Senior Security Specialist
- Work from anywhere in New Zealand
- Permanent, Full-Time
Join a team helping strengthen and protect the future of healthcare technology across Aotearoa. Health New Zealand | Te Whatu Ora is looking for an experienced Senior Security Specialist to lead security assurance, risk management, and compliance activities that support safer digital health services for all New Zealanders.
Health New Zealand | Te Whatu Ora is firmly grounded in the principles of Te Tiriti o Waitangi and is committed to building a health system that serves all New Zealanders through partnership, equity, sustainability, whānau-centred care, and excellence.
The Role
As a Senior Security Specialist, you'll play a key national role in strengthening Health NZ's cyber security posture through security assurance, risk mitigation, and governance activities across complex ICT and medical system environments.
Reporting to the National Security Technical Assurance Manager, you'll work closely with project teams, architects, business stakeholders, and security specialists to ensure systems and solutions align with organisational security standards, architecture principles, and industry best practice.
This is an assurance-focused role where you'll provide expert security consultancy, lead certification and accreditation activities, and support the development of secure-by-design solutions that protect Health NZ's information assets in an evolving digital landscape.
Key responsibilities include:
- Leading security assurance, risk assessments, vulnerability analysis, and certification & accreditation activities across national projects and programmes
- Ensuring systems and solution designs align with NZISM, HISF, Privacy Act 2020 requirements, and Health NZ security standards
- Providing trusted security consultancy and risk management advice to business units, project teams, and system owners
- Supporting secure architecture and control design while maintaining compliance with enterprise security frameworks
- Partnering with stakeholders to identify, assess, and mitigate cyber security risks across operational environments
- Mentoring and supporting Security Specialists while promoting a strong culture of security assurance and continuous improvement
About the team
This role sits within the Security Assurance function as part of the wider Digital Services group at Health NZ.
The Security Assurance team works across nationally delivered services and programmes to strengthen cyber resilience, improve compliance outcomes, and ensure systems are designed and operated securely. The team partners closely with architecture, operations, governance, risk, and delivery teams to support safe, secure, and reliable digital health services across Aotearoa.
What you'll bring
You'll be an experienced cyber security professional who thrives in complex enterprise environments and enjoys balancing security, operational requirements, and strategic outcomes. You'll bring strong technical assurance expertise alongside the ability to influence stakeholders, mentor others, and drive security best practice across large-scale programmes.
You'll be someone who can confidently navigate both technical and business conversations while maintaining a pragmatic and risk-based approach to cyber security. Experience working within large or highly regulated environments — particularly government or health - will position you well for success in this role.
You will also bring:
- Minimum 8 years' cyber security experience, including at least 2 years in a senior or leadership role
- Proven experience conducting security control assessments, risk analysis, vulnerability assessments, and assurance activities
- Industry-recognised certifications such as CISSP, CISM, or CISA
- Strong knowledge of security frameworks and standards including ISO 27001, NIST, NZISM, HISF, and Certification & Accreditation processes
- Experience working within governance, risk, and compliance (GRC) frameworks
- Excellent written and verbal communication skills, including development of security standards, policies, and guidance documentation
- Strong stakeholder engagement and relationship management capability across technical and non-technical teams
- A Master's degree in Computer Science, Information Systems, or a related discipline
Why join Health NZ?
At Health New Zealand | Te Whatu Ora, our people are at the heart of everything we do. We are committed to building an inclusive workplace that values diversity, supports development, and enables our people to thrive while contributing to better health outcomes for communities across Aotearoa.
The Equity Work Programme at Health NZ supports cultural and system-wide change to help achieve equitable health outcomes for all New Zealanders.
Our commitment to equity, diversity, and inclusion
We want to see the real you in your application and welcome the real you on board if you come and work with us. Skills and experience can be gained in many ways — through whānau life, community involvement, volunteering, or professional experience. If you believe you have the capability to succeed in this role, we encourage you to apply and share your story with us.
We particularly welcome applications from our diverse Māori, Pacific, disabled, and rainbow communities.
How to apply
To view the position description and apply for this role, please click “Apply Now.” All applications must be submitted through our online careers portal before 11:59pm on Sunday, 31 May, 2026.
For any questions about the role, please contact Ash Mohan at ash.mohan@tewhatuora.govt.nz
Whilst Health New Zealand is undergoing change, affected employees will be given preference and priority where applicable.

Job details
| Job Reference: | HNZ/1924104 | |
|---|---|---|
| Location: |
|
|
| Job type: | Permanent Full time | |
| Expertise: |
|
|
| Closes: | 31-May-2026 | |
| Attachments: | Senior Security Specialist - Position Description.pdf (PDF, 264KB) Job Description |