Cyber Governance, Risk and Compliance Lead

2 months ago


Sydney, Australia Domain Group Full time

**Cyber Governance, Risk and Compliance Lead - Sydney Office - Permanent Full Time**

A great opportunity for a **Cyber Security Governance, Risk and Compliance**

**(GRC) Lead**, in partnership with the Cyber Security GRC Manager, the Lead will be responsible for the delivery of the Cyber Security Governance, Risk and Compliance initiatives.

You will work collaboratively with various internal teams and stakeholders to design, implement,and monitor cyber security policies, procedures, and controls to strengthen our cyber posture and align our practices with industry standards and regulatory requirements.

**Who are you?**
- Provide expert guidance and counsel on all cyber security GRC matters as needed
- Provide expert guidance to and support of the security strategy and roadmap, including the implementation of new cyber security technologies and services.
- Provide expert guidance to and support for the ongoing maintenance of the Information Security Management System (ISMS) to ensure compliance and certification against the ISO 27001 standard.
- Provide expert guidance to and support of the PCI DSS program to ensure alignment and Compliance with the standard.
- Regularly review and update cyber security policies, standards, and guidelines to address emerging threats and changes in the regulatory landscape.
- Coordinate risk mitigation activities by working closely with technology, product, engineering,and business teams to prioritise and implement appropriate security controls.
- Monitor and report on cyber security risks to senior management and propose mitigation strategies and recommendations.
- Provide expert guidance to and support for compliance activities with relevant cyber security regulations and industry standards (e.g., Privacy Act, GDPR, ISO 27001, PCI DSS, NIST CSF,etc.).
- Provide expert guidance to and support for cyber security awareness programs to educate employees and uplift cyber security culture.
- Assist with the preparation and coordination of external audits, assessments, and certifications.

**Attributes**
- Proven experience of supporting, implementing and managing a cyber security governance, risk, and compliance program.
- In-depth knowledge of cyber security frameworks, standards, laws and regulations.
- Good understanding of Cyber Security principles, practices and technologies.
- Good understanding of cyber risk management, including tooling, reporting

and treatment.
- Good communication skills, both written and verbal.

**Education**
- Tertiary qualifications in Computer Science, Software Engineering, cyber security or a related field.
- Relevant certifications (e.g., CISSP, CISM, CISA, CRISC, ISO/IEC 27001 Lead Auditor) are highly desirable

**Why join us?**

We’re the right size business for you to make a real impact, with a workplace culture where you can be you. Perks of the role include:

- Discover your ideal work-life balance with our approach to flexibility - whether it's adjusted hours or making the most of working remotely and from our offices, let's chat about what works best for you;
- First-rate parental leave and wellbeing policies;
- Access to _Perkbox_, giving you discounts across healthcare, entertainment, food, utilities and more
- Continuous opportunities to leap, learn and grow.

We don’t just talk, we do. Every day we solve property problems for Australians and beyond. We encourage our people to see the possibilities, and turn them into realities. That’s why we want you.

**Who are we?**

We shine a light on all things property. Our business aims to simplify the property journey for all involved; motivated by expertise and our exclusive data.

Changing the way people engage with property requires a team of diverse thinkers.

**What’s next?



  • Sydney, Australia King & Wood Mallesons Full time

    New role to the firm - Enhance what we have and take the next step in your career- With a few years experience behind you, you will be looking to introduce what you’ve learnt in developing and implementing cyber governance frameworks and processes, ensuring that we meet our information security and compliance goals.- As a leading law firm, we actively seek...


  • Sydney, Australia Compliance and Risk Management Recruitment Full time

    Banking & Finance - Treasury and/or Risk Specialist - Sydney - Permanent / Full Time **26th February, 2024**: We are working with a growing mutual bank who are currently seeking a Risk and Compliance Manager for a newly created role in their Sydney head office. Key Responsibilities: - Developing and supporting compliance and testing frameworks. - Helping...


  • Sydney, Australia TAL Full time

    Company Description Welcome to This Australian Life. From the millions of Australians we protect, to those that make it happen every day at TAL, people really are what we’re all about. We want to grow with you. Achieve with you. And support you to do your best work. That's why we're focused on developing leadership, promoting diversity, rewarding...


  • Sydney, Australia Scentre Group Full time

    **Our Story** Scentre Group is the owner and operator of 42 Westfield living centers in Australia and New Zealand; partnering with the world’s leading retail and luxury brands to create a unique shopping and leisure experience for our customers. A career with us fosters the chance to be a part of a company that is transforming the digital and physical...

  • Cyber Risk

    3 weeks ago


    Sydney, Australia Northbridge Recruitment Full time

    Rapidly Growing Tech Org, Fun & Energetic Culture, Career Growth OPP - Maintain Cyber Security Compliance, ISO27001, PCI, SOC 2 - Compliance EXP is Key - Sydney CBD, Hybrid / WFH, 150K-160K Base + Super + Bonus, AUST CITIZEN **ACT NOW**: Join a rapidly growing & customer centric technology company that is a leader in its field. This sought-after Org is...


  • Sydney, Australia Terra Firma Full time

    Terra Firma is a leading Australian owned IT Business & Project Services Consulting company, providing professional consulting services to enterprise clients in Energy, Telecommunications, Government, Not for Profit and Financial Services industries. Our core values are Pride and Passion, Collegiality and Adding Value. This is truly embedded into our...


