Specialist digital & tech recruitment that gets to the good bit, faster.
Open role

Chief Information Security Officer (CISO)

ExecutiveQLDPermanent
$170,000 – $180,000 / year

About this role

Shape the future of cyber security across Australia's research sector.

Most CISO roles ask you to secure one organisation.

This one gives you the opportunity to influence an entire ecosystem.

The Australian Access Federation (AAF) sits at the heart of Australia's higher education and research community, providing the trusted identity and authentication infrastructure that enables more than 1.5 million researchers, academics and students to securely collaborate across universities, government and research institutions.

It's critical national infrastructure.

Every day, AAF helps protect access to some of Australia's most important research, from medical breakthroughs to scientific collaboration, while ensuring security never becomes a barrier to innovation.

As cyber threats continue to evolve, AAF is creating a dedicated Chief Information Security Officer to lead the next chapter of its cyber maturity.

This is a rare opportunity to step into a genuine executive leadership role where you'll report directly to the CEO, regularly engage with the Board, shape security strategy across the organisation and become a recognised voice within Australia's Trust & Identity community.

The Opportunity

This isn't the type of CISO role where you inherit a team of thirty people and spend your time approving policies.

You'll be hands-on where it matters, strategic where it counts, and highly visible across both the organisation and the broader sector.

You'll lead AAF's cyber security strategy, own its ISO 27001 Information Security Management System, guide executive decision making, oversee organisational risk, mentor a Cyber Security Officer and work alongside technical leaders to continually strengthen the organisation's security posture.'

Beyond the organisation itself, you'll represent AAF across universities, research institutions, government and industry forums, helping shape conversations around cyber security, trust, identity and digital resilience across Australia.

If you're looking for a role where your influence extends well beyond the walls of one business, this is it.

What you'll be responsible for

You'll:

  • Develop and execute AAF's cyber security strategy while continuing to mature the organisation's security capability.
  • Own and continually improve AAF's ISO 27001 Information Security Management System (ISMS).
  • Lead cyber governance, risk management, compliance and security assurance across the organisation.
  • Present meaningful cyber risk and security updates to the Executive Leadership Team, Audit & Risk Committee and Board.
  • Lead incident response, business continuity and organisational resilience initiatives.
  • Provide security guidance across cloud platforms, enterprise systems, identity services and emerging technologies.
  • Mentor and support the Cyber Security Officer while partnering closely with technical leaders across the organisation.
  • Represent AAF externally through industry working groups, conferences, communities of practice and strategic partnerships.
  • Help strengthen cyber capability across Australia's higher education and research community.

About you

You're someone who enjoys operating at both strategic and technical levels.

You can comfortably explain cyber risk to a Board, then roll up your sleeves and help navigate a complex security incident when required.

You'll likely bring experience across many of the following:

  • Leading cyber security, information security or cyber risk functions.
  • Delivering or operating ISO 27001 Information Security Management Systems.
  • Security governance, risk management and compliance frameworks.
  • Cloud security (AWS and/or Microsoft environments).
  • Incident response, business continuity and disaster recovery.
  • Executive and Board reporting.
  • Building security strategy and roadmaps.
  • Working within highly regulated or critical infrastructure environments.

Experience with frameworks such as ISO 27001, NIST or the Essential Eight will be highly regarded, as will certifications including CISSP, CISM, CISA or CRISC.

Experience within higher education, research, government, identity or trust-based environments would be advantageous, but isn't essential.

The type of person who'll thrive here

We're looking for someone who combines technical credibility with emotional intelligence.

You'll enjoy bringing people together, influencing without authority and helping others solve complex security challenges rather than simply enforcing rules.

You'll be naturally collaborative, pragmatic and curious.

You'll enjoy engaging with industry, building trusted relationships and representing your organisation externally.

Most importantly, you'll understand that great cyber security isn't about saying "no" - it's about enabling innovation safely.

Why AAF?

Few organisations occupy such a unique position within Australia's digital landscape.

AAF is trusted by universities, research organisations, government agencies and national research infrastructure providers to deliver secure identity and access services that underpin collaboration across the country.

You'll join a highly respected organisation where cyber security is genuinely viewed as a strategic priority, reporting directly to the CEO and working alongside an executive team committed to continually strengthening security capability.

You'll also enjoy:

  • Genuine executive influence and Board exposure.
  • Flexible hybrid working arrangements.
  • The opportunity to become a recognised leader within Australia's cyber security and research community.
  • A collaborative, highly technical and purpose-driven culture.
  • The chance to make a meaningful national impact.

If you're looking for another large enterprise CISO role, this probably isn't it.

But if you're looking for the opportunity to shape strategy, influence a national community, work alongside exceptional technical leaders and build something with genuine purpose, we'd love to hear from you.

Interested?

Hit Apply, or Fynd us here:

�� adam@fyndco.com.au

�� dan@fyndco.com.au 

© 2026 FYND CO. All rights reserved.

Privacy Policy