Your new company
You will be joining a large Federal Government department at the forefront of delivering critical services to millions of Australians. This opportunity is offered as an initial 12 month contract with extension options up to 24 months, based across Canberra, Adelaide, Brisbane or Melbourne in a hybrid working model. Candidates must be able to obtain Negative Vetting Level 1 clearance. The department is investing heavily in modern platforms, cyber resilience and secure service delivery, with a strong focus on building contemporary, secure digital capabilities.
Your new role
As a Lead Penetration Tester, you will take ownership of complex penetration testing activities across enterprise environments, providing deep technical leadership and ensuring robust security assurance practices are embedded across systems.
You will plan and drive penetration testing initiatives within defined business domains, delivering clear insights into vulnerabilities, control effectiveness and risk exposure. Working across web applications, mobile platforms and enterprise infrastructure, you will lead simulated attack exercises and coordinate end to end testing engagements.
Key responsibilities include:
- Leading penetration testing and vulnerability assessments across diverse technologies and enterprise platforms
- Designing and approving security testing plans and methodologies aligned to organisational standards
- Conducting advanced threat simulations and simulated attack exercises to identify control weaknesses
- Performing web application and mobile testing across complex, multi-technology environments
- Undertaking infrastructure testing across Windows and Linux-based systems
- Providing authoritative advice to stakeholders on security posture, risks and remediation strategies
- Managing and coordinating risk assessments and security testing activities across multiple engagements
- Reviewing, validating and communicating detailed technical reports, findings and recommendations
- Collaborating with system owners to define scope, prepare environments and validate remediation outcomes
What you'll need to succeed
- Proven capability aligned to SFIA Level 5 Penetration Testing, including planning, coordinating and driving testing activities and contributing to security testing standards
- Strong experience conducting complex penetration testing and leading simulated attack exercises using commercial and bespoke tools
- Deep technical expertise across web application, mobile and infrastructure penetration testing in enterprise environments
- Experience assessing systems hosted across both Windows and Linux platforms
- Ability to provide strategic and technical guidance to stakeholders, translating complex findings into actionable outcomes
- Strong leadership experience, including mentoring, coaching and managing delivery teams
- Demonstrated ability to identify new approaches, improve testing methodologies and uplift organisational capability
Desirable certifications include:
- CREST Certified Tester or equivalent
- CHECK Team Leader
- OSCP, OSCE or GIAC Penetration Tester
- CompTIA Security+ or PenTest+
- Certified Ethical Hacker
What you'll get in return
- Opportunity to lead high impact cyber security testing across critical national systems
- Long term contract with extension potential
- Flexible hybrid working arrangements
- Exposure to complex enterprise environments and modern technology stacks
What you need to do now
If you're interested in this role, click 'apply now' to forward an up-to-date copy of your CV, or call us now. If this job isn't quite right for you, but you are looking for a new position, please contact us for a confidential discussion on your career.
LHS 297508