Cyber Security Vulnerability Testing & Assurance Consultant
Rate: Negotiable Daily Rate
Location: Preferred: Canberra. Flexible: Brisbane, Sydney, Melbourne, Adelaide
Start Date: December 2025
...
Clearance: Must hold a minimum of Australian Government NV1 Security Clearance
The Opportunity
We are seeking a seasoned Cyber Security Vulnerability Testing and Assurance Consultant/Analyst to help a major government or enterprise client significantly uplift their security posture. This is a high-impact role focused on maturing vulnerability management processes and ensuring effective security assurance across complex ICT environments.
You will be the hands-on expert responsible for optimizing the vulnerability management platform, translating technical findings into actionable risk mitigation strategies, and driving remediation efforts.
Key Responsibilities
Vulnerability Program Maturity: Review, refine, and enhance the client's vulnerability assessment processes to align with industry best practices and compliance requirements.
Solution Administration: Administer, configure, optimize, and troubleshoot vulnerability scanning solutions, with a strong focus on Tenable (Nessus, Tenable.sc, Tenable.io).
Reporting & Advisory: Produce detailed vulnerability reports, metrics, and dashboards to track remediation progress and provide clear, actionable recommendations for risk mitigation.
Compliance & Frameworks: Ensure vulnerability practices align with key security frameworks, including ISM, PSPF, NIST, or CIS Controls.
Assurance Support: Provide support for additional security assurance activities, which may include penetration testing, configuration reviews, or compliance assessments.
Collaboration: Work closely with IT Operations, Security Operations, and Development teams to ensure prompt and effective vulnerability addressing.
Qualifications & Experience
Demonstrated experience in vulnerability assessment and management within enterprise or government environments.
Strong, hands-on knowledge of vulnerability scanning tools and platforms, particularly the Tenable suite.
Familiarity with vulnerability scoring frameworks (CVSS) and patch management lifecycle.
Solid understanding of security frameworks such as ISM, PSPF, NIST, or CIS Controls.
Excellent analytical and communication skills, capable of presenting technical risks and remediation plans to non-technical stakeholders.
Relevant certifications such as CISSP, CISM, CEH, Security+, or Tenable Certified Professional are highly desirable.
Mandatory: Must hold a minimum of NV1 Australian Government Security Clearance
At Randstad Digital, we are passionate about providing equal employment opportunities and embracing diversity to the benefit of all. We actively encourage applications from any background.