Senior Governance, Risk, Compliance

2 weeks ago


Sydney, New South Wales, Australia Sas Full time

Senior Governance, Risk, Compliance - Audit (GRC-A) Security Advisor At SAS, where you start doesn't have to be where you end; and there is ample opportunity for internal career mobility.

Whether you're looking to grow a new skill or experience a new role, there's no time like the present to take the next step; and we're here to support you in your journey.

We're looking for a Governance, Risk, Compliance – Audit Security Advisor to join our team in Australia, specifically focused on Compliance in Government.

The role will assess information security and cybersecurity risk, facilitate compliance with regulatory requirements and information security policies, execute assurance testing to required performance standards, and develop and report information security metrics.

They are responsible for lowering information security and cybersecurity risk to SAS, partnering with other teams across the enterprise.

Your responsibilities may include:
While remaining updated of compliance and security regulations and standards within regulated markets for ex: IRAP, ISMAP, ISAE 3000, and/or ISO 27001), provide advisory services to the business, including recommendations for assurance and application of SAS security policies for SAS Cloud, on-premises projects, and country or regional offices.

Review SAS Cloud or on-premises security contract terms, respond to RFP and security questionnaires, and support information security-related discussions with customer security teams and auditors during negotiations and post-sale operational activities.

Facilitate and ensure continuous monitoring activities are operating effectively, identifying control gaps and deficiencies and reporting to management, as applicable.

Assist in the development System Security Plans, Plans of Actions and Milestones, Continuous Monitoring Plans, and Incident Response Plans in collaboration with other teams.

Conduct scheduled and ad hoc reviews of applicable SAS Cloud solution environments, including the support and management of external assessor activities related to certifications and customer contractual requirements.

Research and contribute to information security polices and standards, with the objective of continually maturing operations, while meeting regulatory and compliance obligations.

Participate in security investigations and compliance reviews, as required by contract or regulation.
Identify and recommend cost effective improvements to security practices while maintaining compliance to required standards and regulations.

Use the GRC tool to create and manage continuous monitoring indicators, build reporting dashboards, document electronic work papers, and manage audit documentation.

Identify risk issues and work in collaboration with other teams across the enterprise to remediate.

Other knowledge, skills, and abilities Maintain an ability to be flexible with others, to display tact and diplomacy, and to maintain a high degree of confidentiality and integrity.

Strong time management skills (schedules, prioritization).
Excellent communication, analysis, and process flow skills.
Ability to be flexible, display tact and diplomacy, and maintain confidentiality and integrity.
Must have the ability to work with little supervision, escalating issues, as appropriate.
Perform other duties, as assigned.
Travel as business requirements dictate at management discretion.

Qualifications Bachelor's degree in Business, IT, Computer Science, Project Management or related field5-8+ years of functional experience in project management, management consulting, IT, audit/compliance or related field.

Experience in a regulated (pharmaceutical, banking, insurance, government) industry (may be concurrent with the above functional experience).

Understanding of regulatory standards (ex:
IRAP, PMDA, PCI, NIST
Knowledge and experience with best practices/standards (ex: COBIT, GAMP5, ISO 27000 or

Must be an Australian citizen Successful applicants will be required to complete a background check (including criminal history check) prior to commencement of employment.

Nice to Haves Use and/or implementation of a GRC tool (ex: Service Now, Archer, Teammate, Thompson Reuters)

Management consulting experience Experience with Service Now issue management ticketing system Auditor or security certification (ex:
CISA, IIA, CISSP) and/or training SAS software implementation experience or IT hosting experience Diverse and Inclusive At SAS, it's not about fitting into our culture – it's about adding to it.
We believe our people make the difference.

Our diverse workforce brings together unique talents and inspires teams to create amazing software that reflects the diversity of our users and customers.

Our commitment to diversity is a priority to our leadership, all the way up to the top; and it's essential to who we are.


To put it plainly:
you are welcome here.
Resumes may be considered in the order they are received.
SAS employees performing certain job functions may require access to technology or software subject to export or import regulations.
To comply with these regulations, SAS may obtain nationality or citizenship information from applicants for employment.

