Civmec logo

Cyber GRC Officer

Civmec

Henderson, WA
Office
Full-time

Job Description

About the Company

Civmec is an Australian-owned, integrated, multidisciplinary heavy engineering and construction services provider to the energy, resources, infrastructure, marine and defence sectors. Our diversification enables us to operate extensively across the nation, supporting a wide range of landmark projects and providing variety and career development opportunities for our workforce.

Join the Civmec Team

We are seeking a skilled Cyber GRC Officer to join our team. Your primary focus will be on enhancing security governance, risk management, and compliance with security processes and procedures across the organisation. You will leverage your expertise in security frameworks such as NIST, the Australian ISM, and the ASD8 maturity model to ensure our security posture is measurable and aligned with business needs. This full-time role will be based in our Henderson location.

The Role

  • Identify and assess security risks within the organisation.
  • Align security policies and procedures with key security frameworks and standards such as NIST, the Australian ISM, and ASD8.
  • Analyse requirements of information security posture as well as legal and regulatory obligations.
  • Evaluate the effectiveness and consistency of security controls, including auditing internal cyber security measures and assessing third-party and supply chain risks.
  • Conduct risk assessments and support the wider risk management process.
  • Author, review, and assist in approving policies, standards, and procedures.
  • Act as the GRC Officer for IT and Cybersecurity Projects, ensuring processes and procedures are properly documented and controlled.
  • Communicate any control failures to relevant stakeholders and suggest corrective actions.
  • Track and update security registers to ensure all measures are documented and current.
  • Stay informed and up to date with legal and regulatory obligations relevant to the business.
  • Assist in the development of internal information security manuals tailored to business requirements.
  • Facilitate internal audits of the organisation's cyber security controls and processes.
  • Support independent audits of cyber security controls and processes.
  • Coordinate security awareness training, incorporating insider threat awareness using the company LMS.
  • Own the development, maintenance, review and continual improvement of the business continuity, disaster recovery and cyber incident response plans

About You / Requirements

To be successful in the role you will possess the following:

  • Qualifications in an IT-related discipline with significant cyber security governance, risk, and compliance exposure.
  • Must be an Australian Citizen and eligible to obtain and uphold a Baseline Security Clearance through the Australian Department of Defence.
  • CISSP, CISM, CRISC, ISO27001 Lead Implementer/Auditor.
  • 3-5 years’ experience in IT Security Governance, Risk & Compliance.
  • Experience with alignment to one or more of the following – Australian ISM, ASD Essential 8, ISO27001, NIST SP 800-171, DEFSTAN 05-138, IRAP, PSPF, DSPF.
  • Experience with risk management principles and methodologies. Experience with auditing compliance across any of the mentioned frameworks.
  • Experience working with defence industry security program (DISP) requirements is desirable

Due to the Security Clearance required for this position, applicants must be an Australian Citizen and eligible to obtain and uphold a Baseline Security Clearance through the Australian Department of Defence.

  • Civmec + You

At Civmec, we offer an inclusive workplace built on family values, with a ‘Never Assume' culture, sustained by our experienced and supportive management team. We believe our workforce is our greatest asset, and that's why we provide an environment rich in career development opportunities to upskill and develop professionally. We offer 12 weeks paid parental leave for primary caregivers and 1 week for permanent secondary caregivers. Our generous Reward and Recognition scheme recognises employees that go the extra mile. Our staff benefits scheme gives you access to accident and sickness insurance, and a range of travel, entertainment, vehicle and lifestyle discounts.

How to Apply

Please click the “apply” link to start your application. We look forward to starting the pathway to your career with Civmec.

Alternatively, please call our Recruitment Team on (08) 6595 5888.

Civmec is an equal opportunity employer and encourages applications from Aboriginal and Torres Strait Islanders. Defence force experience is desirable, and veterans are encouraged to apply. We respectfully request no agency submissions.

Follow us on LinkedIn, Facebook and Instagram for news, updates and career opportunities!

Apply with a tailored resume for each job that ensures your resume gets seen by hiring managers. Guaranteed to get you more interviews.
Goldfields logo

Surveyor : Mining in Agnew - Leinster, WA, AU, 6437

Goldfields

Agnew - Leinster, WA, AU, 6437
Anglo American logo

Reliability Engineer in Middlemount, QLD

Anglo American

Middlemount, QLD
FIFO
9 day fortnight
Genesis Minerals logo

Senior Mining Engineer in Leonora

Genesis Minerals

Leonora
Glencore logo

Drill and Blast Engineer in Collinsville, QLD

Glencore

Collinsville, QLD
Residential
8/6
Programmed logo

Project Engineer | FIFO in Perth, WA

Programmed

Perth, WA
FIFO
8/6
BHP logo

Principal Software Engineer in Perth

BHP

Perth
Office
Stellar Recruitment logo

Mine Surveyor in Perth, WA

Stellar Recruitment

Perth, WA
Residential
Programmed logo

Reliability Engineer / Specialist in Roxby Downs, SA

Programmed

Roxby Downs, SA
FIFO
$100 hourly
8/6
BHP logo

Senior Planning Engineer | Carrapateena | 8/6 Roster in Carrapateena

BHP

Carrapateena
FIFO
8/6
Fortescue logo

Senior Mine Engineer in Iron Bridge, WA

Fortescue

Iron Bridge, WA
FIFO
4D/3R ex Perth

Still Browsing?

The job won't wait.
Your resume shouldn't either.

Whether you're a diesel fitter between contracts, a sparky eyeing FIFO rates, or new to mining — a 3-minute resume is the difference between getting called and getting filtered.

Build Your Resume

Built in Perth, WA · Industry experts