This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
As Director, Cyber Security and Resilience, you will shape and lead an enterprise-wide capability that safeguards people, research and digital services, while enabling innovation within a complex university environment. Reporting to the Chief Information Officer, you will set the strategic direction for cyber security, risk and resilience in an environment influenced by emerging technologies, global research partnerships and evolving threats. Working collaboratively with academic and professional communities, you will strengthen cyber capability and foster a positive, informed security culture. This role offers meaningful influence beyond technology, partnering with government, industry and sector peers, contributing to collective cyber defence, and safeguarding research of global significance. We’re looking for a strategic, inclusive leader who brings clarity, sound judgement and curiosity, and who thrives on collaboration. If you’re driven by impact, purpose and trusted leadership, this is an exciting opportunity to shape the future of cyber resilience at the University.
Job Responsibility:
Provide trusted, university-wide leadership on cyber security and risk
Engage and influence stakeholders across the University to build a strong security culture
Set the strategic direction for cyber resilience in a complex and evolving risk landscape
Shape and lead an enterprise-wide capability that safeguards people, research and digital services while enabling innovation within a complex university environment
Strengthen cyber capability and foster a positive, informed security culture
Partner with government, industry and sector peers contributing to collective cyber defence and safeguarding research of global significance
Requirements:
Demonstrated experience operating as a senior cyber security leader, providing authoritative advice and strategic direction to executives and governance bodies within a large, complex organisation.
Proven capability in developing, executing and maturing enterprise-wide cyber security strategies, frameworks and roadmaps aligned to organisational objectives, risk appetite and investment priorities.
Strong experience in identifying, assessing and articulating cyber security risks, including the ability to clearly communicate risk trade-offs, residual risk and mitigation options to senior leaders and boards.
Deep working knowledge of recognised cyber security frameworks and standards (e.g. NIST Cybersecurity Framework, Essential Eight, ISO/IEC 27001/27002) and relevant privacy, regulatory and legislative obligations.
Demonstrated experience overseeing cyber security incidents, assurance activities and compliance reviews, ensuring timely response, remediation and clear executive-level reporting.
Broad technical understanding of modern technology environments, including cloud services, identity and access management, data protection and security monitoring, sufficient to assess control effectiveness and risk exposure.
Proven ability to design and lead cyber security engagement, communication and awareness initiatives that build shared accountability for cyber security across an entire organisation.
Demonstrated experience building and maturing cyber security capability, including workforce capability.
Experience embedding secure-by-design principles across learning and teaching, research and corporate activities through collaboration, influence and trusted partnerships rather than directive control.
A relevant tertiary qualification, and/or equivalent senior-level experience in relevant field.
Nice to have:
Relevant professional certifications (such as CISSP, CISM, CRISC, ISO/IEC 27001 Lead Implementer/Lead Auditor, or equivalent)
Experience working within the Australian higher education sector, public sector, or similarly regulated environments
What we offer:
26 Weeks paid parental leave for primary care givers