Information Security Risk And Assurance Manager

1 week ago


Melbourne, Victoria, Australia Hesta Full time

Information Security Risk and Assurance Manager At HESTA we're a leading national superannuation fund dedicated to people working in health and community services – a growing sector of ordinary people doing extraordinary things, day in day out, right across Australia.

More than 1 million Australians trust HESTA with their money.

So together, we invest billions of their savings globally, striving to generate strong investment returns and make a real difference to their financial futures.

Our focus is on helping our members enjoy the retirement they've worked hard for.

Do you have a passion for information and cyber security?Do you want to be part of a talented team and a unique opportunity that blends leadership and technical skills?Our business is rapidly transforming and our information security capability is growing.

The opportunity Reporting directly into the GM Information Security, this critical leadership role will oversee and implement robust information security governance, risk, and assurance practices through management of HESTA's Information Security Management System (ISMS).

This role will lead the uplift of maturity and operations of HESTA's Information Security Governance, Risk and Assurance Framework and team, and contribute to the delivery of HESTA's information security program, strategy implementation, key initiatives and priorities.

This includes maintaining and evolving an ISO27001 based ISMS framework, ensuring alignment with the organisation's security objectives, regulatory obligations, and risk appetite.

You will play a vital part in making sure information security is implemented and operated in the way it should be, adhering to regulatory requirements as well as our own policies, standards and procedures, to keep us in check and secureAbout you You have significant experience in a similar information security leadership role, preferably within a highly regulated industry like financial services.

You will have demonstrated experience in security risk management at strategic and operational levels and extensive experience with developing, implementing and overseeing information security policy and control frameworks.

Critical thinking, outstanding communication and stakeholder management skills are key.
You'll work well under pressure and be capable of dealing with multiple priorities.
What's most important is the positive, creative and collaborative energy you bring to work each day.

We're eager for the right person to join our team so if this all sounds like you, don't delay in submitting your applicationYou will be a seasoned Information Security leader that has built and lead security risk and assurance teams.

You will have experience working with or working knowledge of governance tools such as One Trust or Archer GRC, and a working understanding of enterprise operations that span across Public Cloud environments, and security principles across Iaas, Paa S and Saa S.

This role will also develop, govern and oversee technical security assurance capabilities across penetration testing, vulnerability management, and security controls testing.

You will have a strong understanding of security obligations for APRA regulated entities, experience and knowledge of security standards and frameworks such as NIST Cybersecurity Framework, ISO27001/2, including security controls and compliance requirements.

You will be agile in your approach, embrace impactful leadership and develop your team to be the best they can be.

You will work collaboratively with key stakeholders to ensure outcomes are achieved and provide leadership and support to ensure a strong security posture is achieved and maintained in alignment with the HESTA's Information Security Strategy.

For a position description please email Jamila Malkoun We will leave all the 'work you'll be doing' stuff in the PD but here's a few things that you'll get to enjoy working at

HESTA:

Your leave and time off matters, up to 6 days paid volunteer leave, up to an additional 5 days of leave over the end of year and new year period, access your LSL after 3 years Take AL at half pay, and purchase up to 2 weeks additional leave Your professional development matters, up to $5k per year professional development and up to 8 days professional development leave, HESTA scholarships and free access to a range of premium learning tools Your health and wellbeing matters, free annual flu shots and skin checks, incredible social events throughout the year and a comprehensive employee assistance program available 24/7 Your financial wellbeing matters, financial planning support, end of year payment for all Enterprise Agreement-covered employees, incentivised Employee Referral Program and novated lease options HESTA is a great place to work but don't take our word for it, we were named (again) Employer of Choice for Gender Equality 2022.

We celebrate, value and include people of all backgrounds, genders, identities, cultures and abilities.

We welcome and support applications from First Nations people, physically, neuro or culturally diverse, LGBTQI+, and people of any age.

We want all candidates to feel safe, included and provided with the best opportunity to thrive, if you require reasonable adjustments during your application or throughout the recruitment process, please reach out to a member of the Talent team and we'll call you to discuss.

We will be reviewing application as they come in so if you are interested don't delay as the position will be closed off as soon as we find the right person.

Explore more Info Sec / Cybersecurity career opportunities Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.

#J-18808-Ljbffr

  • Melbourne, Victoria, Australia HESTA Full time

    Information Security Risk and Assurance ManagerEver thought about joining a team where your work actually makes a difference to millions of people's financial futures?At HESTA, a leading national superannuation fund focused on health and community services workers, that's exactly what you'll be doing. With over 1 million Australians entrusting us with their...


  • Melbourne, Victoria, Australia LZ Security & Service GmbH Full time

    Information Security & Digital Risk Operations Manager Myer - Melbourne, VICIT Source: u Workin JOB DESCRIPTION Job no: Work type: Permanent / Full time Location: Support Office - Docklands From humble beginnings in downtown Bendigo to supporting Australian communities far and wide- Myer has always been a special place, transcending beyond just a place to...


  • Melbourne, Victoria, Australia Roy Morgan Full time

    7/6/2023 Melbourne CBD location 5 minutes from public transport Career development opportunity to broaden your experienceAs an industry leading market research company, Roy Morgan has an exciting opportunity for an Information Security Risk & Compliance Analyst to join our Quality Systems division at our head office in Melbourne CBD.As part of a team that...


  • Melbourne, Victoria, Australia Roy Morgan Research Full time

    As an industry leading market research company, Roy Morgan has an exciting opportunity for an Information Security Risk & Compliance Analyst to join our Quality Systems division at our head office in Melbourne CBD. As part of a team that contributes to the management of Information Security you will be exposed to all facets of information security management...


