Cybersecurity Assurance

2 weeks ago


Sydney, Australia Scentre Group Full time

**Job no**: 497482

**Work type**: Permanent Full Time

**Location**: Sydney

**Categories**: IT

**Why Scentre Group?**

Scentre Group is the owner and operator of 42 Westfield living centres in Australia and New Zealand. Our purpose is to create extraordinary places, connecting and enriching communities.

We partner with the world’s leading retail brands to create the places more people choose to come, more often, for longer. Our 42 physical destinations are the heart of our business because we are passionate in our belief that people want to come together in the real world.

We are ambitious to grow, by expanding and enhancing the total Westfield experience through technology, digital products, data and differentiated customer experiences.

We offer our people:

- Market leading benefits including, 5 weeks of annual/life leave, 18 weeks parental leave (no waiting period), volunteer days to work with our charity partners, health and wellbeing discounts, and the ability to purchase extra annual leave
- Diverse career paths across our vertically integrated business
- A strong people culture. We encourage our people to innovate, be curious and drive their career to its full potential

**Your opportunity**

As the group Cybersecurity Assurance & Reporting Manager you will play a critical role in providing key stakeholders visibility and context in to the Scentre Groups cybersecurity posture, empowering our stakeholders to help protect our organization, partners, customers and community.

As the Cybersecurity Assurance & Reporting Manager you will report into the Cybersecurity Governance & Assurance Lead to responsible for developing and operating the groups control assurance program. Provisioning and facilitation of penetration testing services.

Providing both operational and strategic cybersecurity risk reporting to the organisation.

**You will have overall accountability for**:
Control Assurance
- Develop, operationalise and maintain the Scentre Groups control assurance program.
- Work proactively and collaboratively with service owners, enterprise risk and the wider cyber security team to identity weakness and gaps in our information security controls, and provide guidance on
- Partner with the both the technology and wider business to develop regular and ongoing metric s reporting of control coverage and effectiveness.
- Conducting adversarial simulation testing and facilitating penetration testing.

Cybersecurity Risk and Posture Reporting
- Develop, operationalize and maintain both operational and strategic level reporting to empower our stakeholders to understand our risk exposures and posture, so enable informed decision making.
- Assisting line 2 & 3 risk teams in the production of risk reports and attainment of evidence for auditing purposes.
- Assist the wider cybersecurity team in the production of risk focused reports for our various control capabilities.

Leadership
- Assist in the planning and developing of the Cybersecurity & Technology GRC strategy and roadmap. Foster the development of an open information security risk management culture, that becomes part of Scentre Groups DNA.

**What will set you apart from the rest?**
- Broad understanding of cybersecurity risks and controls domains including: Cloud Security, Identity & Access Management, Secure Application Development, DevSecOps, Governance & Compliance, and Data Protection.
- Extensive experience with information security frameworks, including NIST CSF and ISO27001/27002.
- Extensive experience in enterprise/operational risk management.
- Expertise in assessing and measuring the coverage, effectiveness and efficacy of information security controls.
- Experience in the analysis of control metrics and production of consumable and actionable reports.
- Strong communication skills and ability to translate risk in to business impact.
- Adopts a Lead-as-Coach approach to leadership.
- Demonstrated leadership experience
- Self starter and strong organization skills
- Highly adaptive in a fast-paced environment
- Strong customer orientation and strategic thinking
- Collaborative approach to achieve business outcomes
- Pragmatic, outcome focused

Our diverse and inclusive workforce is not only something we’re proud of, but something we’re committed to. We encourage and support our people to bring their ‘whole selves’ to work every day. This is because we believe all our differences contribute to our success and ensures a workforce that reflects the customers we serve. Our commitment is backed by executive and employee-led working groups including All Abilities, LGBTI, Mental Health & Wellness and Gender Equity alongside other initiatives such as our Reconciliation Action Plan to grow our Aboriginal and Torres Strait Islander workforce.

**Advertised**: 24 Jan 2024 AUS Eastern Daylight Time
**Applications close**: 10 Feb 2024 AUS Eastern Daylight Time

**_Scentre Group exclusively recruits for roles based in Australia and New Zealand



  • Sydney, Australia Dynamo Recruitment Full time

    Australian Citizen - ACT based - Hybrid - Long 12+ month contract We have an exciting new role **"Documentation Specialist - Cybersecurity & Assurance -** long 12month contract working for a reputable Govt body on an innovative project! - Must be a Australian Citizen to apply - Immediate start - ACT based - Hybrid The** Documentation Specialist -...


  • Sydney, New South Wales, Australia Dynamo Recruitment Full time

    Australian Citizen ACT based Hybrid Long 12+ month contractWe have an exciting new role "Documentation Specialist - Cybersecurity & Assurance - long 12month contract working for a reputable Govt body on an innovative project Must be a Australian Citizen to apply Immediate start ACT based HybridThe Documentation Specialist - Cybersecurity & Assurance is...


  • Sydney, Australia SB Recruitment Full time

    The Company… This state government department plays a crucial role in development of NSW and is currently involved in various community focused projects across the state.Due to an increase in work volume, this respected Government organization have an immediate need for a Senior Cyber Security Manager to deliver and continuously improve cyber defence,...


  • Sydney, Australia Capgemini Full time

    Experience leading and managing cybersecurity teams - Liaise with offshore cybersecurity SMEs for any delivery issues - Melbourne based **About Capgemini** Capgemini is a diverse collective of more than 350,000 strategic and technological experts based across more than 50 countries, partnering with world-renowned clients to transform and manage their...


