Information Security Risk Management Lead
4 weeks ago
**Job Description** Our client’s success is our success. And you make it happen**
Payment systems are complex, regulated and everchanging. We are an established market leading brand who are focused on driving client growth. We’re at the forefront of innovation punching above our weight. We’re enabling the future for our clients through innovative technology like the New Payments Platform (NPP) and open banking.
We are an unlisted public company and one of five licensed banks in Australia with full direct connectivity and production capability across all domestic payment systems. Whilst the major banks leverage this capability for their consumer and business clients, our B2B model focuses on enabling other banks, fintech’s and corporates to deliver innovative and competitive payment and digital solutions to their clients and customers.
**We are looking for an Information Security Risk Management Lead in our Group Risk and Compliance Team.**
Reporting to the Head of Operational Risk and Compliance, the Information Security Risk Management Lead is responsible for technology risk advisory, review/challenge, oversight and monitoring over information security and data risk frameworks and how it is operationalised.
This is a highly visible role in the business ensuring technology risks are effectively identified, assessed, managed and monitored across Cuscal. Responsibilities of the Information Security Risk Management Lead in the team’s capacity as the second line of defence under the Risk Management Framework fall into four key areas:
**1) Technology Risk Management Framework Advisory, Oversight and Monitoring**
- Ensure Information Security Risks (technology and cyber) and Data risks are adequately managed through Cuscal’s frameworks in line with regulatory requirements (e.g. CPS 234,230, CPG 235 etc.), industry best practices and operating environment in line with three lines of defence
- Ensure line 2 risk management capability is built and sustained to review, challenge, oversight and assurance reinforcing and maturing line 1 accountability with the business owners
- Work collaboratively with Product domains, Engineering and corporate functions to embed technology risk management practices into everyday activities, embed controls, and monitor/report on issues.
- Foster a risk culture that promotes open communication, transparency, and ownership of risk at all levels of the organisation
- Risk Reporting & Analytics: Provide insights derived from technology and data risk reporting to the Board and Executive Leadership Team
**2) 2nd Line Review, Challenge and Oversight**
- Review and challenge risk/RiC assessments, adequacy and effectiveness of risk mitigation strategies, controls, and action plans implemented by 1st line teams.
- Critically assess incidents, breaches, and near misses to identify systemic issues and recommend appropriate remediation actions.
- Ensure the continuous improvement of risk management practices by engaging with business units to provide constructive feedback and challenge assumptions.
- Act as a trusted advisor to senior leadership and business units on operational risk matters, including emerging risks, regulatory changes, and industry trends.
- Drive education and training programs to elevate operational risk awareness and capabilities across the organisation.
- Collaborate with product, client, and technology teams to ensure operational risk considerations are integrated into new initiatives, system changes, and major projects.
- Line 2 support for assessments of third-party technology risks and controls.
**3) Emerging Risks and Innovation**
- Stay informed about the latest developments in AI and other emerging technologies to proactively identify potential risks. Support Cuscal teams in rapidly adopting new technologies in a safe and controlled manner.
- Review/provide oversight over initiatives to automate technology risk & controls monitoring processes using advanced tools and technologies.
- Promote a culture of innovation in risk management practices, encouraging the adoption of new approaches and technologies.
**4) Stakeholder Engagement**
- Work closely with internal and external stakeholders as required, to ensure a cohesive approach to technology risk management.
- Develop and deliver training programs to enhance technology risk awareness and competency across Cuscal.
- Promote and drive a positive risk culture to lift overall risk management maturity across Cuscal.
**About You**
To be successful in this position you will have the following skills and experience:
- Bachelor’s degree in information technology, Information Systems, Risk Management, Cybersecurity, Computer Engineering, or a related field. Relevant certifications (e.g., CRISC, CISA, CISSP) are desirable.
- Minimum of 4-6 years of experience in technology risk management within the financial services industry.
- Strong knowledge of risk management and IT frameworks and standards such a
-
Information Security Risk Management Lead
3 weeks ago
Sydney, New South Wales, Australia Cuscal Full timeInformation Security Risk Management LeadFull-timeOur client's success is our success. And you make it happenPayment systems are complex, regulated and everchanging. We are an established market leading brand focused on driving client growth. We're at the forefront of innovation, enabling the future for our clients through innovative technology like the New...
-
Information Security Risk Manager
1 week ago
Sydney, New South Wales, Australia Optus Part timeJob DescriptionWe are seeking a highly skilled and motivated individual to join our National & Cyber Security office as an Information Security Risk Manager.**Key Responsibilities:**Leverage your expertise in information security and cyber risks to identify, assess, and mitigate risks associated with vendors and third-party relationships.Play a key role in...
-
Information Security Risk Manager
4 weeks ago
Sydney, Australia ABN AMRO Full timeInformation Security Risk Manager **About Us**: ABN AMRO Clearing is a global firm that provides an integrated suite of financial services to professional investors in the global financial market. Our core service offering consists of execution, clearing, financing, stock borrowing and lending, settlement and custody. **Role Purpose**: - To promote a...
-
Sydney, New South Wales, Australia Cuscal Limited Full timeAt Cuscal Limited, we are looking for an experienced Information Security Risk Management Lead to join our Group Risk and Compliance Team. Reporting to the Head of Operational Risk and Compliance, this role is responsible for providing technology risk advisory services, review, challenge, oversight, and monitoring over information security and data risk...
-
Information Security and Risk Expert
2 weeks ago
Sydney Central Business District, Australia HAYS Full timeExciting InfoSec and Risk opportunity with Global Insurance Firm **Permanent Information Security and Risk Expert role for Leading Global Insurance Firm based in Sydney** **Your new company** ***This company is a well-established and respected global insurance firm with a history of excellence. **Your new role** The Information Security & Risk Expert...