  • Melbourne, Victoria, Australia Australian Unity Full time

    Join us and let's make a bigger difference together.It's an exciting time to be joining Australian Unity - we have grown significantly over recent years and are transforming to capitalise on further growth opportunities to help our customers and employees thrive. We operate with commercial principles and with a strong social purpose to create community...


  • Melbourne, Victoria, Australia Experis Full time

    Shape the security strategy for a renowed educational instituate. Permanent opportunity with a competive salary package Hybrid work arrangement Footscray OfficeAs the Cyber Risk and Assurance Manager you will lead cybersecurity governance, risk, compliance, and assurance. You will establish strong security practices, define standards, and manage cyber risks....


  • Melbourne, Victoria, Australia Farm Credit Services Full time

    Senior Information Security Risk Analyst Senior Information Security Risk Analyst (Hybrid in Columbia, SC)AgFirst's Senior Information Security Risk Analyst identifies, investigates, analyzes, and recommends information security guidance to ensure bank assets and processes maintain confidentiality, integrity, and availability while assessing against all...


  • Melbourne, Victoria, Australia Talent International Full time

    australia melbourne permanent negotiable Permanent Position Government Agency CBD Location Hybrid Working Environment VPS6 $130, ,869 + superThe role:Our Victorian Government client is seeking a highly skilled and motivated Security Risk and Assurance Manager to join their Information Management and Technology Division (IMTD).Key Responsibilities: Establish...


  • Melbourne, Victoria, Australia KPMG Full time

    Job DescriptionImmerse yourself in our inclusive, diverse and supportive cultureChoose the way you want to work by embracing our flexible work arrangementCollaborate with sector and technical experts to grow your knowledge and networkKPMG Australia is part of a global network providing extensive services across a wide range of industries and sectors. Our...


  • Melbourne City Centre, Victoria, Australia Department of Education Full time

    Security Assurance Manager PN VPS6 OngoingAbout the opportunityThe department is seeking a Security Assurance Manager to ensure security obligations are effectively identified and managed to enable the successful delivery of information technology strategic and operational plans.The Security Assurance unit defines and governs the progress of audit and...


  • Melbourne City Centre, Victoria, Australia Department of Education Full time

    About the opportunityThis is a VPS6 Ongoing psoition.The department is seeking a Security Assurance Manager to ensure security obligations are effectively identified and managed to enable the successful delivery of information technology strategic and operational plans.The Security Assurance unit defines and governs the progress of audit and compliance...


  • Melbourne, Victoria, Australia Experis Full time

    Leading Victorian Government client is looking for a Security Assurance Analyst in Melbourne for an initial 6 months contract + possible extension. APPLY NOWThe Security Assurance Analyst is responsible for supporting in the following areas:Defining a testing program (both manual and automated) with regular reporting on its progress Contribution to the...


  • Melbourne, Victoria, Australia Talent Street Full time

    Security Assurance Specialist | Contract till Feb 2024 | Federal Govt Agency | Melbourne CBD | Open to AUS Citizens onlyTalent Street is looking for a Security Assurance Specialist for a contract till Feb 2024 with a Federal government agency in Melbourne. Based in CBD, there is a requirement for working 3 days from office per week.Under the guidance of...


  • Melbourne, Victoria, Australia Aurecon Group Full time

    Just imagine your future with us At Aurecon we see the future through a very different lens. Do you? Innovation, eminence and digital are at the heart of everything we do. Are you excited about the future?Are you driven by the opportunity to work on some of the most challenging and complex projects around the world and to learn from the best? We...

  • IT Security, Risk

    1 week ago


    Melbourne, Victoria, Australia Talent International Full time

    Work for this technology and digital services organisation to build on an existing information security program and ongoing security projects that address information security risks and compliance requirements. Your brand-new role will see you monitor and report on compliance with security policies, as well as the enforcement of policies across the company....

  • Security Risk

    1 week ago


    Melbourne, Victoria, Australia Security Bank & Trust Co. Full time

    Aussie Broadband's (ABB) purpose is to the change the game. As our Security Governance, Risk & Compliance (GRC) Analyst, you'll play a pivotal role in supporting the manager of this function. Your primary responsibility will be to assist in the management of our ISO27001 program, where you will be part of a team that function as the central point of contact...


  • Melbourne, Victoria, Australia Aurecon Australasia Pty Ltd Full time

    Just imagine your future with us... At Aurecon we see the future through a very different lens. Do you? Innovation, eminence and digital are at the heart of everything we do. Are you excited about the future? Are you driven by the opportunity to work on some of the most challenging and complex projects around the world and to learn from the best? We are....


  • Melbourne, Victoria, Australia Myer Pty Ltd Full time

    Information Security & Digital Risk Operations Manager Job no: Work type: Permanent / Full time Location: Support Office - Docklands From humble beginnings in downtown Bendigo to supporting Australian communities far and wide- Myer has always been a special place, transcending beyond just a place to work.Myer is a place for finding life-long friendships, a...


  • Melbourne, Victoria, Australia Kinetic IT Full time

    Job no: 493522Employment type: Full TimeLocation: MelbourneCategories: Leadership, Cyber Security- Strategic security leadership role:- Leading national IT services companyAbout the opportunity:We are seeking a highly experienced information security manager who can deliver assurance outcomes across all aspects of the service management lifecycle, with a...

  • Assurance Risk

    1 week ago


    Melbourne, Victoria, Australia Pacific National Full time

    Assurance, Risk and Investigations Principal- Join us to drive a step change in HSE assurance, risk and investigation performance: Strong executive backing to deliver world class HSE outcomes and on-going continuous improvement:- Permanent role with flexible location Sydney, Brisbane, Adelaide or PerthAbout usPacific National (PN) is the largest private...