Come shape the future of education with us. At Compass, we're on a mission to transform the school day for everyone - from staff and students to families and administrators. We build smart, seamless technology that empowers schools to focus on what really matters: learning, growing and thriving. That mission has fuelled our growth into a global scale-up, now supporting 5,000+ schools across three countries, backed by a team of 300+ people. Our all-in-one school management platform is redefining how education communities connect, communicate and operate. We're now looking for a Cyber Security Manager to join our Technology team in Melbourne. About the Role Reporting to the Head of Technology, you'll work alongside senior leadership to build and own the security roadmap for Compass. You'll be the primary voice on platform, infrastructure and application security, shaping how the organisation approaches risk and setting the standard for security practice across the business. You'll also manage and mentor a small team, helping to grow the function from the ground up. What you'll do Work alongside the Head of Technology to build the security roadmap, set standards and be the authoritative voice on security risk and posture. Build and maintain a formal risk register covering vulnerabilities, remediation progress and residual risk. Advise the Head of Technology and senior leadership on security risks, incidents and investment priorities. Lead and conduct penetration testing across web applications, APIs, infrastructure and cloud, and manage third-party pen test engagements. Identify and remediate security gaps including access control, database security (MongoDB, Redis, SQL), secrets management and cloud IAM. Assess and improve GCP security configuration including VPC architecture, IAM policies, audit logging and Cloud Security Command Centre. Work with DevOps and platform engineers to harden infrastructure and review Terraform and CI/CD pipelines. Oversee application security including OWASP Top 10, code review involvement and secure SDLC guidance for the development team. Lead incident detection and response across the platform. Oversee and quality-assure security investigations, including school-facing audit and access cases handled by junior team members. Ensure investigation processes are documented, consistent and legally defensible under Australian privacy law and, where relevant, UK/EU data protection requirements. Own data access governance - who can access what, under what conditions and with what audit trail. Manage and mentor junior team members, setting workload, providing direction and supporting their development.
Security Program Manager (Part Time)
Bugcrowd
Manager, Security Operations Center
Huntress
Technical Program Manager, Security & Compliance
Heidihealth
Manager, Cyber Security Operations
Groupcareers
Manager, Concierge Security
Arcticwolf
Senior Engineering Manager - Security Software Engineering
Canva