-
Townsville City Council
View all jobs
Cyber Security Governance & Assurance Specialist
Australia
· Full-time
·
Not Applicable
Division/Section: Business Services / Digital Information & Technology
Position Type: Permanent Full Time (9 day fortnight, 36.25/week)
Salary Range: LGO7 ($113,019 - $119,946 per annum + superannuation) based on skills, qualifications and experience
Location: Townsville
Application Close: 11:45pm, Tuesday 4 August 2026.
About The Role
As part of Council's Cyber Security team, you will help deliver and continuously improve Council's cyber security governance, risk, compliance, and assurance capabilities.
This role is responsible for supporting and maintaining Council's ISO 27001-aligned Information Security Management System (ISMS), conducting cyber security risk assessments, coordinating assurance activities, and providing practical cyber security advice across the organisation.
You will work closely with Information Management, Risk, Internal Audit, operational teams and business stakeholders to strengthen Council's security posture, improve governance practices, and support compliance with legislative, regulatory and industry obligations.
This role suits an experienced cyber security professional who enjoys working across governance, risk, policy, compliance, audit, and assurance functions while helping drive tangible improvements in cyber maturity.
What You'll Be Doing
We're looking for a cyber security professional who combines strong governance, risk, and assurance experience with the ability to communicate effectively, influence stakeholders and deliver practical outcomes.
You Will Ideally Have
We have a range of benefits that confirm this commitment:
How To Apply
Your application can be submitted through the 'Apply' button. Please include a cover letter (maximum 2 pages), outlining how your skills, qualifications and experience would allow you to achieve success in this role. We also will require your resume which should confirm any licences and qualifications your hold.
For Further Information Review The Position Description.
We are committed to creating a safe and inclusive workplace where diverse styles, backgrounds, experiences, and perspectives are valued, encouraged, and respected. People from diverse backgrounds (including but not limited to, Aboriginal and Torres Strait Islander, people with diverse gender identities and sexualities, people from different cultural and linguistic backgrounds, people with disability, and veterans) are encouraged to apply!
All successful candidates are required to undergo drug and alcohol testing as part of the recruitment process. Please be aware Townsville City Council has a ‘zero tolerance’ policy to drugs and alcohol in the workplace.
If you need any adjustments to be made to the recruitment process or if you would like to discuss any accessibility requirements, please contact [email protected] or phone 07 4727 9004 for a confidential discussion.
Attachments
Position Type: Permanent Full Time (9 day fortnight, 36.25/week)
Salary Range: LGO7 ($113,019 - $119,946 per annum + superannuation) based on skills, qualifications and experience
Location: Townsville
Application Close: 11:45pm, Tuesday 4 August 2026.
About The Role
As part of Council's Cyber Security team, you will help deliver and continuously improve Council's cyber security governance, risk, compliance, and assurance capabilities.
This role is responsible for supporting and maintaining Council's ISO 27001-aligned Information Security Management System (ISMS), conducting cyber security risk assessments, coordinating assurance activities, and providing practical cyber security advice across the organisation.
You will work closely with Information Management, Risk, Internal Audit, operational teams and business stakeholders to strengthen Council's security posture, improve governance practices, and support compliance with legislative, regulatory and industry obligations.
This role suits an experienced cyber security professional who enjoys working across governance, risk, policy, compliance, audit, and assurance functions while helping drive tangible improvements in cyber maturity.
What You'll Be Doing
- Supporting the implementation, operation, and continual improvement of Council's Information Security Management System (ISMS)
- Developing, reviewing, and maintaining cyber security policies, standards, procedures, and governance documentation
- Conducting cyber security risk assessments and supporting risk treatment planning
- Managing cyber security compliance and exception registers
- Planning and executing cyber security control assurance and validation activities
- Supporting and coordinating internal and external cyber security audits, including evidence collection, control validation, and remediation tracking
- Producing cyber security reporting, dashboards and metrics for leadership, governance forums, and key stakeholders
- Monitoring compliance with cyber security policies, standards, and control requirements
- Providing practical cyber security governance, risk, and compliance advice to business stakeholders
- Supporting business continuity and disaster recovery testing activities
- Contributing to the continual improvement of Council's cyber security maturity and assurance capability
We're looking for a cyber security professional who combines strong governance, risk, and assurance experience with the ability to communicate effectively, influence stakeholders and deliver practical outcomes.
