
Cyber Governance Risk
2 weeks ago
Your next opportunity
We are seeking a hands-on and operationally focused Cyber Governance & Risk Compliance Specialist to enhance Boral's technology posture by leading the development and implementation of robust governance, risk, and compliance (GRC) frameworks. The Cyber GRC Specialist will bridge governance with engineering, embedding controls into processes, systems, and cloud environments. Partnering closely with cyber operations, IT, and audit teams to ensure security requirements are practical, measurable, and resilient, this role is ideal for someone with a governance mindset, solid influencing skills and a passion for how things work under the hood.
Your day will involve:
Governance, Risk & Compliance
- Develop, deliver, and maintain IT and cyber security standards to protect data, information systems, and industrial control systems across Boral
- Maintain a comprehensive cyber risk register and feed insights into the broader organisational risk framework
- Provide inputs into risk assessments across IT services, ensuring alignment with the NIST Cyber Security Framework
- Deliver and maintain cyber risk mitigation plans in collaboration with IT stakeholders
- Assess key vendors for compliance with Boral's cybersecurity standards
- Translate risk scenarios into actionable technical control requirements
Technical Engagement & Control Validation
- Collaborate with cyber engineering and operations teams to understand how controls function in real-world environments (e.g., log flows, IAM, vulnerability management)
- Support threat modelling and technical risk assessments across IT and OT environments
- Review misconfigurations, patch hygiene, and security findings to determine true business risk
Assurance, Audit & Awareness
- Coordinate internal and external cyber audits
- Work with IT, infrastructure, and vendors to ensure effective business continuity and disaster recovery strategies are in place
- Contribute cyber risk insights to disaster recovery planning and exercises and drive cyber safety and awareness initiatives across the organisation.
What are we looking for?
- Bachelor's degree in computer science or information systems
- Qualifications in IT security - CISSP, CISM
- Experience developing and implementing a Cybersecurity approach using common information security management frameworks, such as International Standards Organization (ISO) 2700x, the IT Infrastructure Library (ITIL), NIST Framework, Mitre and ASD Top 10.
- Has successfully performed risk, business impact, control and vulnerability assessments, and in defining treatment strategies
- Experience participating in technical security reviews or audits.
What's on offer?
- Attractive salary package reflective of your skills and experience
- Genuine career growth opportunities within Boral
- Ongoing mentoring and guidance from industry leaders and subject matter experts
- Broaden your horizons through exposure to our integrated operations
- Modern offices and workstations, close to public transport options and with free on-site parking
- Work for a values-based business that shares goals and celebrates individual and team success
- Work for an Equal Opportunity Employer – At Boral, we understand that diversity brings many benefits, and we are increasingly encouraging greater diversity within our workplaces
- We are Australian-owned and operated
- Opportunity to purchase additional leave
- Generous paid parental leave entitlements.
#LI-JV1
#J-18808-Ljbffr-
Cyber Governance Risk
2 weeks ago
Sydney, New South Wales, Australia Boral Limited Full timeYour next opportunityWe are seeking a hands-on and operationally focused Cyber Governance & Risk Compliance Specialist to enhance Boral's technology posture by leading the development and implementation of robust governance, risk, and compliance (GRC) frameworks. The Cyber GRC Specialist will bridge governance with engineering, embedding controls into...
-
Senior Cyber Risk and Governance Consultant
2 weeks ago
Sydney, New South Wales, Australia beBeeCyberRisk Full time $120,000 - $140,000Cyber Risk and Governance Expert RequiredWe are seeking an experienced Cyber Risk and Governance expert to join our team. As a key member of our organisation, you will be responsible for leading small to mid-scale client engagements and supporting large-scale or strategic projects across various industries.Our ideal candidate will have 4-6 years of hands-on...
-
Cyber Governance Analyst
1 day ago
Sydney, New South Wales, Australia Buscojobs Full timeJoin Stockland's dynamic Cyber Security team and help shape the future of our Technology and Cyber Governance, Risk, and Compliance (GRC) program.We're seeking a skilled and motivated professional to strengthen our cyber security posture by enhancing frameworks, managing risk, and maintaining alignment with business and regulatory requirements.The...
-
Cyber Security Governance and Risk Management Lead
20 hours ago
Sydney, New South Wales, Australia beBeeCyber Full time $1,400,000 - $2,000,000Cyber Security Governance and Risk Management LeadOur organization seeks an experienced cyber security risk management professional to lead our global framework. This individual will develop and maintain policies, procedures, and certifications for ongoing compliance with regulations.Establish a cyber risk assessment methodology/framework to track and report...
-
Cyber Governance Analyst
1 day ago
Sydney, New South Wales, Australia Stockland Full timeJoin to apply for the Cyber Governance Analyst role at StocklandJoin to apply for the Cyber Governance Analyst role at StocklandJoin Stockland's dynamic Cyber Security team and play a pivotal role in shaping our Governance, Risk, and Compliance (GRC) program. We're looking for a highly skilled and motivated professional to support and enhance our cyber...
-
Cyber Governance Expert
2 weeks ago
Sydney, New South Wales, Australia beBeeCyberGovernance Full time $1,200,000 - $1,500,000Cyber Governance Expert RoleThis job post presents a unique opportunity to lead our cyber security team and strengthen our market position through strong sales and business development initiatives.The ideal candidate will have a deep understanding of GRC frameworks, proven sales track records in cyber security, and solid technical backgrounds in cyber...
-
Cyber Security Governance Specialist
20 hours ago
Sydney, New South Wales, Australia beBeeCompliance Full time $149,739 - $173,174Job Title: Governance and Compliance ProfessionalWe are seeking a highly skilled Governance and Compliance professional to lead our organization's cyber security governance frameworks, policies, and assurance activities. This is an exciting opportunity for someone who wants to shape and deliver outcomes that directly support our cyber security resilience and...
-
Cyber Risk Management Specialist
19 hours ago
Sydney, New South Wales, Australia beBeeRisk Full time $100,000 - $185,000Job OverviewThis role is responsible for managing cyber risk, coordinating assurance activities, and implementing security frameworks to improve outcomes and efficiency.Key Responsibilities:Support and maintain the Cyber Governance, Risk, and Compliance (GRC) program, including third-party security assessments and risk register management.Collaborate with...
-
Cyber Security Risk Management Expert
2 weeks ago
Sydney, New South Wales, Australia beBeeCyberSecurity Full time $180,000 - $240,000Cyber Security Risk Management LeaderAbout UsWe are a global player in the construction and infrastructure sector with extensive experience in managing cyber security risks.About the RoleWe are seeking a Cyber Security Risk Management Leader to join our team. This role involves managing a global team to develop and maintain a comprehensive cyber security...
-
Sydney, New South Wales, Australia KPMG Australia Full timeThis is a Director - Cybersecurity Governance, Risk & Compliance role with KPMG Australia based in Sydney, NSW, AU == KPMG Australia ==Role Seniority - directorMore about the Director - Cybersecurity Governance, Risk & Compliance role at KPMG AustraliaJob DescriptionAbout Us: KPMG Australia is part of a global network providing extensive services across a...