IRAP Assessor

Starting Date: ASAP

Job Details

At Excelium, cybersecurity and national security are more than just our focus- it is at the heart of what we do. We are not traditional consultants; we are modern, adaptable, and effective professionals from diverse backgrounds, united by a shared commitment to excellence. Our high-performing teams are at the forefront of shaping regulatory frameworks, developing innovative solutions, and delivering exceptional services to government agencies, private enterprises, and critical infrastructure providers across Australia.

With our growing team of specialists, our mission is to counter complex cyber and national security threats, support maturity uplift and strengthen organisational resilience nationwide, in a way that is fit for purpose, practical and sustainable for the organisations we work with. Our values – building strong relationships, valuing our people, achieving outstanding results, delivering value for money, upholding a solid reputation, and demonstrating honesty and integrity – underpin everything we do.

We are seeking forward-thinking professionals who are curious, perceptive and collaborative, and are ready to contribute to a more secure and cyber-resilient Australia.

Whether you are an established IRAP Assessor or a high-performing GRC professional ready to take the next step, we want to hear from you. 

We are looking for a motivated IRAP Assessor to join our dynamic Assurance Business Unit. In this role, you will evaluate ICT systems against the Information Security Manual (ISM) and Australian Cyber Security Centre (ACSC) guidance, while contributing to real-world solutions that protect Australia’s most critical digital assets.

This position is based in our Barton, Canberra office, with hybrid arrangements available for the right candidate.  

Key Responsibilities

  • Conduct or support IRAP assessments aligned with ACSC and ISM requirements 
  • Review security controls and contribute to key assurance artefacts, including SSPs, SRMPs, SAPs and SARs 
  • Engage directly with government and critical infrastructure clients to build trusted working relationships 
  • Assess control effectiveness and identify compliance gaps and risk treatment recommendations 
  • Work alongside certified IRAP Assessors to build practical experience and support progression toward accreditation (where applicable) 
  • Maintain awareness of evolving frameworks, threats, and regulatory updates.

Who You Are

We welcome both junior and experienced IRAP Assessors for this position, so don’t be shy if you’re still on the accreditation path – we offer a clear career trajectory and tailored mentoring. In saying this, our ideal candidate will already meet the following selection criteria:

Requirements, Experience & Skills

  • NV1 AGSVA Security Clearance
  • Be based in or have the ability to work from Canberra, ACT.
  • 3–5 years’ practical experience in GRC, cybersecurity compliance, or information risk roles 
  • Working knowledge of the ISM, PSPF, and IRAP assessment process 
  • Familiarity with related frameworks (e.g. ISO 27001, NIST 800-53, COBIT) 
  • Strong written and verbal communication skills, with a focus on clarity and precision 
  • Experience working within government or critical infrastructure environments 
  • Progress toward IRAP accreditation or current certification (desirable) 
  • Exposure to cloud security environments (AWS, Azure, PROTECTED) (desirable) 

Why Join The Excelium Team?

Joining Excelium means contributing to meaningful national-level work while continuing to grow your career. You will benefit from: 

  • Competitive remuneration aligned to capability 
  • Day-one mentoring from experienced IRAP practitioners 
  • A collaborative, no-ego culture that supports growth 
  • Exposure to high-impact government and critical infrastructure projects 
  • Flexible working arrangements and supported professional development 

Our Commitment to Diversity

Excelium is an equal opportunity employer and is committed to creating an inclusive workplace that values and celebrates diversity. We strongly encourage applications from Aboriginal and Torres Strait Islander people, veterans, individuals with disabilities, and people of all cultural backgrounds.

How to Apply

If you are ready to build or continue a strong career in Cybersecurity and Assurance, we would love to hear from you. 

Please submit your resume along with a cover letter outlining your experience and explaining why you believe you’re the ideal candidate for this position.

For a confidential discussion, please email your questions to hello@excelium.com.au- let’s talk!