7 cyber security career opportunities in Australia
Despite efforts in recent years to significantly increase the number of cyber security professionals in Australia, there still remains a significant shortage, according to the Australian Computer Society.
In 2024, approximately 126,000 professionals worked in the cyber security industry. However, the industry will need approximately 4,800 more dedicated cyber professionals each year to meet the demand by 2030, making a cyber security career all the more attractive. In fact, demand is already driving up cyber security salaries.
However, this isn’t the usual callout to those with information technology (IT) skills to upgrade. The Australian Cyber Security Growth Network (AustCyber) highlights the need for a cyber-literate workforce in every single workplace. Whether you’re an intern, a manager or a board member, you must be conscious of cyber risk. It’s important for all of us to engage in daily cyber hygiene practices to keep online information secure.
Today, cyber security impacts an increasing number of areas of life – military, financial, consumer, research, government, transport, social, romantic, corporate, news, art and music, space travel, climate change, energy, education, privacy, police, and emergency response. And most of these areas are underprepared.
With so much opportunity, what do you need to know about cyber security careers in Australia, and is a cyber security career right for you? We’ll explore below.
Australia’s cyber security career landscape
2024 saw the highest number of data breaches in businesses in nearly four years. The two most common causes were phishing and web application attacks.
Also in 2024, supply chain cyber attacks increased by 17 per cent, calling into question Australian organisations’ relationship of trust with their partners and creating even more demand for robust cyber security measures.
Cyber crimes have become more sophisticated, with phishing and web application attacks continuing to evolve. Telstra’s Security Report highlights an ongoing increase in security breaches, especially through software supply chain attacks. This has driven Australian businesses to strengthen their cyber security measures, focusing on continuous monitoring, zero trust principles and vendor risk management.
The Australian government has also enforced stricter regulations, pushing organisations to prioritise cyber security as a key strategic concern to protect against growing threats.
This means that demand for cyber security professionals is high, and the salaries on offer reflect that. The average entry-level salary for cyber security careers is generous, with cyber security analysts receiving an average salary of between $100,000 and $120,000 in 2024, according to Seek.
Careers in cyber security
It’s no exaggeration to say that a career in cyber security can take you anywhere. And with its broad skill requirements and universal applications, cyber security professionals come from all backgrounds.
Here are five careers in cyber security to consider.
Chief information security officer
The chief information security officer (CISO) is at the top of the cyber security hierarchy. They are responsible for an organisation’s vision, strategy and programs to protect information assets and technologies.
The CISO role is usually found in large organisations and government departments. According to Payscale, as of October 2024, CISOs earned an average annual salary of $201,980.
Key skills and educational requirements
The senior position of CISO requires many skills and multiple years of experience. To become a CISO, you should have the following:
- Significant experience in business management and a deep knowledge of information security risk and cybersecurity technology
- Strong understanding of Linux and networking
- Knowledge with industry standards, such as ISO, CERT and COBIT
- Understanding of data privacy regulations
- Understanding of development, security and operations (DevSecOps) and security automation
CISOs typically need a Master of IT Cyber Security and a range of non-technical skills, including exceptional communication and business acumen.
Cyber security analyst
Cyber security analysts are the front line of defence in an organisation’s cyber security team. In quiet times they monitor network access through logs and real-time dashboards. If a breach occurs, they’re ready to lead the response – defending information and infrastructure from attack.
Cyber security analysts need a range of technical skills. They use penetration testing to analyse networks and systems, with the goal of identifying weaknesses before cyber criminals find them. With computer forensics, they analyse data from logs and reports to identify when and where breaches have occurred. They also use reverse engineering to determine the threat posed by a bug or malware.
Cyber security analysts had an average salary of approximately $112,500 in 2024, according to Talent.com.
