GRC and Advisory Consultant

🗓️ Posted 2026-08-14 Australia Permanent ICT

Company shared salary

NA

Market rate

NA

Based on similar roles (title + domain + location).

About the Company

DXC Technology (NYSE: DXC) is a leading enterprise technology and innovation partner delivering software, services, and solutions to global enterprises and public sector organizations - helping them harness AI to drive outcomes at a time of exponential change with speed. With deep expertise in Managed Infrastructure Services, Application Modernization, and Industry-Specific Software Solutions, DXC modernizes, secures, and operates some of the world's most complex technology estates. Learn more on dxc.com

Responsibilities

  • You'll work within our Cybersecurity team, delivering advisory and consulting services across Federal Government departments. This role requires deep expertise in cybersecurity risk, governance, policy, and compliance within a government context.

Requirements

  • 5+ years IT experience, including 2-4 years in Information Security, Risk, Audit or similar
  • Bachelor's or Master's degree (or equivalent demonstrated experience)
  • Strong knowledge of key security standards: PSPF, ISM, Essential 8, DSPF, ISO 27000, NIST CSF/800 series, CIS
  • Experience advising internal teams and clients on security and compliance requirements
  • Proven ability to write security policies and procedures aligned to ISM and PSPF
  • Hands-on experience implementing Essential 8 controls
  • IRAP pre-assessment and certification/accreditation experience
  • Solid understanding of internet, application, web and network security
  • Experience with OS security (Windows, Linux, etc.)
  • Strong background in cybersecurity GRC
  • Knowledge of risk management frameworks and methodologies
  • Skilled in producing high-quality technical documentation
  • Ability to communicate effectively with technical and non-technical stakeholders
  • NV1 Security Clearance (mandatory)
  • Experience supporting or mentoring a small team of security consultants
  • Ability to uplift security assurance across government, business and vendor environments
  • Strong capability in detecting, deterring and responding to cyber threats
  • Technical writing capability
  • IRAP Assessor (desirable but not essential)
  • Working toward certifications such as CISSP, CISA, CISM, IRAP, GSEC