Cyber Security GRC Senior Manager

3 days ago


Sydney, New South Wales, Australia Laing O'Rourke group Full time

About Laing O'Rourke

Laing O'Rourke is a $6 billion international operation with 70 years of involvement in Australian construction and infrastructure, including nearly two decades under the Laing O'Rourke banner. The business delivers projects as diverse as the environments in which they are built, from high security military bases and major rail transport infrastructure projects, through to landmark buildings at the transport interface. Laing O'Rourke owns Australia's fourth largest plant and equipment hire company called Select Plant Australia. We know the right culture combined with purposeful technology will help us meet demand and deliver certainty for our clients. That's the #powerofexperience.

About the Role

Laing O'Rourke is currently seeking a Cyber Security GRC Senior Manager to join our dynamic team in Sydney. This role primarily focuses on managing a global team to develop and maintain the cyber security risk management framework, identifying and assessing cyber risks, developing and implementing cyber security policies and procedures, as well as ensuring ongoing compliance with cyber certifications and relevant regulations.

Key Responsibilities

  • Develop the cyber risk assessment methodology/framework to manage, track and report on cyber security risks in line with the business risk tolerance.
  • Manage the renewal of all cyber security certifications the business must maintain for client bids and projects by engaging and working with the relevant internal teams and governing bodies.
  • Work with Laing O'Rourke's business units and with other risk functions to identify security requirements, using methods that may include risk and business impact assessments.
  • Provide support, training and guidance to the cyber security team on cyber risk management practices and processes.
  • Participate in the plan, design and enhancements to processes to assess and measure ongoing supplier security compliance.
  • Oversee interaction with cyber security auditors (internal / external) and regulators and third parties.
  • Understand potential and emerging cyber security threats, vulnerabilities, and control techniques and the trade-offs required to manage the different levels of risk appetite and risk exposure across the global business.

About You

  • Minimum 8-10 years of experience in a combination of risk management, enterprise information security and/or cyber security functions.
  • Proven track record and experience with security frameworks, standards and best practices for compliance (NIST, ISO27001, NCSC Cyber Essentials, ACSC Essential 8).
  • Proven track record and experience in creating and maintaining cyber threat models and risk management frameworks in a global corporate environment.
  • Knowledge of best practices of IT security hardware and software, security suites, identity and access management.
  • CISSP, CISM, CISA, CRISC strongly preferred.
  • Minimum 5 years of managerial or supervisory experience leading multiple teams in a global environment.

Benefits

We work hard to create an environment that brings out the best in our people. We believe in building careers through providing a safe, connected and innovative culture that supports ongoing growth and development. We offer industry-leading benefits such as specialised learning and development programs, a mental health and wellbeing program, industry leading paid parental leave policy, an additional purchased leave option and coaching programs for staff on parental leave.

Diversity & Inclusion

We are committed to building a workforce that reflects the diverse society in which we live and work. Laing O'Rourke is proud to hold the Workplace Gender Equality Agency (WGEA) Citation - Employer of Choice for Gender Equality.

Laing O'Rourke actively supports a diverse workforce and strongly encourages applications from Aboriginal and Torres Strait Islander Peoples and people from culturally diverse backgrounds. Download our Stretch Reconciliation Action Plan at

https://www.laingorourke.com/company/diversity-and-inclusion

Applications from recruitment agencies will not be considered.

#J-18808-Ljbffr

  • Sydney, New South Wales, Australia Skylight Cyber Security Full time

    OverviewSkylight Cyber is a young, transparent, and culture-focused boutique cyber security firm specialising in providing high-end services to enterprises globally. We provide our customers with world class expertise to build and continuously evolve an effective security stack across people, process, and technology.We thrive and are passionate about the...


  • Sydney, New South Wales, Australia Snowy Hydro Full time

    Press Tab to Move to Skip to Content LinkSelect how often (in days) to receive an alert:Snowy Hydro is a dynamic, integrated energy business that has been providing on-demand, reliable energy to Australia for generations. Snowy Hydro owns and operates a powerful combination of generation assets, including the mighty Snowy Mountains Scheme, gas and diesel...


  • Sydney, New South Wales, Australia Naviro Full time

    OverviewItalian Speaking Cyber Security GRC Specialist – Naviro, Sydney, New South Wales, Australia.EngagementContract, up to 3 months.Base pay rangeA$120.00/hr - A$150.00/hrClient needThey have a contract requirement (up to 3 months) looking for an Italian speaking Cyber Security GRC Specialist. Client's need for Italy's Cloud Strategy Attestation: CSPs...


  • Sydney, New South Wales, Australia beBeeCyber Full time $120,000 - $140,000

    Job Description:">As a Cyber Security Specialist, you will lead small to mid-scale client engagements and support large-scale or strategic projects. You will independently conduct assessments using various frameworks to identify risk and control gaps.">Responsibilities:">">Design and embed enterprise cyber risk programs, including registers, treatment plans,...

  • Cyber Security

    3 weeks ago


    Sydney, New South Wales, Australia Buscojobs Full time

    Be the cyber SME for the organisation and drive uplift. Cover both technical responsibilities and GRC requirements. Protect a key local organisation that services the community.Cyber Security & Cloud AnalystHudson is proud to partner exclusively with a local government organisation to assist in recruiting a Cyber Security & Cloud Analyst. Working within a...


  • Sydney, New South Wales, Australia beBeeCybersecurity Full time $180,000 - $240,000

    Chief Information Security Officer PositionThis is a high-profile opportunity for an experienced Chief Information Security Officer (CISO) to lead the organisation's cyber security strategy.Develop and deliver the security strategy and roadmap in accordance with regulatory requirementsDrive uplift of cyber security across operational environments and ensure...


  • Sydney, New South Wales, Australia beBeeSecurity Full time

    Job TitleWe are seeking a skilled Security Analyst to join our team. This is a vital role that requires expertise in cyber security and experience working with Microsoft Sentinel SIEM.About the RoleThis position involves monitoring and responding to cyber security events, acting as a key escalation point for junior analysts, and assisting with process review...


  • Sydney, New South Wales, Australia Commonwealth Bank Full time

    Join to apply for the Senior Supplier Manager – Cyber Security role at Commonwealth Bank2 days ago Be among the first 25 applicants Join to apply for the Senior Supplier Manager – Cyber Security role at Commonwealth Bank You're a procurement specialist with a keen understanding of ITOur team drives successful supplier engagement for Cyber Security...


  • Sydney, New South Wales, Australia beBeeCybersecurity Full time $100,000 - $185,000

    Cyber Security Governance RoleStockland is seeking a highly skilled professional to support and enhance its cyber security frameworks, ensuring alignment with business requirements and regulatory standards.This role will manage cyber risk, coordinate assurance activities, and help implement security frameworks—while leveraging AI tools to improve outcomes...


  • Sydney, New South Wales, Australia Bae Systems. Full time

    Cyber Security IT/OT SpecialistAt BAE Systems AustraliaBe part of the largest and most complex industrial undertaking in Australia's history - SSN AUKUSDo interesting work that MATTERSGROW your careerBe YOUWe work in a thriving sector - one that puts us at the forefront of exciting and meaningful work.Every day we push boundaries to produce some of the...