  • Sydney, Australia Talent International Full time

    **Job Details**: **Location** Sydney **Salary** Negotiable **Job Type** Full Time **Ref** BBBH100908_1681877672 **Contact** Donal McCann **Posted** about 4 hours ago - Based in Armidale - Working from Anywhere - Lead the Information Security Strategy **The role** This Higher Education client is seeking an experienced Manager - Security...


  • Sydney, Australia NSW Government -Department of Premier and Cabinet Full time

    **You. At the centre of big ideas.**: - **Are you a senior professional with extensive experience in audit, **risk management or information security? If so, this role is for you! Come **join our remarkable team.**: - **This is an ongoing, Clerk Grade 11/12 role based in Martin Place.**: - **Flexible working is part of our DNA at DPC. It is not the way we...

  • Associate Director

    3 days ago


    Sydney, Australia Compliance and Risk Management Recruitment Full time

    Education & Child Care - University - Other - Sydney - Permanent / Full Time **27th November, 2023**: This is a senior leadership role with the organisation and will be responsible for supporting the risk function. Reporting to the CRO as the 2IC, this role will be responsible for providing strategic and operational advice to the broader leadership and...


  • Sydney, Australia The Decipher Bureau Full time

    This ASX listed organisation have seen considerable growth and investment in their cyber and risk team over the years, with lots of new initiatives in the GRC space that need to be delivered specifically defining group wide cyber principles.You will be across a number of accountabilities including leading security risk assessments and analysis, defining...


  • Sydney, Australia The Decipher Bureau Full time

    This ASX listed organisation have seen considerable growth and investment in their cyber and risk team over the years, with lots of new initiatives in the GRC space that need to be delivered specifically defining group wide cyber principles.You will be across a number of accountabilities including leading security risk assessments and analysis, defining...


  • Sydney, Australia Macquarie Group Limited Full time

    Our diverse and global team are responsible for the Cyber Threat and Incident Response Program’s cyber regulatory engagement and response, cyber risk assessment and obligation management, and organizational risk compliance and reporting. You’ll help security leadership develop and grow the program’s threat-driven risk structure and culture. At...


  • Sydney, Australia Qantas Airways Limited Full time

    Challenge yourself to lead design and delivery aspects of technology risk, compliance and audit - Take an opportunity to grow and diversify your career - Permanent role based at our Corporate Campus in Mascot Working in Qantas Loyalty is exciting and fast moving. We love what we do and look forward to what we might create for the future. Being part of a...

  • Chief Risk

    3 days ago


    Sydney, Australia Compliance and Risk Management Recruitment Full time

    Government / Local Government - Local Government - Sydney - Permanent / Full Time **17th April, 2023**: Our client is a leading council that is currently undertaking a large transformation and uplift across the organisation. After a recent restructure that have a newly created Chief Risk & Audit Officer role available for a highly skilled and pragmatic Risk...

  • Cyber Risk

    2 weeks ago


    Sydney, Australia NTT Full time

    **Cyber Risk & Compliance Manager** NTT is a leading global IT solutions and services organisation that brings together people, data and things to create a better and more sustainable future. In today’s ‘iNTTerconnected’ world, connections matter more now than ever. By bringing together talented people, world-class technology partners and emerging...


  • Sydney, Australia Sirius People Full time

    **Seeking a Senior Cyber Risk Manager!** **Join a Leading Team in the Banking Industry!** Are you a seasoned professional in the world of cyber risk and security? Do you have a track record of designing controls, setting standards, and providing expert governance advice in the realm of cyber security? If you're ready to make a significant impact and operate...

  • Governance, Risk

    1 month ago


    Sydney, Australia Experis Full time

    **The Company** Imagine a workplace where compassion is at the core of everything this company does, a place that celebrates collaboration, values your contributions, and offers continuous learning opportunities for your growth. work-life balance for this client is more than a buzzword; it's a priority, and diversity and inclusion are deeply embedded in...

  • Head of Cyber, Risk

    3 weeks ago


    Sydney, Australia BaptistCare NSW & ACT Full time

    • Permanent full-time position | Based in Norwest - Flexible/hybrid working• Join an industry leading Business Technology Solutions team• Well known Not-for-profit who put people at the centre of everything we do! About the role: As the Head of Cyber, Risk, and Compliance, your primary responsibility is to create and drive the organisation’s cyber...

  • Compliance Manager

    1 month ago


    Sydney, Australia Compliance and Risk Management Recruitment Full time

    Insurance - Insurance - Life / Health - Sydney - Contract **08th May, 2023**: **About**: World leading insurance business is currently seeking a Compliance Manager (AVP) to help support the Australian entity. **Your role** - Reporting to the Head Compliance, you will perform a critical role within. - To provide responsive, efficient, practical, commercial,...


  • Sydney, Australia HAYS Full time

    12-month contract role - federal government agency - Cyber Security Risk Assessment Officer **Your new company** This government agency is looking for a Cyber Security Risk Assessment Officer to join their Cyber Security team in an initial 12-month contract role with room for extension. You will have the opportunity of working at a federal government...