  • Sydney, Australia Capgemini Australia Full time

    About Capgemini Capgemini is a diverse collective of more than 350,000 strategic and technological experts based across more than 50 countries, partnering with world-renowned clients to transform and manage their businesses. We are dedicated to leveraging cloud, data, AI, connectivity, software, digital engineering, and platforms to...


  • Sydney, Australia Capgemini Full time

    About Capgemini Capgemini is a diverse collective of more than 350,000 strategic and technological experts based across more than 50 countries, partnering with world-renowned clients to transform and manage their businesses. We are dedicated to leveraging cloud, data, AI, connectivity, software, digital engineering, and platforms to address the entire...


  • Sydney, Australia Capgemini Full time

    About Capgemini Capgemini is a diverse collective of more than 350,000 strategic and technological experts based across more than 50 countries, partnering with world-renowned clients to transform and manage their businesses. We are dedicated to leveraging cloud, data, AI, connectivity, software, digital engineering, and platforms to address the entire...


  • Sydney, Australia RATP Dev Full time

    Main Purpose Software Quality Assurance (SQA) Expert will play a pivotal role in ensuring that quality assurance processes are seamlessly integrated and adhered to throughout the product/s asset lifecycle. They will work closely with project teams to establish and enforce rigorous quality standards, conduct thorough reviews of software deliverables, and...


  • Sydney, Australia NSW Government -Corporate Services Full time

    **About us** Transport for NSW is the lead agency of the NSW Transport cluster. Our role is to lead the development of a safe, efficient, integrated transport system that keeps people and goods moving, connects communities and shapes the future of our cities, centres and regions. We work with several government agencies to coordinate road, rail, bus and...


  • Sydney, New South Wales, Australia IOOF Holdings Limited Full time

    Program Visionary: Lead Business Analysis for Cyber SecurityInsignia Financial is revamping its cybersecurity approach with a strategic 3-year plan, involving four main objectives, 18 key initiatives, and close to 50 cybersecurity projects. This exciting program aims to enhance our cybersecurity capabilities and fortify our defenses against evolving threats....

  • Product Owner

    2 weeks ago


    Sydney, Australia Macquarie Group Limited Full time

    We are building automated governance for Macquarie’s cybersecurity controls to mature and grow our cybersecurity capability. This includes continuously measuring our cybersecurity control effectiveness and enabling Macquarie’s technology teams to remediate control operation issues automatically or via self-service. We are seeking an individual with a...


  • Sydney, New South Wales, Australia NCS Australia Full time

    Job DescriptionWe're looking for a dedicated Cyber Security Sales Specialist to join our Partner Solutions Team. As a valued member of the sales team, you'll have a crucial role in promoting our cybersecurity solutions and licensing to clients across Australia. Your deep knowledge of cybersecurity and sales skills will help you uncover new business...


  • Sydney, New South Wales, Australia Commonwealth Bank Full time

    Senior Audit Manager, Tech and Cyber - Payments Sydney, NSW - CBP North, 1 Harbour Street Commonwealth Bank Comm Bank offers personal banking, business solutions, institutional banking, company information, and more View company page "At Comm Bank we are proud to support flexibility, let's discuss what this means for you"The Commonwealth Bank of Australia...

  • Governance, Risk

    2 months ago


    Sydney, Australia Experis Full time

    **The Company** Imagine a workplace where compassion is at the core of everything this company does, a place that celebrates collaboration, values your contributions, and offers continuous learning opportunities for your growth. work-life balance for this client is more than a buzzword; it's a priority, and diversity and inclusion are deeply embedded in...


  • Sydney, New South Wales, Australia Commonwealth Bank Full time

    Senior Audit Manager, Tech and Cyber - PaymentsSydney, NSW - CBP North, 1 Harbour Street Commonwealth Bank CommBank offers personal banking, business solutions, institutional banking, company information, and more View company page "At CommBank we are proud to support flexibility, let's discuss what this means for you"The Commonwealth Bank of Australia...


  • Sydney, New South Wales, Australia Security Centric Full time

    Penetration Tester/Red Team - Senior & Lead Roles (Sydney) Role: Penetration Tester/Red Team - Various Levels Location: Sydney CBD Hybrid Division: Technical Assurance Lab time to work on new techniques Visibility into blue team view of your testing activity - get better at lurking and avoiding detection Strong career development track - go further,...

  • Auditor Trainee

    2 hours ago


    Sydney, Australia ELEVATE Full time

    **Auditor Trainee (Social Compliance focus) - Australia** **Who are LRQA?** LRQA stands for dedication to clients, market firsts, and deep expertise in risk management. We’ve grown to become a leading global assurance provider, bringing together outstanding expertise in certification, customised assurance, cybersecurity, ESG, food safety and quality,...


  • Sydney, New South Wales, Australia certisciscP2 Full time

    Position PurposeData Protection will work with the Certis group ISO and data protection teams on cybersecurity and data protection in Certis AU to ensure data protection is in accordance with company policies and industry standards and enhance the Certis AU security strategies and policies. Candidate must have strong risk management and controls/governance...


  • Sydney, Australia ABN AMRO Full time

    Information Security Risk Manager **About Us**: ABN AMRO Clearing is a global firm that provides an integrated suite of financial services to professional investors in the global financial market. Our core service offering consists of execution, clearing, financing, stock borrowing and lending, settlement and custody. **Role Purpose**: - To promote a...


  • Sydney, Australia ELEVATE Full time

    **Social Compliance Auditor (Freelancer / CSCA is required) - **Australia** **Who are LRQA?** LRQA stands for dedication to clients, market firsts, and deep expertise in risk management. We’ve grown to become a leading global assurance provider, bringing together outstanding expertise in certification, customised assurance, cybersecurity, ESG, food...