Head of Cyber Security Risk and Governance

3 weeks ago


Melbourne, Victoria, Australia Decipher Bureau Full time
Head of Cyber Security Risk and Governance

An exciting leadership opportunity for a seasoned Cyber Risk and Governance expert ready to make a significant impact.

Role Title: Cyber Governance, and Risk and oversight Lead

Are you passionate about driving transformative change in cyber governance and risk? Do you thrive in building, leading, and mentoring teams? Do you have the expertise to uplift the cyber maturity of a complex organisation?

If you're looking for a challenging and rewarding role where you can influence strategy, build a high-performing team, and engage at the executive level, this could be the perfect opportunity for you.

Company: We are partnering with a leading ASX-listed organisation that values innovation. The company has invested heavily in cyber risk management, successfully implementing multiple initiatives to enhance its security posture. As they continue to grow, there is a critical need for a robust second-line risk function, and they are seeking a Cyber Risk and Governance Lead to drive this transformation.

Role Overview: This role is ideal for an experienced professional with a strong background in cyber risk management and governance, particularly in first and second-line risk functions. Reporting directly to the CISO, you will lead the Cyber Governance and Risk team, shaping the strategic direction of cyber risk management while ensuring alignment with broader business objectives.

This role is open to anyone based out of Melbourne or Sydney, with Hybrid working arrangements available, and 3 days in-office per week.

Key Responsibilities:

  1. Lead and mature the cyber governance and risk function, developing comprehensive risk frameworks and governance programs across the organisation.
  2. Deliver measurable value, ensuring risk initiatives drive real business impact across multiple brands.
  3. Enhance risk metrics and reporting, providing clear, actionable insights to the board and executive leadership.
  4. Scope and execute complex cyber governance initiatives, ensuring feasibility and setting clear expectations.
  5. Drive strategic direction, ensuring cyber risk programs align with business objectives and industry best practices.
  6. Build and lead a high-performing team, recruiting, coaching, and mentoring professionals in cyber governance and risk.
  7. Engage with senior stakeholders, including the board, heads of, and cross-functional teams, to foster collaboration and strong cyber risk culture.
  8. Manage governance for emerging risks, including AI, M&A, and regulatory changes.
  9. Ensure hands-on involvement in designing and executing governance policies and controls, beyond just project oversight.

Experience Required:

  1. Minimum 8 years of experience in cyber risk management, governance, and technology risk.
  2. Strong leadership experience with demonstrated success in leading teams and driving business outcomes.
  3. Expertise in second-line risk functions, with a deep understanding of governance frameworks (ISO, NIST, FAIR).
  4. Proven ability to build confidence at board level and communicate cyber risk strategies effectively.
  5. Experience in complex environments, ideally spanning enterprise, security consulting, and regulated industries.
  6. Industry breadth is important – the right candidate should have experience beyond a single program and/or sector, with exposure to banking, finance, government, or highly regulated environments.

Why Join:

  1. Play a pivotal role in shaping the future of cyber governance and risk within a large Australian enterprise.
  2. Grow and build a new team, recruit, coach, and mentor.
  3. A meaningful role. Contribute to high-impact projects that drive business growth and enhance risk management capabilities.
  4. Gain exposure to a wide range of industries, including mergers & acquisitions and AI, in a constantly evolving environment.

Location: Melbourne or Sydney.

Hybrid WFH Flexibility: Hybrid working, 3 days in-office per week.

How to apply: Click apply or submit your CV to jasmine@decipherbureau or cwhyte@decipherbureau.com for a 100% confidential, informal conversation where your privacy will absolutely be respected.

Decipher Bureau and the clients we partner with are committed to creating a diverse environment and are proud to be equal-opportunity employers. All qualified applicants will be considered for employment without attention to race, colour, religion, sex, sexual orientation, gender identity, national origin, veteran, or disability status.

Seniority level

Director

Employment type

Full-time

Job function

Information Technology

Industries

Technology, Information and Media, IT Services and IT Consulting, and Retail

#J-18808-Ljbffr

  • Melbourne, Victoria, Australia Decipher Bureau Full time

    Head of Cyber Security Risk and Governance An exciting leadership opportunity for a seasoned Cyber Risk and Governance expert ready to make a significant impact. Role Title: Cyber Governance, and Risk and oversight Lead Are you passionate about driving transformative change in cyber governance and risk? Do you thrive in building, leading, and mentoring...


  • Melbourne, Victoria, Australia Decipher Bureau Full time

    Head of Cyber Security Risk and Governance An exciting leadership opportunity for a seasoned Cyber Risk and Governance expert ready to make a significant impact. Role Title: Cyber Governance, and Risk and oversight Lead Are you passionate about driving transformative change in cyber governance and risk? Do you thrive in building, leading, and mentoring...


  • Melbourne, Victoria, Australia Decipher Bureau Full time

    Job Title:Cyber Security Risk Governance LeaderCompany Overview:Decipher Bureau partners with leading ASX-listed organisations to drive transformative change in cyber governance and risk. With a strong focus on innovation, our clients value expert advice to enhance their security posture.Role Overview:This exciting leadership opportunity seeks an experienced...


  • Melbourne, Victoria, Australia Cyber Crime Full time

    At UniSuper, we're dedicated to delivering great retirement outcomes for our members. Our culture is focused on being the best place to work in superannuation, driven by our values of genuine care and a passion for outcomes.About the Role:This position supports the Manager of Security Governance, Risk and Compliance (GRC) in delivering information security...


  • Melbourne, Victoria, Australia Cyber Crime Full time

    Security Governance, Risk and Compliance ConsultantAt UniSuper, we're dedicated to delivering great retirement outcomes for our members. With a rich history in the University sector, we are now a place where future-minded Australians come together. Our culture is focused on being the best place to work in superannuation, driven by our values of genuine care,...


