, USD

We have partnered with a leading provider of innovative IT solutions, specialized in customized technology services that empower businesses to thrive in a digital landscape. Their team of experts is dedicated to delivering strategic consulting, robust cybersecurity, and comprehensive managed services, all designed to drive efficiency and growth.

They are looking for a Principal Architect with a background in Cybersecurity and a balanced focus on Business Development (50%) and Service Delivery (50%). This role is ideal for a highly motivated professional who thrives in a matrix organization, leading multiple projects while engaging with vendors and driving business growth.

Key Responsibilities:

  • Pre-sales engagement – work closely with vendors and customers to craft solutions.
  • Project oversight – act as an Engagement Manager, ensuring successful project execution.
  • Oversee 5-6 concurrent projects, managing budgets, customer success, change orders etc..
  • Provide leadership within a matrix structure, guiding field leaders responsible for delivery.
  • Collaborate with cross-functional teams and other key stakeholders.
  • Cybersecurity & Networking focus – Less compliance-heavy, more technical/networking-based projects.
  • Manage service delivery and drive business growth through consultative engagements.
  • Track project status and provide status reports when necessary.
  • Engage in strategic discussions around project execution, client satisfaction, and expansion.

Ideal Candidate Profile:

  • Experienced in both service delivery and business development.
  • Strong background in cybersecurity, networking, and technical pre-sales.
  • Technology experience with security (Check Point, Palo Alto, Fortinet, Zscaler) and networking (Cisco, Aruba, Fortinet).
  • Knowledge of regulatory compliance requirements and challenges that affect IT programs such as SOC2, SOX, GDPR, HIPAA, Gramm-Leach-Bliley, State and Federal privacy laws, and SEC regulations
  • Adept at working in a matrix organization, leading projects, and coordinating resources.
  • Able to balance project execution with growth initiatives.
  • Strategic thinker who can collaborate across teams and drive results.

Work Schedule & Travel Expectations:

  • Hybrid role with some in-office presence required 1x a week.
  • Some Travel required.

Salary listed is OTE – $190-220k

At this time we are unable to provide Visa Transfers or Visa Sponsorship.

Apply now

Submit your details and attach your resume below. Hint: make sure all relevant experience is included in your CV and keep your message to the hiring team short and sweet - 2000 characters or less is perfect.