Brennan. Where true performance thrives.
At Brennan, we believe that
how technology is delivered is every bit as important as
what the technology is. We focus on creating real and relevant value for customers with solutions that fit their specific needs and always reflect their true interests.
It’s a claim backed by our
True Performance System – a way of working engineered to get us closer, and deliver better, for our customers and their actual experience of technology.
Why join Brennan
True performance for our customers starts with a true belief in our people.
It’s why we’ve structured our business to help our teams, and their talents, shine bright. It's why we’ve created a workplace where people of all backgrounds, beliefs and experiences are welcomed and empowered. And it’s why we’ve built an organisation where real innovation makes a genuine impact and generates true rewards for our team members.
True rewards
In addition to competitive remuneration, Brennan offers extensive benefits, including:
- Training and certification bonuses
- Culture Awards that recognise excellence
- Brennan Daredevils – our annual, all-expenses paid trip awarded to our top performers and outstanding contributors
- Vibrant, fun social activities
- Discounted hardware and software
- Genuine opportunities for career progression
- An environment that embraces learning and development
The role
Reporting to the Chief Information Security Officer (CISO) and working within Brennan’s Security & Governance function, the Cyber Security Officer role is central to how we govern, measure, and continually improve that programme across both our corporate business and our service delivery to customers.
You will own the day-to-day governance, risk, and compliance (GRC) work that underpins Brennan’s Information Security Management System and the Brennan Cyber Security Framework. Your work will run across the five BCSF domains: Direct, Prepare, Protect, Detect & Respond, and Assure &
Improve.
The role can be based in any of our office locations in Australia.
Key experience and skills required:
This role requires the following competencies and experience:
Governance, Risk, and Compliance
- Proven experience in a GRC role, ideally within a managed service provider (MSP) or Federal Government-facing environment.
- Strong understanding of how an Information Security Management System (ISMS) is governed, maintained, and continually improved.
Security Frameworks and Standards
- Hands-on experience maintaining and evidencing alignment to ISO/IEC 27001.
- Working knowledge of the NIST Cybersecurity Framework (CSF) 2.0, including self-assessment against it.
- Familiarity with the Australian Government Information Security Manual (ISM) and the Protective Security Policy Framework (PSPF).
- Awareness of the ASD Essential Eight and, ideally, APRA CPS 234 and CPS 230 for regulated customers.
Risk Management
- Experience identifying, assessing, treating, and monitoring information security risks against a defined risk appetite and tolerance.
- Ability to maintain a risk register and drive treatment plans and formal risk acceptance through governance forums.
Audit and Assurance
- Experience planning and coordinating internal audits, control testing, and assurance activities, nand tracking corrective actions to closure.
Stakeholder Engagement and Federal Government
- Experience developing and maintaining security policies, standards, and supporting procedures.
If you believe you have the right skills for the role then apply now.
Note: As part of our hiring process, you will be required to undertake a National Criminal History Check.
Brennan is an equal opportunity employer.