Key skills and educational requirements
Typically, a cyber security analyst is a junior position filled by a graduate or by an individual with a few years of experience in the industry. To become a cyber security analyst, you need the following:
- Ability to research and evaluate emerging cyber security threats
- Understanding of disaster recovery and ability to create contingency plans
- Knowledge of how to monitor attacks, intrusions and other illegal activity
- Understanding of how to test and evaluate security products
- Ability to design new security systems or upgrade existing ones
- Knowledge of ethical hacking
- Ability to identify potential weaknesses and implement firewalls and encryption
To become a cyber security analyst, graduates typically need a bachelor’s or a master’s degree in IT or cyber security.
Cyber security engineer
Cyber security engineers design and build the networks and computer systems that cyber security analysts monitor. They also monitor an organisation's cyber security to advise on software, hardware and processes that should be introduced.
Key skills and educational requirements
A few skills overlap between a cyber security analyst and a cyber security engineer. To become a cyber security engineer, you need the following:
- Ability to plan, implement, manage, monitor and upgrade security measures to protect organisational data
- Understanding of security measures and protocols
- Knowledge of how to troubleshoot network and security issues
- Ability to test and identify network and system vulnerabilities
- Understanding of how to respond to security breaches
- Ability to liaise with stakeholders throughout the organisation to manage and mitigate security threats
Cyber security engineers had an average salary of approximately $101,300 in 2024, according to Payscale.
Cyber security specialist
Cyber security specialists integrate security into the development stages of software systems, networks and data systems. This might involve reviewing security and providing recommendations, as well as programming customised defence systems and protocols.
Cyber security specialists conduct risk assessments, resting and evaluations to ensure security protocols are up to date. They also develop customised security solutions and run diagnostic tests on existing systems.
Key skills and educational requirements
Typically, a cyber security specialist is a senior role, calling for several years of experience. To become a cyber security specialist, you need the following:
- Ability to build out security during developmental stages of software development
- Understanding of how to look for vulnerabilities and risks in hardware and software
- Knowledge of best-practice IT security infrastructure
- Understanding of firewalls
- Ability to constantly monitor for and mitigate security threats
- Ability to identify perpetrators and manage persecution if required
According to Clicks IT Recruitment, in 2024, cyber security specialists earned an average annual salary of approximately $168,750.
Penetration tester
A hacker forum might be a good place to find a penetration tester – often referred to as an ethical hacker. In the early days of cyber security, penetration testers were often hackers who decided to use their powers for good. These days they are more likely to study penetration testing and learn to think like a hacker without actually being one.
Penetration testers use various hacking techniques to uncover weaknesses in systems and then develop solutions to those weaknesses. They may employ malicious methods to find vulnerabilities, but they are different from cybercriminals or black hat hackers.
According to Seek, penetration testers had an average salary of $120,000 to $135,000 in 2024.
Key skills and educational requirements
Penetration testers need the following skills:
- Ability to perform tests on applications and cloud infrastructures
- Understanding of how to design and conduct engineering attacks
- Knowledge of how to develop methodologies for penetration testing
- Ability to review code for security vulnerabilities
- Knowledge of document security and compliance
- Ability to write technical and executive reports
- Understanding of how to communicate penetration testing findings to technical and non-technical staff
Penetration testers typically need technical skills to obtain Certified Ethical Hacker (CEH) certification, and some positions may require a postgraduate education in a related field.
Systems designer
Systems designers are responsible for developing and designing complex computer systems that ensure data security and efficient performance. They focus on designing networks, software and hardware components to meet an organisation’s security needs.
Systems designers work closely with software engineers, IT teams and business stakeholders to integrate cyber security measures into system designs from the outset. This proactive approach helps protect against data breaches and ensures the resilience of IT infrastructures.
Systems designers also play a crucial role in planning system updates and ensuring scalability to accommodate future growth and evolving threats.
Systems designers had an average salary of approximately $110,000 in 2024, according to Jora.
Key skills and educational requirements
To excel as a systems designer, you’ll need:
- Strong understanding of network architecture and system engineering principles
- Experience with designing secure systems and implementing security measures such as firewalls and intrusion detection systems
- Proficiency in programming languages and system modelling tools
- Knowledge of data encryption techniques and system hardening
- Ability to translate business requirements into effective system designs
A Master’s degree in Cybersecurity, Computer Science or Systems Engineering is typically required. Familiarity with industry standards such as ISO/IEC 27001 is also advantageous.