SAS collects this information solely for trade law compliance purposes and does not use it to discriminate unfairly in the hiring process.

SAS only sends emails from verified "" email addresses and never asks for sensitive, personal information or money.
If you have any doubts about the authenticity of any type of communication from, or on behalf of SAS, please contact

Explore more Info Sec / Cybersecurity career opportunities Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.

#J-18808-Ljbffr
  • Compliance Lead

    2 weeks ago


    Sydney, New South Wales, Australia Compliance & Risk Management Recruitment Full time

    Compliance & Risk Management Recruitment This role is both strategy & execution and is inviting you to be a part of a dynamic and complex business that takes a long-term and sustainable approach to the way they operate. If you are looking for the next step in your career, where you have ownership and can add value, this job will do it.It is a genuine...


  • Sydney, New South Wales, Australia Compliance and Risk Management Recruitment Full time

    Banking & Finance Analyst Sydney Contract18th August, 2023:Our client is a well-known organisation in the financial markets space. They are looking for a Risk and Compliance Analyst to support the execution of the enterprise compliance framework in relation to a key project.Reporting to the Senior Manager of Enterprise Compliance, responsibilities will...


  • Sydney, New South Wales, Australia SAS Full time

    Senior Governance, Risk, Compliance - Audit (GRC-A) Security AdvisorAt SAS, where you start doesn't have to be where you end; and there is ample opportunity for internal career mobility. Whether you're looking to grow a new skill or experience a new role, there's no time like the present to take the next step; and we're here to support you in your...

  • Chief Risk

    2 weeks ago


    Sydney, New South Wales, Australia Compliance and Risk Management Recruitment Full time

    Government / Local Government Local Government Sydney Permanent / Full Time17th April, 2023:Our client is a leading council that is currently undertaking a large transformation and uplift across the organisation. After a recent restructure that have a newly created Chief Risk & Audit Officer role available for a highly skilled and pragmatic Risk & Audit...

  • Compliance Manager

    2 weeks ago


    Sydney, New South Wales, Australia Compliance and Risk Management Recruitment Full time

    Insurance Insurance Life / Health Sydney Contract08th May, 2023:About:World leading insurance business is currently seeking a Compliance Manager (AVP) to help support the Australian entity.Your role Reporting to the Head Compliance, you will perform a critical role within. To provide responsive, efficient, practical, commercial, and highquality compliance...

  • Governance Officer

    2 weeks ago


    Sydney, New South Wales, Australia Compliance and Risk Management Recruitment Full time

    Government / Local Government Local Government Sydney Permanent / Full Time17th April, 2023:CRM Recruitment are partnering with a busy City Council who are currently going through a transformation and uplift so in turn are seeking a Governance Officer to join their team located conveniently in Sydney's Eastern Suburbs.This is a hands-on role within a small...


  • Sydney, New South Wales, Australia TAL Full time

    Company DescriptionWelcome to This Australian Life.From the millions of Australians we protect, to those that make it happen every day at TAL, people really are what we're all about. We want to grow with you. Achieve with you. And support you to do your best work. That's why we're focused on developing leadership, promoting diversity, rewarding excellence...

  • Compliance Manager

    2 weeks ago


    Sydney, New South Wales, Australia Compliance and Risk Management Recruitment Full time

    Banking & Finance Banking Compliance Sydney Permanent / Full Time02nd February, 2023:Our client is a well-known global investment company. They are a commercial business with exciting initiatives and set up for success. They are looking for a compliance professional to join their existing team.Main responsibilities are: Maintaining compliance and AFSL...


  • Sydney, New South Wales, Australia Continuity Central Full time

    The latest business continuity jobs from around the worldIt is free of charge to post job listings: simply email the job description along with the job title, location and details of how to apply to Governance Advisor – Risk, Compliance & Business Continuity Details Published: 21 July 2023 Location: Australia, SydneyOrganization: Parliament of NSWThis...

  • Compliance Manager

    2 weeks ago


    Sydney, New South Wales, Australia Compliance and Risk Management Recruitment Full time

    Insurance Other Sydney Permanent / Full Time22nd June, 2023:This is an exceptional opportunity join a global Financial Institution in a Compliance Manager role. The organisation has 130 offices around the globe. The imprint is small they try to operate more as a mid size organisation.Key Responsibilities Lead in developing the organisations Compliance...


