Membership of the Audit and Risk Committee

Context

The Public Governance, Performance and Accountability Act 2013 (PGPA Act) and Public Governance, Performance and Accountability Rule 2014 (PGPA Rule) requires Commonwealth entities to establish an audit committee. 

ARPANSA’s Audit and Risk Committee (ARC) is appointed by the CEO and comprises an independent Chairperson, and 3 independent members. 

The CEO of the Australian Radiation Protection and Nuclear Safety Agency (ARPANSA) has established an Audit and Risk Committee (the Committee) in accordance with subsection 45(1) of the and Division 3 of the Public Governance, Performance and Accountability Rule 2014 (PGPA Rule). 

Key responsibilities of the Committee include assisting ARPANSA to fulfil its oversight responsibilities by independently reviewing and assessing the systems and controls for financial management, performance and sustainability, systems of risk oversight and management including fraud and corruption, cybersecurity and artificial intelligence controls and systems of internal control including internal audit. 

The Committee must exercise independent judgement and be objective in its deliberation, decisions and advice.

About ARPANSA 

ARPANSA, on behalf of the Australian Government, protects the Australian people and the environment from the harmful effects of radiation. 

We are an independent regulator, health adviser and service provider. We regulate Commonwealth entities that use or produce radiation, provide high-quality advice to government and the community, and deliver scientific and technical services that support radiation protection and nuclear safety.

Current vacancy

Vacancies exist for 2 independent ARC members.

The term of appointment will be for an initial 3-year term from the date of appointment.

The ARC generally meets 5 times a year. Members are required to attend all meetings, as well as be available to provide consideration of matters ‘out of session’. 

Key selection criteria

Applicants are expected to demonstrate experience or expertise in at least 2 of the following key selection criteria:

  1. Financial, audit and assurance expertise: Demonstrated ability to understand and critically assess financial statements and related information. We require CA or CPA-level expertise and experience in Commonwealth financial reporting, accounting and auditing standards, internal and external audit, internal controls, assurance and engagement with the Australian National Audit Office are highly desirable.
  2. Cybersecurity and digital governance: Senior expertise in cybersecurity, information governance and digital transformation assurance is highly desirable, including oversight of legacy systems and risks associated with data and artificial intelligence.
  3. APS and Commonwealth experience: Demonstrated senior-level experience in the Australian Public Service (APS) or a Commonwealth entity, including experience serving on an APS board or Audit and Risk Committee. Demonstrated understanding of public-sector governance, accountability, decision-making and the broader Commonwealth operating environment.
  4. Legal, compliance and integrity: Demonstrated senior-level experience in the provision of legal, regulatory or compliance oversight, with the ability to assess whether an organisation’s legislative obligations, compliance frameworks and mechanisms are fit for purpose. Expertise in areas such as administrative law, regulatory governance, privacy, fraud and corruption control, or public-sector integrity will be highly regarded.
  5. Risk, internal control and integrity: Demonstrated experience in enterprise risk, internal control, internal audit or assurance, with the ability to assess whether risk management and control arrangements are effective and fit for purpose. 

Eligibility requirements and qualifications

ARC members must:

  • hold Australian citizenship,
  • be able to obtain and maintain a Baseline security clearance. Failure to do so may result in termination of the appointment. 

As a minimum requirement, all ARC members must have:

  • the ability to analyse complex information, pursue independent lines of enquiry, exercise sound judgement and provide objective, practical and constructive advice to senior management and the accountable authority
  • professional and constructive engagement, supported by strong interpersonal and stakeholder engagement skills, a collaborative approach, and high standards of integrity and discretion
  • a sound understanding of the PGPA Act, the PGPA Rule and Commonwealth ethical and accountability requirements, including the management of actual, potential and perceived conflicts of interest.

Desirable qualifications or equivalent experience

  • Membership of, or association with, a relevant professional body, such as the Institute of Internal Auditors Australia, CPA Australia, the Risk Management Institute of Australasia, Member Governance Institute of Australia or the Australian Institute of Company Directors 
  • Specific and relevant experience in IT governance, information management, digital and data strategy, information security, and technology auditing in the context of the Commonwealth Protective Security Policy Framework
  • Experience serving on an Audit and Risk Committee, board or comparable oversight body is highly desirable.

Application Process

Applications close 17 September 2026.  

Please submit a CV and cover letter to the ARC Secretariat at auditandrisk@arpansa.gov.au.

The cover letter should:

  • identify and demonstrate the key selection criteria the applicant can meet, noting that applicants are expected to demonstrate experience or expertise in at least 2 criteria
  • list any relevant desirable qualifications or experience relevant to the role
  • confirm that the applicant meets the minimum baseline requirements for all ARC members.

It is anticipated that meetings are in-person, in Victoria; however, candidates outside of Victoria will be given consideration.  

Further information

For more information about the Committee, visit www.arpansa.gov.au/about-us/corporate-publications/audit-and-risk-committee or contact: 

Alison Pryor
Assistant Director, Governance 
Phone: 0447 914 087

Liz Hanna
Assistant Director, Governance
Phone: 0427 662 895

Skill / capability areaExisting member coverage Prospective member skills to prioritise
Commonwealth governance and PGPA framework Moderate coverage, including state government board and regulatory experience. No Commonwealth Public Service experience Senior Commonwealth entity experience and strong knowledge of the PGPA framework. 
Enterprise risk, safety and regulatory oversight Strong coverage through major hazards, occupational hygiene, natural hazards and scientific risk experience. Complementary expertise in enterprise risk, fraud and business continuity would better round out this area.
Financial reporting, accounting and external audit Limited expertise in formal accounting, Commonwealth financial reporting and audit expertise in the available profiles. Highest priority: CPA/CA-level expertise in Commonwealth financial statements, accounting and auditing standards, internal controls and ANAO engagement. 
Internal control, internal audit, quality and accreditation Moderate coverage through safety, regulatory assurance and executive governance experience, but direct internal audit and quality accreditation would be complementary Risk-based internal audit, assurance mapping and remediation of audit findings. Understanding of federal services model.
Performance reporting and evaluation Moderate coverage. Specific Commonwealth performance framework expertise would be complementary.PGPA performance reporting, evaluation and evidence-assurance experience, specifically finance or public sector governance. 
Legal, compliance and integrity Limited coverage. Regulatory governance experience is evident, but formal legal, integrity and compliance expertise would be lacking with the departure of Claire Administrative law, regulatory governance, fraud and corruption control, privacy or integrity expertise. 
Cybersecurity, information governance and emerging technology Limited to moderate coverage. Some IT, but current cyber-governance expertise is requiredHigh priority: senior cybersecurity, digital and information governance expertise, including legacy systems, data risk and AI. 
Scientific, technical and research context Strong coverage through chemistry, chemical engineering, occupational hygiene, physics, nuclear physics, research management and engineering. Not a primary gap. 
Major projects, transformation and change Moderate to strong coverage through executive leadership in complex environments and major research programs. Not a primary gap. 

Access to information FOI disclosure log Information public scheme