Cryptographer
Cryptographers specialise in developing algorithms and encryption techniques to secure sensitive information. They work on designing and analysing secure communication methods to protect data from cyber criminals and unauthorised access.
Cryptographers are involved in everything from securing digital communications and financial transactions to developing cryptographic protocols for government or corporate use. Their work is critical in areas like secure messaging, online banking and safeguarding national security interests.
Cryptographers often engage in research to improve existing encryption methods or develop new cryptographic standards to stay ahead of emerging threats.
Cryptographers had an average salary of approximately $175,030 in 2024, according to Salary Expert.
Key skills and educational requirements
To succeed as a cryptographer, you need:
- Advanced knowledge of mathematics, particularly number theory and abstract algebra
- Proficiency in programming and software development for implementing cryptographic algorithms
- Deep understanding of cryptographic protocols, such as SSL/TLS and blockchain technologies
- Strong analytical and problem-solving skills
- Ability to assess the security of encryption methods and perform cryptanalysis
A master’s degree in cyber security, computer science or mathematics is essential. Specialised courses or research experience in cryptography, as well as certifications like Certified Information Systems Security Professional (CISSP), can also enhance career prospects.
Technical skills for cyber security careers
Cyber security professionals benefit from an understanding of the architecture, administration and management of operating systems.
Cyber security graduates should endeavour to list all the following skills on their resumes:
- Security incident handling and response
- Security architecture
- Programming
- Information security
- Analytics and intelligence
- Penetration testing
- Programming skills, including proficiency in C, C++, JavaScript, PHP and SQL
Non-technical skills for cyber security careers
Psychology is an important skill for cyber security, because, ultimately, humans lie behind every weakness, bug, exploit and attack.
Curiosity and scepticism are also important. Cyber security is constantly evolving, and cyber security professionals should love learning and questioning everything without taking things for granted.
Cyber security graduates should also list the following non-technical skills on their resumes:
- Teamwork/collaboration
- Creativity
- Scepticism
- Communication
- Curiosity
- Leadership
Is a career in cyber security right for me?
There are many options when it comes to pursuing a cyber security career. But an important question to ask yourself is: Is a career in cyber security the right choice for me?
It might very well be if you enjoy solving complex problems and have a passion for understanding how systems work. People who are naturally curious and like staying ahead of evolving technology trends may find cyber security to be an exciting and engaging field.
If you seek continuous learning, this field could be very appealing to you because it requires staying up to date with the latest cyber security threats and solutions. Additionally, those who enjoy puzzles, finding vulnerabilities, or thinking critically to protect systems might thrive in this environment.
Another indicator that cyber security could be right for you is if you are detail-oriented and have strong analytical skills. The work often involves monitoring systems, analysing data and identifying patterns that could signal a potential security breach.
Patience and perseverance are also essential qualities, as problem-solving in this field can be challenging and require sustained effort. Moreover, if you are driven by the desire to protect people and organisations from cyber threats and have a strong sense of responsibility for securing data and systems, a career in cyber security could be both fulfilling and meaningful for you.
In the end, we’ll all be cyber security professionals
Understanding cyber security is becoming an increasing part of every job, much like using a computer or phone. You can get the jump on cyber criminals and cyber security graduate jobs by embarking on the right course of study now.
UNSW Online’s Master of Cyber Security is designed for ambitious professionals who want to become technical experts or leaders and leverage lucrative career opportunities in cyber.
You’ll learn how to provide safe and secure online experiences, often to some of the most vulnerable online users. Choose from specialisations in Security Management and Leadership or Security Engineering to further develop your expertise and diversify your career options.
Our program content has been developed with UNSW Engineering, Australia’s leading engineering faculty and a powerhouse of innovation.
Throughout your studies, you’ll have access to world-class course content, flexible study options and ongoing support from our Student Success Advisors.
Build your cyber mindset with UNSW’s Online Master of Cyber Security.