
Cyber Governance, Risk and Compliance Manager
11 hours ago
Health Care This is an exciting time to join, as we are digitalising our future through a major investment in technology transformation to enhance patient care and experience. Our Digital Security team is at the forefront of this journey ensuring our systems, data, and people remain secure.
OverviewSt John of God Health Care (SJOG) are inviting applications for the Head of Governance Risk and Compliance (GRC) within our Group Digital Security team. This is a great opportunity to lead the continued implementation and maturity of the Cyber GRC function across SJOG.
Responsibilities- Drive cyber governance, risk, and compliance across the organisation.
- Lead policy, standards, and compliance programs including SOCI and Essential Eight.
- Oversee the expansion of cyber risk management, cyber third-party assurance, and the cyber awareness and training program.
- Product Owner for Cyber GRC projects.
- Build and embed a strong cyber security resilience and culture through effective reporting, control monitoring, and frameworks.
- Provide executive and board-level reporting insights on cyber risk.
- Lead and mentor the Cyber GRC team.
- The Head of Cyber GRC is a member of the Digital Security Leadership Team and reports directly to Group Manager Digital Security (CISO).
- A degree in Information Systems, Cyber Security, or a related field (or 8+ years of equivalent experience).
- Relevant certifications such as CISSP, CISM, CISA, ISO Lead Auditor.
- Hands-on experience running a security governance, risk and compliance function, including risk assessments, control monitoring, and reporting.
- Experience building and operating security frameworks (ACSC Essential Eight, ACSC Information Security Manual, ISO27001/2, NIST CSF).
- Strong stakeholder engagement skills, particularly in third-party risk management.
- Excellent verbal and written communication skills.
- Proven ability to lead and inspire teams, with excellent communication skills.
- Experience with a Big 4 consulting firm, or within health, health insurance, banking or finance industries, will be highly regarded.
- Australian citizen or permanent resident.
- Above all, people will be at the core of everything you do, committing to and supporting our Mission and Values.
- Salary: $172,700 to $191,900 per annum (total remuneration package inclusive of super).
- Hybrid work: Mix of Melbourne CBD office and work-from-home arrangements available.
- Salary packaging: up to $18,550 on a range of benefits such as mortgage, rent, meal entertainment, holiday accommodation or other everyday living expenses; options to salary package benefits above the FBT cap on items such as novated leasing, work related expenses, self-education and additional superannuation.
- Employee discounts on St John of God Hospital & Medical Services and Private Health Insurance.
- Employee Support through our dedicated free Employee Assistance Program (EAP).
- Work-life balance: flexible work options, additional purchased leave, and well-being programs.
- Work for a values-based organisation striving to provide care for people: Hospitality, Compassion, Respect, Justice, and Excellence.
If you are passionate about making a real impact in health care through cyber security, we would love to hear from you.
For further information, please contact Ben Lester, Group Manager – Digital Security (CISO) via email: ben.lester@sjog.org.au
No application from recruitment agencies will be accepted
St John of God Health Care embraces diversity and strongly encourages applications from Aboriginal and Torres Strait Islander peoples and people with disabilities. We are committed to providing a safe environment for all children and vulnerable people in our care and proactively take measures to protect children/vulnerable people from abuse.
#J-18808-Ljbffr
-
Melbourne, Victoria, Australia St John Of God Health Care Full timeYour role at St John of God Health CareThis is an exciting time to join, as we are digitalising our future through a major investment in technology transformation to enhance patient care and experience. Our Digital Security team is at the forefront of this journey ensuring our systems, data, and people remain secure.About the RoleThe Head of Cyber GRC is a...
-
Cyber Governance, Risk and Compliance Manager
16 hours ago
Melbourne, Victoria, Australia St John of God Health Care Full timeCyber Governance, Risk and Compliance ManagerHealth Care This is an exciting time to join, as we are digitalising our future through a major investment in technology transformation to enhance patient care and experience. Our Digital Security team is at the forefront of this journey ensuring our systems, data, and people remain secure.OverviewSt John of God...
-
Melbourne, Victoria, Australia St John of God Health Care Full time $172,700 - $191,900 per yearYour role at St John of God Health CareThis is an exciting time to join, as we are digitalising our future through a major investment in technology transformation to enhance patient care and experience. Our Digital Security team is at the forefront of this journey ensuring our systems, data, and people remain secure.St John of God Health Care (SJOG) are...
-
Melbourne, Victoria, Australia St John of God Health Care Full time $172,700 - $191,900Your role at St John of God Health Care This is an exciting time to join, as we are digitalising our future through a major investment in technology transformation to enhance patient care and experience. Our Digital Security team is at the forefront of this journey ensuring our systems, data, and people remain secure.St John of God Health Care (SJOG) are...
-
Melbourne, Victoria, Australia beBeeCyberSecurity Full time $160,000 - $190,000Protect Critical Infrastructure as a Cyber Security GRC ExpertWe are committed to simplifying the energy transition by protecting our critical infrastructure.This role will shape Governance Frameworks, lead risk assessments, manage compliance initiatives, and ensure continuous improvement in our security posture. Key responsibilities include:Governance -...
-
Cyber Governance Risk Consultant
3 days ago
Melbourne, Victoria, Australia beBeeCybersecurity Full time $120,000 - $160,000Job Title: Cyber Governance Risk ConsultantThis role involves working as a Cyber Governance Risk Consultant to join an APAC cybersecurity team.The primary objective is to develop and maintain a robust Governance, Risk, and Compliance (GRC) framework that aligns with industry best practices and regulatory requirements.Key ResponsibilitiesDevelop and...
-
Governance, Risk, And Compliance Analyst
4 days ago
Melbourne, Victoria, Australia Staffx Pty Ltd Full time**About the Company**This IT Services and IT Consulting company is an Australian company that has core competencies in banking and financial services. They work with leading and local companies across the APAC region.Their highly skilled, talented IT specialists are experts in their fields, and employees are placed in key value-adding roles with our...
-
Governance, Risk And Compliance Analyst
4 days ago
Melbourne, Victoria, Australia Nixil Full timeYou will work with a range of stakeholders across the business providing information security compliance and risk management support and guidance.Additionally, you will manage cyber security policies and standards, ensure they are periodically updated and aligned them with the overall Banking Information Security Policy framework.Reporting to the Manager,...
-
Cyber Risk Manager
2 days ago
Melbourne, Victoria, Australia beBeecybersecurity Full time $113,936 - $143,768Job OverviewCyber security risk analysis and documentation are key responsibilities of a Cyber Governance Risk and Compliance Analyst who works closely with project teams, engineers, solution architects, and systems integrators to ensure alignment with relevant security publications and frameworks.Main Responsibilities:Developing and delivering Security...
-
Melbourne, Victoria, Australia beBeeGovernance Full time $140,000 - $180,000Job Overview:We are seeking an experienced Senior Governance, Risk and Compliance specialist to provide advisory services to Australian clients.The successful candidate will have expertise in Australian regulatory frameworks, including APRA CPS230/234, SOCI, ESCO, Australian Privacy Principles, and the Australian Cyber Security Centre guidelines.Key...