Information Security Risk Manager

2 months ago


Sydney, Australia ABN AMRO Full time

Information Security Risk Manager

**About Us**:
ABN AMRO Clearing is a global firm that provides an integrated suite of financial services to professional investors in the global financial market. Our core service offering consists of execution, clearing, financing, stock borrowing and lending, settlement and custody.

**Role Purpose**:

- To promote a strong risk culture of ownership & accountability in the 1st line by ensuring that all Information Security risks are identified, assessed, measured, monitored, managed and properly reported on by AAC business units within APAC;
- Uplift AAC’s cyber-security resilience and to drive improvements in AAC’s information security risk management by working closely with IT teams of APAC CIO to review and uplift the internal control framework for Information Security risks such that it aligns with internal control frameworks and meets cybersecurity standards.
- Provide assurance to AAC I&ORM on performance of 2nd Line risk management activities in relation to information security risks in APAC in accordance with adopted frameworks and applicable regulatory standards.
- Perform reporting, administration or other duties as assigned by the Head of I&ORM from time to time

**Role Responsibilities**:

- Ensure risk ownership is taken within the 1st line and to provide oversight, objective review and challenge of the manner in which information security is handled across all activities of APAC.
- Overseeing the implementation of the agreed cybersecurity and information security frameworks by IT
- Assist 1st Line divisions in developing an Information Security Risk profile and associated mechanisms in areas of management, risk reporting and information and risk assessments
- Assist in the governance transition from 1st Line to 2nd Line
- Perform independent reviews and testing of various components of the risk and control environment.
- Policy and procedure review implementing best practices
- Assist in developing the Information Security Risk Management Strategy and Business Continuity Plans

**Role Requirements**:

- Certification of Information Security Management (e.g. CISM, CISSP, CISA) and/or IT or information management related degree
- 5-9 years of relevant working experience.
- Knowledge of Information Security standards and regulations (NIST/ISO 27 001/2, ISF Standards of Good Practice, PCI DSS, FIPS, HIPAA)
- Strong understanding of assurance methodologies and testing protocols
- Strong understanding of cyber controls and cyber risks to identify and evaluate control effectiveness and identify any potential gaps between cyber risks and existing cyber controls
- Understanding of various cyber technologies, insider threat protection, mobile device protection etc.
- Be comfortable with complexity and understanding of controls and monitoring for complex systems in a safe a predictable way.
- Proven track record in Information Security, preferable completed with IT Risk Management, IT Audit and Operational Security experience

**What we offer**:
ABN AMRO fosters a working environment for people who want to contribute to a culture of excellence. We make a difference with our expert employees, who are driven by a desire to continue developing. We attract people who take their job and their talents very seriously, and in return we give employees the responsibility and the scope to excel in their role. You will be working with a group of people who have the same drive and vision, but whose backgrounds and experience are as diverse as those of our clients.



  • Sydney Central Business District, Australia HAYS Full time

    Exciting InfoSec and Risk opportunity with Global Insurance Firm **Permanent Information Security and Risk Expert role for Leading Global Insurance Firm based in Sydney** **Your new company** ***This company is a well-established and respected global insurance firm with a history of excellence. **Your new role** The Information Security & Risk Expert...


  • Sydney, Australia AJQ Pty Ltd Full time

    AJQ Consulting is a leading provider in the delivery of Information Technology & Professional Services. We are proud to be partnering with a key Global Health Provider and are looking to place an Information Security Governance & Risk Analyst on a permanent basis. This role is an opportunity to bring your expertise as an Information Security Governance &...


  • Sydney, Australia Ramsay Health Care Full time

    Reporting to the Head of Security Governance and risk, the Information Security Governance Risk and Compliance Analyst is responsible for ensuring the organisation's information security and compliance with relevant laws, regulations, standards, and best practice. The role involves conducting security assessments, specification of security controls to...


  • Sydney Central Business District, Australia HAYS Full time

    Sydney based | Hybrid | Permanent role **Your new company** You will be joining a highly reputable and innovative firm that specializes in providing information technology services to a range of clients across various industries. The company is committed to excellence, teamwork, and delivering high-quality services to its clients. **Your new role** As an...


  • Sydney, Australia Launch Recruitment Full time

    Hybrid Working - 3 days in the office 2 days fromt home - ISO experience is essential certified is a beneficial - Insurance Expereince would be an advantage The Information Security, Risk and Complaince Consultant will collaborate with compliance, security, and general IT risks to ensure that IT supports the business objectives of the group, while enforcing...


  • Sydney, Australia Fyndr Group Pty Ltd Full time

    $160k to $200k + bonus - 200 person business, Head Office based in Sydney, Surry Hills - $150k to $180k base + super + bonus - 200 person business, Head Office based in Sydney, 4 days in the office, CBD location in Surry Hills - Wildly successful food retailer, huge ecommerce presence, expecting to achieve over $1b in sales, double digit growth each year in...