-
Risk Lead
2 weeks ago
Sydney, New South Wales, Australia Compliance & Risk Management Recruitment Full timeImmediate opportunity for an experienced Risk and Insurance Lead to join a large Council.Great role to develop your career.Excellent career opportunity Lead from the front We are working with one of Sydney's largest Councils who is looking for a risk professional to join the team as a Risk and Insurance Lead.This opportunity will have you develop the risk...
-
Information Security Manager
4 weeks ago
Sydney, Australia Amex Full time**You Lead the Way. We’ve Got Your Back.** With the right backing, people and businesses have the power to progress in incredible ways. When you join Team Amex, you become part of a global and diverse community of colleagues with an unwavering commitment to back our customers, communities and each other. Here, you’ll learn and grow as we help you create...
-
Risk Lead
3 weeks ago
Sydney, New South Wales, Australia Compliance & Risk Management Recruitment Full timeImmediate opportunity for an experienced Risk and Insurance Lead to join a large Council. Great role to develop your career.Excellent career opportunityLead from the frontWe are working with one of Sydney's largest Councils who is looking for a risk professional to join the team as a Risk and Insurance Lead. This opportunity will have you develop the risk...
-
Information Security Risk Analyst
1 week ago
Sydney, Australia KPMG Full timeImmerse yourself in our inclusive, diverse and supportive culture - Choose the way you want to work by embracing our flexible work arrangement - Collaborate with sector and technical experts to grow your knowledge and network KPMG Australia is part of a global network providing extensive services across a wide range of industries and sectors. Our people...
-
Information Security Governance
4 weeks ago
Sydney, Australia AJQ Pty Ltd Full timeAJQ Consulting is a leading provider in the delivery of Information Technology & Professional Services. We are proud to be partnering with a key Global Health Provider and are looking to place an Information Security Governance & Risk Analyst on a permanent basis. This role is an opportunity to bring your expertise as an Information Security Governance &...
-
Sydney, New South Wales, Australia Cuscal Limited Full timeThis is a Senior Manager, Information Security Risk Management role with one of the leading companies in AU right now -- Cuscal Limited -- with an amazing team. They are continuing to grow rapidly. This is the chance to join right as the takes off.More About the Role at Cuscal Limited ## **Job Description** **Our client's success is our success. And you...
-
Risk Manager
1 week ago
Sydney, New South Wales, Australia Compliance & Risk Management Recruitment Full timeRisk & Compliance Manager – NFP SectorSydney CBD | Hybrid Work Environment | Impactful Leadership RoleWe are partnering with a well-regarded Not-for-Profit (NFP) organisation that provides essential support to people with disabilities, aged care recipients, carers, and their families. With a strong presence across Sydney and a head office in the CBD, they...
-
Information Security Manager
2 weeks ago
Sydney, Australia Fyndr Group Pty Ltd Full time$160k to $200k + bonus - 200 person business, Head Office based in Sydney, Surry Hills - $150k to $180k base + super + bonus - 200 person business, Head Office based in Sydney, 4 days in the office, CBD location in Surry Hills - Wildly successful food retailer, huge ecommerce presence, expecting to achieve over $1b in sales, double digit growth each year in...
-
Information Security Risk Officer
2 days ago
Sydney Central Business District, Australia HAYS Full timeSydney based | Hybrid | Permanent role **Your new company** You will be joining a highly reputable and innovative firm that specializes in providing information technology services to a range of clients across various industries. The company is committed to excellence, teamwork, and delivering high-quality services to its clients. **Your new role** As an...
-
Information Security Lead
1 week ago
Sydney Central Business District, Australia HAYS Full timePermanent Information Security Lead role for Leading Global Insurance Firm based in Sydney **Permanent Information Security Lead role for Leading Global Insurance Firm based in Sydney** **Your new company** This company is a well-established and respected global insurance firm with a history of excellence. **Your new role** **What you'll need to...
-
Sydney, New South Wales, Australia Cuscal Limited Full timeSenior Manager, Information Security Risk ManagementOur client's success is our success. And you make it happenPayment systems are complex, regulated, and ever-changing. We are an established market-leading brand focused on driving client growth. We're at the forefront of innovation, enabling the future for our clients through innovative technology like the...
-
Information Security Risk Manager
2 weeks ago
Sydney, New South Wales, Australia Bank of America Full timeAbout the Job DescriptionThis job description outlines the key responsibilities and requirements of the role. If you are a highly skilled and experienced information security professional who is passionate about creating a secure and trusted environment, we encourage you to apply for this exciting opportunity.RequirementsA bachelor's degree in computer...
-
Information Security Manager
6 days ago
Sydney, Australia Westpac Group Full time**How will I help?** The Information Security Manager role will be responsible for managing a team of Information Security professionals to deliver a Project Consulting and Certification function, ensuring all aspects of Information Security align with Westpac's policies, processes, business requirements and target risk position for information...
-
Risk Manager
2 weeks ago
Sydney, New South Wales, Australia Compliance & Risk Management Recruitment Full timeImmediate opportunity for an experienced risk professional to join a leading Council as a key member of the Compliance and Risk Management Recruitment team. This role offers a unique chance to develop your career in risk management, working closely with senior stakeholders across the organisation.Develop and implement effective risk management strategiesLead...
-
Information Security Lead Specialist
1 week ago
Sydney, New South Wales, Australia Cuscal Full timeRisk Management StrategistCuscal is committed to providing a diverse and inclusive workplace where the best talent in Australia chooses to work. We support our colleagues with flexible work arrangements through our hybrid model while also offering a wide range of financial, lifestyle, health & wellbeing benefits.The Information Security Risk Management Lead...