Information Security Risk and Assurance Manager

3 weeks ago


Melbourne, Australia HESTA Full time

Information Security Risk and Assurance Manager

**Be inspired everyday**

At HESTA we're a leading national superannuation fund dedicated to people working in health and community services - a growing sector of ordinary people doing extraordinary things, day in day out, right across Australia.

More than 1 million Australians trust HESTA with their money. So together, we invest billions of their savings globally, striving to generate strong investment returns and make a real difference to their financial futures. Our focus is on helping our members enjoy the retirement they've worked hard for.
- **Do you have a passion for information and cyber security?**:

- **Do you want to be part of a talented team and a unique opportunity that blends leadership and technical skills?**

Our business is rapidly transforming and our information security capability is growing.

**The opportunity**

Reporting directly into the GM Information Security, this critical leadership role will oversee and implement robust information security governance, risk, and assurance practices through management of HESTA's Information Security Management System (ISMS).

This role will lead the uplift of maturity and operations of HESTA's Information Security Governance, Risk and Assurance Framework and team, and contribute to the delivery of HESTA's information security program, strategy implementation, key initiatives and priorities.

This includes maintaining and evolving an ISO27001 based ISMS framework, ensuring alignment with the organisation's security objectives, regulatory obligations, and risk appetite.

You will play a vital part in making sure information security is implemented and operated in the way it should be, adhering to regulatory requirements as well as our own policies, standards and procedures, to keep us in check and secure

**About you**

You will be a seasoned Information Security leader that has built and lead security risk and assurance teams. You will have experience working with or working knowledge of governance tools such as One Trust or Archer GRC, and a working understanding of enterprise operations that span across Public Cloud environments, and security principles across Iaas, PaaS and SaaS. This role will also develop, govern and oversee technical security assurance capabilities across penetration testing, vulnerability management, and security controls testing.

You will have a strong understanding of security obligations for APRA regulated entities, experience and knowledge of security standards and frameworks such as NIST Cybersecurity Framework, ISO27001/2, including security controls and compliance requirements.

You will be agile in your approach, embrace impactful leadership and develop your team to be the best they can be. You will work collaboratively with key stakeholders to ensure outcomes are achieved and provide leadership and support to ensure a strong security posture is achieved and maintained in alignment with the HESTA's Information Security Strategy.

**We will leave all the 'work you'll be doing' stuff in the PD but here's a few things that you'll get to enjoy working at HESTA:
- Your leave and time off matters, up to 6 days paid volunteer leave, up to an additional 5 days of leave over the end of year and new year period, access your LSL after 3 years Take AL at half pay, and purchase up to 2 weeks additional leave
- Your professional development matters, up to $5k per year professional development and up to 8 days professional development leave, HESTA scholarships and free access to a range of premium learning tools
- Your health and wellbeing matters, free annual flu shots and skin checks, incredible social events throughout the year and a comprehensive employee assistance program available 24/7
- Your financial wellbeing matters, financial planning support, end of year payment for all Enterprise Agreement-covered employees, incentivised Employee Referral Program and novated lease options

HESTA is a great place to work but don't take our word for it, we were named (again) Employer of Choice for Gender Equality 2022.

Job ID 2068



  • Melbourne, Victoria, Australia HESTA Full time

    Information Security Risk and Assurance ManagerEver thought about joining a team where your work actually makes a difference to millions of people's financial futures?At HESTA, a leading national superannuation fund focused on health and community services workers, that's exactly what you'll be doing. With over 1 million Australians entrusting us with their...


  • Melbourne, Australia HESTA Super Fund Full time

    **_Be inspired everyday_** At HESTA we’re a leading national superannuation fund dedicated to people working in health and community services - a growing sector of ordinary people doing extraordinary things, day in day out, right across Australia. More than 1 million Australians trust HESTA with their money. So together, we invest billions of their...


  • Melbourne, Victoria, Australia Hesta Full time

    Information Security Risk and Assurance Manager At HESTA we're a leading national superannuation fund dedicated to people working in health and community services – a growing sector of ordinary people doing extraordinary things, day in day out, right across Australia.More than 1 million Australians trust HESTA with their money.So together, we invest...


  • Melbourne, Australia Australian Unity Full time

    **Join us and let’s make a bigger difference together.** It’s an exciting time to be joining Australian Unity - we have grown significantly over recent years and are transforming to capitalise on further growth opportunities to help our customers and employees thrive. We operate with commercial principles and with a strong social purpose to create...


  • Melbourne, Victoria, Australia LZ Security & Service GmbH Full time

    Information Security & Digital Risk Operations Manager Myer - Melbourne, VICIT Source: u Workin JOB DESCRIPTION Job no: Work type: Permanent / Full time Location: Support Office - Docklands From humble beginnings in downtown Bendigo to supporting Australian communities far and wide- Myer has always been a special place, transcending beyond just a place to...


