Information Security Risk and Assurance Manager

1 week ago


Melbourne, Victoria, Australia HESTA Full time
Information Security Risk and Assurance Manager

Ever thought about joining a team where your work actually makes a difference to millions of people's financial futures?

At HESTA, a leading national superannuation fund focused on health and community services workers, that's exactly what you'll be doing. With over 1 million Australians entrusting us with their hard-earned money, we invest globally to secure strong returns and help them enjoy a comfortable retirement.

  • If you're passionate about information and cyber security,
  • If you're looking for a role that combines leadership and technical skills in a talented team,

Our organization is evolving rapidly, and our information security team is expanding.

The Opportunity:

As the Information Security Risk and Assurance Manager, reporting directly to the GM Information Security, you'll be responsible for implementing robust information security practices at HESTA through the Information Security Management System (ISMS).

You'll oversee the enhancement of HESTA's Information Security Governance, Risk, and Assurance Framework, ensuring alignment with security objectives, regulatory requirements, and risk appetite. Your role will involve maintaining and evolving an ISO27001 based ISMS framework, guaranteeing compliance with policies and procedures to keep our data secure.

About You:

If you have extensive experience in information security leadership roles, particularly in regulated industries like finance, this position might be for you. You should possess strong skills in security risk management, policy development, and stakeholder management. Your ability to work under pressure while handling multiple priorities will be crucial. Above all, we value your positive, creative, and collaborative approach to work every day.

You'll lead security risk and assurance teams, working with governance tools like One Trust or Archer GRC and overseeing technical security assurance across various areas. Your familiarity with security standards and frameworks, such as NIST Cybersecurity Framework and ISO27001/2, will be essential.

Your agile leadership style, dedication to impactful leadership, and focus on team development will contribute to a strong security posture aligned with HESTA's Information Security Strategy.

Why HESTA?

As a part of HESTA, you'll enjoy various benefits that prioritize your well-being and professional growth:

  • Generous leave entitlements
  • Professional development opportunities
  • Health and wellness initiatives
  • Financial support and incentives

Join an inclusive workplace that values diversity and equality. Take the chance to thrive in a safe and supportive environment where your individuality is celebrated.

If you're ready to take on this exciting role, apply now before it's gone

Explore more InfoSec / Cybersecurity career opportunities

Discover additional roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics, and Cyber Security, all tailored to your skills and interests.



  • Melbourne, Victoria, Australia Hesta Full time

    Information Security Risk and Assurance Manager At HESTA we're a leading national superannuation fund dedicated to people working in health and community services – a growing sector of ordinary people doing extraordinary things, day in day out, right across Australia.More than 1 million Australians trust HESTA with their money.So together, we invest...


  • Melbourne, Victoria, Australia LZ Security & Service GmbH Full time

    Information Security & Digital Risk Operations Manager Myer - Melbourne, VICIT Source: u Workin JOB DESCRIPTION Job no: Work type: Permanent / Full time Location: Support Office - Docklands From humble beginnings in downtown Bendigo to supporting Australian communities far and wide- Myer has always been a special place, transcending beyond just a place to...


  • Melbourne, Victoria, Australia Roy Morgan Full time

    7/6/2023 Melbourne CBD location 5 minutes from public transport Career development opportunity to broaden your experienceAs an industry leading market research company, Roy Morgan has an exciting opportunity for an Information Security Risk & Compliance Analyst to join our Quality Systems division at our head office in Melbourne CBD.As part of a team that...


  • Melbourne, Victoria, Australia Roy Morgan Research Full time

    As an industry leading market research company, Roy Morgan has an exciting opportunity for an Information Security Risk & Compliance Analyst to join our Quality Systems division at our head office in Melbourne CBD. As part of a team that contributes to the management of Information Security you will be exposed to all facets of information security management...


  • Melbourne, Victoria, Australia Australian Unity Full time

    Join us and let's make a bigger difference together.It's an exciting time to be joining Australian Unity - we have grown significantly over recent years and are transforming to capitalise on further growth opportunities to help our customers and employees thrive. We operate with commercial principles and with a strong social purpose to create community...


  • Melbourne, Victoria, Australia Experis Full time

    Shape the security strategy for a renowed educational instituate. Permanent opportunity with a competive salary package Hybrid work arrangement Footscray OfficeAs the Cyber Risk and Assurance Manager you will lead cybersecurity governance, risk, compliance, and assurance. You will establish strong security practices, define standards, and manage cyber risks....


  • Melbourne, Victoria, Australia Farm Credit Services Full time

    Senior Information Security Risk Analyst Senior Information Security Risk Analyst (Hybrid in Columbia, SC)AgFirst's Senior Information Security Risk Analyst identifies, investigates, analyzes, and recommends information security guidance to ensure bank assets and processes maintain confidentiality, integrity, and availability while assessing against all...


