Employment OS for your Business

Security Architect

Southbank, Victoria 3006, Australia • Full-time

Role Type

Permanent • Full-time • Mid-level Senior

Description

The Mission

We are here to find those who strive for excellence, go the extra mile, and crave continuous growth.

We’re an all-Australian cybersecurity firm helping some of the country’s biggest organisations stay ahead of cyber risk. We’re looking for people who share our drive to learn relentlessly, act with integrity, and raise the bar for our clients and teammates alike – those seeking a place where your drive and expertise are met with equal enthusiasm and opportunity. Dive into a culture that treasures innovation and offers a growth platform that is as limitless as your ambition and work ethic.

The Opportunity

This role is responsible for designing, reviewing, and guiding secure technology solutions across business and enterprise environments. The role ensures security requirements are considered early in the design lifecycle, identifies risks and control gaps, and provides practical guidance to support secure, compliant, and resilient implementation of systems, applications, and integrations.

What You’ll Do

  • Lead security assessments of new and changed technology solutions across delivery, procurement, and change initiatives
  • Review solution architecture and key security controls to identify risks, gaps, and improvement opportunities.
  • Assess designs against security requirements, standards, and applicable frameworks.
  • Provide risk ratings, remediation advice, and architecture recommendations to support secure implementation.
  • Confirm agreed security uplift prior to go live, including relevant privacy and resilience controls.
  • Support governance, reporting, and secure by design uplift through effective stakeholder engagements.

What You’ll Bring

  • Deep security architecture expertise across cloud, SaaS, hybrid, on premises, and integrated technology environments.
  • Proven ability to assess and design security controls across identity, connectivity, data protection, monitoring, resilience, and secure change.
  • Able to translate architecture and assurance inputs into clear risk-based decisions, remediation priorities, and implementation guidance.
  • Strong knowledge of security standards and compliance obligations relevant to enterprise and regulated environments.
  • Experience in security architecture, cyber assurance, technology risk, or solution security review roles.
  • Proven ability to perform design and architecture reviews for business applications, platforms, integrations, or infrastructure solutions.
  • Experience producing security review outputs such as risk assessments, design review findings, control recommendations, and go live assurance advice.
  • Strong stakeholder engagement skills and ability to work across technical and non-technical teams.
  • Relevant certifications desirable, such as CISSP, SABSA, TOGAF, ISO 27001, CCSP, CISM, or equivalent.

What You’ll Get

  • A technically excellent, collaborative team
  • Competitive base salary and flexibility to suit how you work best
  • Clear investment in your professional growth and long-term success

Ctrl is an equal opportunity employer committed to diversity, inclusion, and belonging. We value diversity and welcome applicants from all backgrounds, encourage anyone who meets most of the criteria to apply – even if you don’t tick every box.

If you need assistance accessing or reviewing the information on this website, need help submitting an application for employment or requesting an accommodation, please contact us at careers@ctrl.co for further help.

Company Overview

At ctrl:cyber, cyber together goes beyond a mission—it’s our way of leading the charge. It’s about partnering with our clients, the broader industry, and like-minded innovators to create real change. It’s about building up our community and driving progress as a collective force. Advancing the industry takes everyone moving forward together. ctrl:cyber is the trusted cybersecurity partner for industry leaders and global brands, providing tailored solutions to align with business objectives, ensuring the unique needs of each organisation are met. Our core service offerings include; Risk Operations Centre – Advanced Cyber Monitoring, Penetration Testing, Cyber Advisory, Cyber Engineering, DFIR and Privacy, Data and AI Governance.