  • Melbourne, Victoria, Australia Roy Morgan Full time

    7/6/2023 Melbourne CBD location 5 minutes from public transport Career development opportunity to broaden your experienceAs an industry leading market research company, Roy Morgan has an exciting opportunity for an Information Security Risk & Compliance Analyst to join our Quality Systems division at our head office in Melbourne CBD.As part of a team that...


  • Melbourne, Victoria, Australia Roy Morgan Research Full time

    As an industry leading market research company, Roy Morgan has an exciting opportunity for an Information Security Risk & Compliance Analyst to join our Quality Systems division at our head office in Melbourne CBD. As part of a team that contributes to the management of Information Security you will be exposed to all facets of information security management...


  • Melbourne, Australia Talent International Full time

    australia melbourne permanent negotiable- Permanent Position - Government Agency - CBD Location - Hybrid Working Environment - VPS6 - $130,673 - 174,869 + super **The role**: Our Victorian Government client is seeking a highly skilled and motivated Security Risk and Assurance Manager to join their Information Management and Technology Division...


  • Melbourne, Victoria, Australia Australian Unity Full time

    Join us and let's make a bigger difference together.It's an exciting time to be joining Australian Unity - we have grown significantly over recent years and are transforming to capitalise on further growth opportunities to help our customers and employees thrive. We operate with commercial principles and with a strong social purpose to create community...


  • Melbourne City Centre, Australia HAYS Full time

    Looking for an experienced GRC Manager to join a Victorian Government department **Your new company** A leading public sector department is looking for a Security Risk and Compliance Manager to look after their department’s security risks and compliance obligations. **Your new role** An exciting opportunity to join the Information Management and...


  • Melbourne, Australia KPMG Full time

    Immerse yourself in our inclusive, diverse and supportive culture Choose the way you want to work by embracing our flexible work arrangement Collaborate with sector and technical experts to grow your knowledge and network KPMG Australia is part of a global network providing extensive services across a wide range of industries and sectors. Our people...


  • Melbourne, Australia KPMG Full time

    Immerse yourself in our inclusive, diverse and supportive culture Choose the way you want to work by embracing our flexible work arrangement Collaborate with sector and technical experts to grow your knowledge and network KPMG Australia is part of a global network providing extensive services across a wide range of industries and sectors. Our people...


  • Melbourne, Victoria, Australia Experis Full time

    Shape the security strategy for a renowed educational instituate. Permanent opportunity with a competive salary package Hybrid work arrangement Footscray OfficeAs the Cyber Risk and Assurance Manager you will lead cybersecurity governance, risk, compliance, and assurance. You will establish strong security practices, define standards, and manage cyber risks....


  • Melbourne, Australia KPMG Full time

    Immerse yourself in our inclusive, diverse and supportive culture - Choose the way you want to work by embracing our flexible work arrangement - Collaborate with sector and technical experts to grow your knowledge and network KPMG Australia is part of a global network providing extensive services across a wide range of industries and sectors. Our people...


  • Melbourne, Australia KPMG Full time

    Immerse yourself in our inclusive, diverse and supportive culture - Choose the way you want to work by embracing our flexible work arrangement - Collaborate with sector and technical experts to grow your knowledge and network KPMG Australia is part of a global network providing extensive services across a wide range of industries and sectors. Our people...


  • Melbourne, Victoria, Australia Farm Credit Services Full time

    Senior Information Security Risk Analyst Senior Information Security Risk Analyst (Hybrid in Columbia, SC)AgFirst's Senior Information Security Risk Analyst identifies, investigates, analyzes, and recommends information security guidance to ensure bank assets and processes maintain confidentiality, integrity, and availability while assessing against all...


  • Melbourne, Victoria, Australia Talent International Full time

    australia melbourne permanent negotiable Permanent Position Government Agency CBD Location Hybrid Working Environment VPS6 $130, ,869 + superThe role:Our Victorian Government client is seeking a highly skilled and motivated Security Risk and Assurance Manager to join their Information Management and Technology Division (IMTD).Key Responsibilities: Establish...


  • Melbourne City Centre, Australia Department of Education Full time

    Security Assurance Manager PN20001060 VPS6 Ongoing About the opportunity The department is seeking a Security Assurance Manager to ensure security obligations are effectively identified and managed to enable the successful delivery of information technology strategic and operational plans. The Security Assurance unit defines and governs the progress of audit...


  • Melbourne, Australia Talent Street Full time

    **Security Assurance Specialist | Contract till Feb 2024 | Federal Govt Agency | Melbourne CBD | Open to AUS Citizens only** Talent Street is looking for a Security Assurance Specialist for a contract till Feb 2024 with a Federal government agency in Melbourne. Based in CBD, there is a requirement for working 3 days from office per week. Under the guidance...


  • Melbourne, Australia KPMGau Full time

    Job DescriptionImmerse yourself in our inclusive, diverse and supportive cultureChoose the way you want to work by embracing our flexible work arrangementCollaborate with sector and technical experts to grow your knowledge and networkKPMG Australia is part of a global network providing extensive services across a wide range of industries and sectors. Our...