  • Melbourne, Victoria, Australia Cyber Crime Full time

    Cyber Crime requires professionals who can deliver information security GRC initiatives and manage security risks across the organisation. This role will support the Manager of Security Governance, Risk and Compliance (GRC) in conducting security risk assessments, maintaining compliance with the NIST Cyber Security Framework, and facilitating workshops with...


  • Melbourne, Victoria, Australia Decipher Bureau Full time

    Transformative Cyber Governance Opportunity for a Seasoned ExpertDecipher Bureau is partnering with a leading ASX-listed organisation to drive transformative change in cyber governance and risk management.The company has invested heavily in cyber risk management, implementing multiple initiatives to enhance its security posture. As they continue to grow,...


  • Melbourne, Victoria, Australia Decipher Bureau Full time

    Cyber Governance and Risk TransformationThis is a pivotal leadership opportunity for an experienced Cyber Risk and Governance expert to drive transformative change in cyber governance and risk management. The ideal candidate will have a strong background in cyber risk management, governance, and technology risk, with expertise in second-line risk functions...


  • Melbourne, Victoria, Australia Decipher Bureau Full time

    Cyber Governance and Risk TransformationWe are seeking a highly experienced Cyber Risk and Governance expert to drive transformative change in our client's second-line risk function.This leadership opportunity is perfect for someone who thrives in building, leading, and mentoring teams, and has expertise in complex environments spanning enterprise, security...

  • Cyber Security Expert

    2 weeks ago


    Melbourne, Victoria, Australia State of Victoria Full time

    **Job Description:**This position is available for a highly skilled and experienced professional who can lead investigations into cyber security incidents to support successful response activities in partnership with government and private industry stakeholders.About the Role:The Senior Cyber Incident Response Analyst will be responsible for leading and...

  • Cyber Risk Manager

    3 days ago


    Melbourne, Victoria, Australia Cyber Crime Full time

    Cyber Crime - Job DescriptionJob Overview:We are seeking a highly skilled Cyber Risk Manager to join our team. As a key member of our Cyber Crime department, you will play a pivotal role in shaping the future of our team and advising clients on enhancing their IT governance, risk, and control frameworks.About the Role:You will coach and mentor team members,...


  • Melbourne, Victoria, Australia Jenny Barbour IT and Project Recruitment Full time

    **Job Overview:**Jenny Barbour IT and Project Recruitment is seeking a highly skilled Cyber Security Specialist to join our team. The ideal candidate will possess a strong understanding of technology and cyber risk management frameworks, security controls assessment based on the current threat landscape, operational risk management, and controls assurance...


  • Melbourne, Victoria, Australia Decipher Bureau Full time

    Risk Management and Governance ExpertiseA Director-level leadership opportunity exists for an accomplished Cyber Risk and Governance expert to bring their extensive experience and expertise to Decipher Bureau. As Head of Cyber Security Risk and Governance, you will lead the Cyber Governance and Risk team, driving transformative change in cyber governance and...


  • Melbourne, Victoria, Australia eFinancialCareers Ltd. Full time

    ResponsibilitiesAs a Risk and Compliance Specialist - Cyber Governance, you will be responsible for identifying key security risks and ensuring the department can detect, mitigate, and withstand cyber threats.You will conduct security risk analysis of internal systems and implement risk management practices aligned with MITRE Att&ck, NIST, ISO 31000/27001,...


  • Melbourne, Victoria, Australia PEXA Full time

    About YouYou will be a seasoned cyber security professional with expertise in managing Information Security Management Systems (ISMS) at a group level. Your hands-on experience in cyber security, with a focus on Governance, Risk and Compliance (GRC) or Information Security Management, will be crucial.A minimum of 5 years' experience in managing complex...


  • Melbourne, Victoria, Australia Decipher Bureau Full time

    This challenging and rewarding role offers the opportunity to influence strategy, build a high-performing team, and engage at the executive level.You will be responsible for delivering measurable value, ensuring risk initiatives drive real business impact across multiple brands.A key aspect of this role is managing governance for emerging risks, including...

  • Cyber Security Lead

    4 weeks ago


    Melbourne, Victoria, Australia Recoded Full time

    Direct message the job poster from RecodedDirector & Principal at Recoded | 60+ Recommendations | CSMCyber Security Lead – MelbourneDrive Cyber Resilience | Lead Security Initiatives | Shape a Secure FutureAre you passionate about cyber security and ready to take on a leadership role in a dynamic financial services environment? A leading financial services...

  • Cyber Risk Advisor

    2 weeks ago


    Melbourne, Victoria, Australia Jenny Barbour IT and Project Recruitment Full time

    Direct message the job poster from Jenny Barbour IT and Project RecruitmentCyber Security & Technology Risk AssessmentsInitial 12 Month ContractPosition Overview:The Cyber Risk Advisor is responsible for the identification, assessment, and mitigation plan (including pragmatic recommendations on appropriate controls) for cyber, technology, and associated...


  • Melbourne, Victoria, Australia Macquarie Bank Limited Full time

    At Macquarie, we're committed to fostering a diverse and inclusive workplace where everyone contributes ideas and drives outcomes. Our Cyber Security Supplier Assurance team plays a crucial role in ensuring the seamless experience of staff, clients, and external stakeholders throughout the end-to-end cyber assessment process.We assist relationship managers...


  • Melbourne, Victoria, Australia at Full time

    Accelerate Victoria's renewable energy transition with a career in technology governance.About UsWe are a 'for purpose' government-owned renewable energy company empowering our people to make a difference. Our mission is to accelerate Victoria's transition to renewables and help achieve the state's 95% renewable energy target by 2035.Your RoleAs a Technology...