  • Melbourne, Victoria, Australia Talent International Full time

    australia melbourne permanent negotiable Permanent Position Government Agency CBD Location Hybrid Working Environment VPS6 $130, ,869 + superThe role:Our Victorian Government client is seeking a highly skilled and motivated Security Risk and Assurance Manager to join their Information Management and Technology Division (IMTD).Key Responsibilities: Establish...


  • Melbourne, Victoria, Australia KPMG Full time

    Job DescriptionImmerse yourself in our inclusive, diverse and supportive cultureChoose the way you want to work by embracing our flexible work arrangementCollaborate with sector and technical experts to grow your knowledge and networkKPMG Australia is part of a global network providing extensive services across a wide range of industries and sectors. Our...


  • Melbourne City Centre, Victoria, Australia Department of Education Full time

    Security Assurance Manager PN VPS6 OngoingAbout the opportunityThe department is seeking a Security Assurance Manager to ensure security obligations are effectively identified and managed to enable the successful delivery of information technology strategic and operational plans.The Security Assurance unit defines and governs the progress of audit and...


  • Melbourne City Centre, Victoria, Australia Department of Education Full time

    About the opportunityThis is a VPS6 Ongoing psoition.The department is seeking a Security Assurance Manager to ensure security obligations are effectively identified and managed to enable the successful delivery of information technology strategic and operational plans.The Security Assurance unit defines and governs the progress of audit and compliance...


  • Melbourne, Victoria, Australia Experis Full time

    Leading Victorian Government client is looking for a Security Assurance Analyst in Melbourne for an initial 6 months contract + possible extension. APPLY NOWThe Security Assurance Analyst is responsible for supporting in the following areas:Defining a testing program (both manual and automated) with regular reporting on its progress Contribution to the...


  • Melbourne, Victoria, Australia Talent Street Full time

    Security Assurance Specialist | Contract till Feb 2024 | Federal Govt Agency | Melbourne CBD | Open to AUS Citizens onlyTalent Street is looking for a Security Assurance Specialist for a contract till Feb 2024 with a Federal government agency in Melbourne. Based in CBD, there is a requirement for working 3 days from office per week.Under the guidance of...


  • Melbourne, Victoria, Australia Aurecon Group Full time

    Just imagine your future with us At Aurecon we see the future through a very different lens. Do you? Innovation, eminence and digital are at the heart of everything we do. Are you excited about the future?Are you driven by the opportunity to work on some of the most challenging and complex projects around the world and to learn from the best? We...

  • IT Security, Risk

    1 week ago


    Melbourne, Victoria, Australia Talent International Full time

    Work for this technology and digital services organisation to build on an existing information security program and ongoing security projects that address information security risks and compliance requirements. Your brand-new role will see you monitor and report on compliance with security policies, as well as the enforcement of policies across the company....

  • Security Risk

    1 week ago


    Melbourne, Victoria, Australia Security Bank & Trust Co. Full time

    Aussie Broadband's (ABB) purpose is to the change the game. As our Security Governance, Risk & Compliance (GRC) Analyst, you'll play a pivotal role in supporting the manager of this function. Your primary responsibility will be to assist in the management of our ISO27001 program, where you will be part of a team that function as the central point of contact...


  • Melbourne, Victoria, Australia Aurecon Australasia Pty Ltd Full time

    Just imagine your future with us... At Aurecon we see the future through a very different lens. Do you? Innovation, eminence and digital are at the heart of everything we do. Are you excited about the future? Are you driven by the opportunity to work on some of the most challenging and complex projects around the world and to learn from the best? We are....


  • Melbourne, Victoria, Australia Myer Pty Ltd Full time

    Information Security & Digital Risk Operations Manager Job no: Work type: Permanent / Full time Location: Support Office - Docklands From humble beginnings in downtown Bendigo to supporting Australian communities far and wide- Myer has always been a special place, transcending beyond just a place to work.Myer is a place for finding life-long friendships, a...


  • Melbourne, Victoria, Australia Kinetic IT Full time

    Job no: 493522Employment type: Full TimeLocation: MelbourneCategories: Leadership, Cyber Security- Strategic security leadership role:- Leading national IT services companyAbout the opportunity:We are seeking a highly experienced information security manager who can deliver assurance outcomes across all aspects of the service management lifecycle, with a...

  • Assurance Risk

    1 week ago


    Melbourne, Victoria, Australia Pacific National Full time

    Assurance, Risk and Investigations Principal- Join us to drive a step change in HSE assurance, risk and investigation performance: Strong executive backing to deliver world class HSE outcomes and on-going continuous improvement:- Permanent role with flexible location Sydney, Brisbane, Adelaide or PerthAbout usPacific National (PN) is the largest private...