  • Sydney, New South Wales, Australia Kaizen Recruitment Pty. Full time

    A newly created opportunity to help oversee and strengthen the risk and compliance function of an Endowment Fund Manager.Endowment Fund Newly created role due to growth Hybrid WFH/Flexible working arrangements ABOUT THE OPPORTUNITYOur client are an Endowment Fund based in Sydney's Inner-West.This Senior Risk and Compliance Specialist role will be reporting...


  • Sydney, New South Wales, Australia Kaizen Recruitment Full time

    Compliance & Risk (Banking & Financial Services) Full time Up to $145 K package (based on experience) ABOUT THE OPPORTUNITYOur client are an Endowment Fund based in Sydney's Inner-West.This Senior Risk and Compliance Specialist role will be reporting to the Head of Legal and Compliance, and will be responsible for strengthening and overseeing the existing...


  • Sydney, New South Wales, Australia Domain Group Full time

    Cyber Governance, Risk and Compliance Manager - Sydney Office - Permanent Full TimeWe have a high impact; newly created opportunity for an experienced Cybersecurity Governance, Risk and Compliance (GRC) Manager, to join our Domain team. Reporting into the Chief Information Security Officer (CISO); you will be responsible for the implementation and management...


  • Sydney, New South Wales, Australia Kaizen Recruitment Full time

    Endowment FundNewly created role due to growthHybrid WFH/Flexible working arrangementsABOUT THE OPPORTUNITYOur client operates as an Endowment Fund located in Sydney's Inner-West.This Senior Risk and Compliance Specialist position will report to the Head of Legal and Compliance. The role involves strengthening and overseeing the current risk, compliance, and...

  • Associate Director

    2 weeks ago


    Sydney, New South Wales, Australia Compliance and Risk Management Recruitment Full time

    Education & Child Care University Other Sydney Permanent / Full Time27th November, 2023:This is a senior leadership role with the organisation and will be responsible for supporting the risk function. Reporting to the CRO as the 2IC, this role will be responsible for providing strategic and operational advice to the broader leadership and executive team.Some...

  • Compliance Specialist

    2 weeks ago


    Sydney, New South Wales, Australia Risk Full time

    **We are Woolworths Group**We are Woolworths Group. 200,000+ bright minds, passionate hearts and unique perspectives connected by a shared Purpose - 'to create better experiences together for a better tomorrow.' It's that Purpose that fuels our ambition to explore new ideas, make brave commitments and innovate better ways to meet the food and everyday needs...


  • Sydney, New South Wales, Australia NBN Co Full time

    Job Expectations Build your career and Australia's future Not many people can say they are working on building Australia's future. With us you'll be doing just that, leaving a legacy for all Australians. Plus, there's equal employment, great training, and true flexible working arrangements. A bit about your role The Senior Privacy Risk and...


  • Sydney, New South Wales, Australia Compliance and Risk Management Recruitment Full time

    Legal Lawyer Compliance Sydney Permanent / Full Time03rd February, 2023:Fast growing Australian Fintech is seeking a Legal & Compliance Manager (Head of Legal & Compliance).Key Responsibilities Manage, develop & uplift organisations Compliance framework, polices and management procedure, instilling a culture of continuous improvement. Leading reporting...


  • Sydney, New South Wales, Australia Macquarie Group Limited Full time

    Our diverse and global team are responsible for the Cyber Threat and Incident Response Program's cyber regulatory engagement and response, cyber risk assessment and obligation management, and organizational risk compliance and reporting. You'll help security leadership develop and grow the program's threat-driven risk structure and culture.At Macquarie, we...


  • Sydney, New South Wales, Australia Compliance and Risk Management Recruitment Full time

    Legal Legal Other Sydney Permanent / Full Time04th March, 2024:A Globally recognisable brand is currently seeking an experienced Lawyer to help lead the legal and compliance function.Key Responsibilities Manage, develop & uplift organisations Compliance framework, polices and management procedure, instilling a culture of continuous improvement. Leading...