You Will Ideally Have
- Experience implementing, maintaining, or improving an ISO 27001 Information Security Management System (ISMS)
- Experience developing cyber security policies, standards, procedures, and governance documentation
- Experience conducting cyber security risk assessments and facilitating risk workshops
- Experience supporting or leading cyber security audits, assurance reviews, or compliance assessments
- Experience developing executive reporting, cyber security metrics, and governance dashboards
- Strong knowledge of cyber security frameworks including ISO 27001, the ACSC Essential Eight and the NIST Cyber Security Framework
- Knowledge of legislative and regulatory obligations relating to information security, privacy, and local government operations
- Strong understanding of cyber security controls, risk management, and assurance practices
- The ability to translate technical cyber security concepts into clear, practical business advice
- Strong stakeholder engagement, communication and influencing skills across technical and non-technical audiences
- Experience within local, state, or federal government environments will be highly regarded
- 5-7 years' experience within Information Technology, including at least 3 years in cyber security, information security, governance, risk, or assurance roles
- Degree qualification in Cyber Security, Information Technology or a related discipline, or equivalent demonstrated experience
- Demonstrated experience working with cyber security frameworks, standards, and compliance obligations
- Strong analytical, risk assessment and problem-solving skills
- Excellent written and verbal communication skills
- CISSP
- CISA
- CRISC
- ISO 27001 Lead Implementer
- ISO 27001 Lead Auditor
- Other relevant cyber security, governance, risk, or audit certifications
We have a range of benefits that confirm this commitment:
- 5 weeks annual leave + 17.5% leave loading
- 3 weeks Personal/Carers Leave
- 14 weeks paid Parental Leave
- Domestic and Family Violence Leave
- Natural Disaster Leave
- Annual wage progression
- Up to *13.5% Superannuation employer contribution for contributing members
- Salary Sacrifice opportunities
- Access to a range of learning and development opportunities, including on-the-job learning and formal training programs
- Fitness Passport program offering discounted membership to selected health and wellbeing facilities
- Employee Loyalty Program offering discounts at selected local businesses
- Employee Assistance Program
- The Council contribution to employees' superannuation for contributing employees shall be 13.5% of the employees' ordinary time earnings subject to the employee contributing a minimum of 6% of their ordinary time earnings.
How To Apply
Your application can be submitted through the 'Apply' button. Please include a cover letter (maximum 2 pages), outlining how your skills, qualifications and experience would allow you to achieve success in this role. We also will require your resume which should confirm any licences and qualifications your hold.
For Further Information Review The Position Description.
We are committed to creating a safe and inclusive workplace where diverse styles, backgrounds, experiences, and perspectives are valued, encouraged, and respected. People from diverse backgrounds (including but not limited to, Aboriginal and Torres Strait Islander, people with diverse gender identities and sexualities, people from different cultural and linguistic backgrounds, people with disability, and veterans) are encouraged to apply!
All successful candidates are required to undergo drug and alcohol testing as part of the recruitment process. Please be aware Townsville City Council has a ‘zero tolerance’ policy to drugs and alcohol in the workplace.
If you need any adjustments to be made to the recruitment process or if you would like to discuss any accessibility requirements, please contact [email protected] or phone 07 4727 9004 for a confidential discussion.
Attachments
- Cyber Security Governance Assurance Specialist_PD.pdf
Key Skills
Ranked by relevance
cyber security
security audits
cissp
cisa
nist
Related Jobs
3 roles aligned with this opportunity
View Job Details
Related
Cyber Security Engineer
2026-07-08
Full-time
Mid-Senior
Belgium
Banking
Information Technology
View Job Details
Related
ICT Cyber Security Analyst
2026-07-09
Full-time
Not Applicable
Australia
Government Administration
Information Technology
View Job Details
Related
Cybersecurity Testing Engineer
2026-07-11
Full-time
Not Applicable
Italy
Professional Services
Engineering
Login to Apply
- Posted
- Jul 09, 2026
- Type
- Full-time
- Level
- Not Applicable
- Location
- Townsville
- Company
- Townsville City Council
Industries
Government Administration
Categories
Engineering
Information Technology
Related Jobs
3 roles aligned with this opportunity
View Job Details
Related
Cyber Security Engineer
2026-07-08
Full-time
Mid-Senior
Belgium
Banking
Information Technology
View Job Details
Related
ICT Cyber Security Analyst
2026-07-09
Full-time
Not Applicable
Australia
Government Administration
Information Technology
View Job Details
Related
Cybersecurity Testing Engineer
2026-07-11
Full-time
Not Applicable
Italy
Professional Services
Engineering