  • Sydney Central Business District, Australia HAYS Full time

    Exciting Permanent role based in Sydney **Your new company** This role sits with one of the giant firms in the retail industry based in Sydney and they require Information Security Risk Officer for their organisation. **Your new role** This role is predominately focused on security risks, governance and compliance management. The purpose of the role is to...


  • Sydney, Australia Australian Security Recruitment Pty Ltd Full time

    Interacting with the Executive, senior management, and key regulators. - Executive interaction as well as electronic security technical and/or specialist **Position Vacant**: **Protective Security Risk and Governance Manager (Sydney CBD Based)** **The Employer**: With this opportunity we represent the largest distributor of electricity on Australia’s...


  • Sydney, Australia Genesis IT&T Pty Ltd Full time

    **Permanent Full Time**: - **Global Technology Company**: - **Remote / Hybrid working arrangement** A leading global technology company is currently looking to hire an experienced Information Security Consultant to be responsible for providing risk assessments, security advice and guidance for their key government clients based in Sydney NSW. You will be...

  • Risk Manager

    1 month ago


    Sydney, Australia Aurec Full time

    Tier One Company - 12 - 24 Month Contract - Attractive Day Rates **Risk Manager - Security** **The role**: You will be responsible for safeguarding information system assets by identifying and solving potential and Governance & Risk related issues. You must possess a working knowledge of current and developing security threats, strong understanding of risk...

  • Security Manager

    4 weeks ago


    Sydney, Australia Constant Security Full time

    **The Company** We are placing this role into our client who were established in Australia in 2013, and is a leading, fully integrated owner, operator, investment manager and developer of purpose-built student accommodation (PBSA) and lifestyle solutions, with billions of dollars in assets under management, on behalf of global wholesale and institutional...


  • Sydney, Australia Commonwealth Bank Full time

    **_You are _**_a problem solver with a strong background in Cyber Security Risk and Governance. _ - **_We are _**_one of the best and most advanced Cyber Security teams in Australia. _ - **_Together we can _**_contribute to protecting the group, its customers and community. _ **Your business: The Technology division delivers the Group’s information...


  • Sydney, Australia Ashurst LLP Full time

    **The Opportunity**: We have a permanent position available for an experienced Information Security Manager to join our team in Sydney. Reporting to the CISO, you will be responsible for communicating information security strategy and its requirements to all internal and external stakeholders. In this role you will partner extensively with IT, Legal, Data...


  • Sydney Central Business District, Australia HAYS Full time

    2-year Contract InfoSec Manager role at Leading Global Bank based in Sydney CBD **Your new company** This company is a well-established and respected Global Bank. Their Sydney CBD office offers a world-class working environment with career progression opportunities. **Your new role** Under the general direction of the Head of IT, the Information Security...


  • Sydney, Australia Risk Leadership Network Full time

    Would you like to be part of an innovative, fast-growing business that drives leading risk practice among CROs and heads of risk management at some of the largest companies in the world? We are looking for a Risk Engagement Manager to join our growing global membership network. Risk Leadership Network supports organisations throughout APAC, UK/Europe and...


  • Sydney, Australia Avant Mutual Group Full time

    **Job no**: 499602 **Work type**: full time **Location**: Sydney **Categories**: Management, Security Avant is Australia’s leading medical defence organisation with a proud heritage of protecting Australian medical professionals for over 130 years. Avant now represents 82,000 health practitioners and medical students across every state and territory,...


  • Sydney, Australia Fernway Full time

    Newly Licenced Bank! - growing to full ADI Status - Own Information Security - Strategy, Policy, Systems, Vendors - Banking with purpose - An Australian first! Join this newly licenced bank as HO Information Security! Develop and execute a comprehensive information security capability to navigate rapid growth **The Role**: As Head of Information Security...


  • Sydney, Australia Westpac Group Full time

    **How will I help?** We have a position for an Information Security Consultant, reporting to the Senior Manager of Security Policy & Reporting within Westpac’s Information Security Group (ISG). You will play an integral role as part of a high performing Security Compliance team that designs, monitors and reviews security controls and compliance...


  • Sydney, Australia Optus Full time

    **Information Security Specialist**: **Date**:19-Jan-2023 **Location**: Sydney (Macquarie Park HQ), Australia **Company**:Singtel Group **Job Summary** This role manages the vendor cyber risks to Optus from its supply chain, known at Optus as Third-Party Service Providers (TPSP) Security Risk Governance. **Key Responsibilities**: - Review and...


  • Sydney, Australia Capstone Full time

    Impressive Employee Benefits package - Hybrid Work environment (3/2 split) - CBD offices **The Role**. As one of Australia’s largest property groups our client’s cybersecurity is of paramount importance. This role will be at the forefront of ensuring the safety of their digital assets, driving cyber resilience, protecting technological advancements and...