Your new company
Our client is a Victorian State Government entity that is searching for their new CISO. This important position will be leading an information security program that encompasses data security, business continuity operations and enhances business resilience for the services they provide. You will be joining at an exciting point in this organisation's modernisation journey and be able to build your own InfoSec Security team to support in the delivery of your security program, reporting to the Chief Technology Officer. Don’t miss out, this is your chance to make a meaningful difference.
Your new role
- Lead and operate an enterprise‑wide, risk‑based information security program, including security awareness, engagement, and continuous uplift aligned to compliance, risk appetite, and modernisation priorities.
- Own core security operations, including vulnerability management, patching, threat detection, incident response, and cyber resilience to minimise business, regulatory, and community impact.
- Establish and lead a mature information security governance, risk, compliance, and assurance function aligned to the Three Lines of Defence model.
- Manage audits and assurance activities, including penetration testing, third‑party risk assessments, PCI‑DSS, IRAP, and OVIC VPDSS compliance, supported by meaningful metrics, SLAs, and KRIs.
- Act as the senior security advocate and advisor, engaging regulators, executives, and stakeholders while leading a pragmatic security consulting function across technology and business teams.
What you'll need to succeed
As the Chief Information Security Officer, you’ll need to have:
Essential:
- Technical expertise: Deep, enterprise‑level information security capability.
- Leadership: Credible people leader with integrity and change leadership experience.
- Strategic judgement: Proven ability to align security strategy with business and commercial outcomes.
- Stakeholder engagement: Strong communicator with experience engaging Boards, executives, and regulators.
- Security frameworks: Experience across VPDSF, PSPF, Essential Eight, and ISM.
- Australian citizenship and be eligible to apply for NV1 Security Clearance.
- Bachelor’s degree in computer science, information technology, cybersecurity, or a related field.
What you'll get in return
- Exposure to working at enterprise scale on complex, high‑impact programs that are critical to public safety, service delivery, and community trust.
- The ability to play a leadership role in a major transformation agenda, modernising technology, data, and security across a large and diverse organisation.
- The opportunity to engage with senior executives, government, regulators, and industry partners on nationally significant initiatives.
What you need to do now
If you're interested in this role or know of someone that may be, please click ‘Apply Now’ or forward an updated CV to: Catherine.OBryen@hays.com.au.
LHS 297508