Skip to content

Open nowPosted 38 days ago

Senior Cyber Security Engineer

Compass Education14 open roles

Where
Hawthorn
Work mode
Hybrid
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowSenior Cyber Security EngineerCompass Education · Hawthorn
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Compass Education's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.8% of postings close within 7 days. Measured by our own scanner across the market.

Share of postings closed within
  1. 1.7%1 day
  2. 3.5%3 days
  3. 7.8%7 days
  4. 14.6%14 days
  5. 34.1%30 days
This job: posted 38 days ago

The posting

Come shape the future of education with us.

At Compass, we're on a mission to transform the school day for everyone - from staff and students to families and administrators. We build smart, seamless technology that empowers schools to focus on what really matters: learning, growing and thriving.

That mission has fuelled our growth into a global scale-up, now supporting 5,000+ schools across three countries, backed by a team of 300+ people. Our all-in-one school management platform is redefining how education communities connect, communicate and operate.

We're now looking for a Senior Cyber Security Engineer to work closely with our Head of Technology to help build and shape the security roadmap at Compass.

About the Role

You'll play a key role in how the organisation approaches risk, and be a trusted voice on platform, infrastructure and application.

This is a great opportunity for someone who wants to work closely with senior leadership, help build a security function from the ground up, and make a real difference to the safety of a platform used by schools every day.

What you'll do

Security Strategy & Risk

  • Work alongside the Head of Technology to build the security roadmap, set standards and be a trusted voice on security risk and posture.
  • Build and maintain a formal risk register covering vulnerabilities, remediation progress and residual risk.
  • Advise the Head of Technology and senior leadership on security risks, incidents and investment priorities.

Penetration Testing & Vulnerability Management

  • Lead and conduct penetration testing across web applications, APIs, infrastructure and cloud, including managing third-party pen test engagements.
  • Identify and remediate security gaps including access control, database security (MongoDB, Redis, SQL), secrets management and cloud IAM.

Cloud & Infrastructure Security

  • Assess and improve GCP security configuration including VPC architecture, IAM policies, audit logging and Cloud Security Command Centre.
  • Work with DevOps and platform engineers to harden infrastructure and review Terraform and CI/CD pipelines.
  • Oversee application security including OWASP Top 10, code review involvement and secure SDLC guidance for the development team.

Investigations & Data Governance

  • Oversee and quality-assure security investigations, including school-facing audit and access cases handled by junior team members.
  • Ensure investigation processes are documented, consistent and legally defensible under Australian privacy law and, where relevant, UK/EU data protection requirements.
  • Own data access governance - who can access what, under what conditions and with what audit trail.

Incident Response & Resilience

  • Lead incident detection and response across the platform.
  • Design, maintain and continually test Business Continuity Plans (BCPs) to ensure rapid restoration of critical services and mitigate operational impact during disruptions.
  • Define, oversee and validate backup rotation strategies, ensuring strict data integrity, retention compliance and reliable restoration procedures.

Team Leadership

  • Manage and mentor junior team members, including setting workload, providing direction and supporting their development.

Requirements

About You

You will bring:

  • 5+ years of hands-on cyber security experience with depth in both application and infrastructure security.
  • Strong penetration testing skills across web applications, APIs, network and cloud, including managing third-party engagements.
  • Solid cloud security knowledge, particularly GCP or AWS (IAM, network security, audit logging, secrets management and posture tooling).
  • Proven ability to identify and remediate vulnerabilities in production environments.
  • Practical experience with security risk management - building a risk register, prioritising remediation and communicating risk to non-technical stakeholders.
  • Familiarity with database security across relational and NoSQL systems - access control, encryption and audit logging.
  • Understanding of Australian SaaS compliance obligations and privacy frameworks.
  • Clear communication skills - able to translate technical risk for leadership and turn security requirements into practical guidance for engineers.
  • Experience managing or mentoring junior security staff.

Highly regarded:

  • Relevant certifications such as OSCP, CISSP, CISM or equivalent.
  • Familiarity with UK/EU data protection requirements including GDPR.
  • Prior experience in EdTech, SaaS or a high-growth scale-up environment.

Benefits

Why Join Compass

You’ll join a purpose-driven company at a genuinely exciting stage of growth, with the opportunity to make a real impact on education at scale.

What we offer:

  • A hybrid working environment, based out of our Melbourne office hub.
  • Learning and development opportunities, including a dedicated PD budget.
  • 24/7 access to our Employee Assistance Program (EAP), including face-to-face, phone and live chat support.
  • A parental leave program for both primary and secondary carers.
  • Regular team events, social budgets and in-office perks help you stay connected, from team lunches to end-of-week socials.
  • Employee Referral Program
  • A supportive, inclusive culture where your voice is valued and heard.

Compass is proud to be an equal opportunity employer. We embrace and celebrate diversity and are committed to creating an inclusive environment for all employees.

Prior to commencing employment, you’ll need:

  • A valid Employee Working With Children Check
  • A satisfactory National Police Check
  • Verification of unrestricted work rights in Australia (e.g. citizenship, passport or birth certificate)

Ready to Apply?

If you're excited about helping build our security function and keeping a platform used by thousands of schools safe, we'd love to hear from you.

Find out more about Compass on our website - www.compass.education.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Compass Education's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Compass Education's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Compass Education's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.