Head of Cyber Security and IT Risk
7 months ago
Min Experience- 10 yearsYour team
- Working as a part of the Risk, Legal & Compliance team with overall responsibility to drive all strategic and operational cyber security and IT risk functions.
- Working alongside the Head of Technology, senior business and risk executives and project management team within the reporting structure of the Chief Risk Officer.
You will be supported by 2 staff members operating in the following roles: Senior Cyber Security Consultant and Cyber Security Analyst.
Your Role
Cyber Security Governance
- Maintain a lean and effective cyber and technology risk governance structure, ensuring that risk management is deeply embedded into strategic business projects and operational decision-making.
- Ensure the business maintains an effective and agile cyber security policy framework that is aligned with LGT Group directives.
- Develop and manage the cyber security budget for all operational and strategic spend, ensuring resource allocation prioritises areas of high-risk and strategic importance.
- Establish and maintain a detailed cyber assurance program (including targeted reviews, supplier assurance, red teaming, penetration testing, disaster recovery testing, etc.) to identify and prioritise key gaps for remediation.
- Produce and present high-quality cyber risk reports to executive committees and board of directors (locally and at Group level), educating senior executives and the board on material risks, regulatory compliance, and strategic risk mitigation initiatives.
- Maintain a strong Line-2 assurance framework challenging the design and operations of the technology function, specifically ensuring the business adheres to GS007 control framework.
- Actively participate in monthly and quarterly vendor executive governance meetings — ensuring key suppliers meet contractually agreed KPIs and constantly adjust controls to mitigate emerging risks.
- Track audit findings and recommendations to ensure appropriate critical and high-rated issues are promptly addressed. Proactively engage internal and external auditors to identify synergies and avoid redundant reviews.
Stakeholder Management
- Develop and nurture relationships with key internal stakeholders, specifically executives, technology, risk management, legal, audit and HR management teams to create a shared sense of purpose and positive working culture.
- Liaise with external stakeholders, such as law enforcement, external auditors, advisory bodies, institutional clients, and business partners, as necessary, to ensure that the business maintains a resilient posture and promptly adjusts controls in line with emerging threats.
Strategy Execution
- Develop and deliver a high-impact cyber resilience strategy that is measurable, scalable, and advances strategic business goals.
- Ensure the business maintains a robust enterprise security architecture framework, ensuring that new systems are secure by design, fault-tolerant and architected in-line with industry reference standards.
- Actively collaborate with the Group CISO and their leadership team to identify opportunities to integrate local capabilities with the Group, ensuring consistency and strategic alignment.
- Negotiate vendor contracts to ensure the business invests in cost-effective and highly scalable solutions.
- Maintain a lean and effective cyber security team through ongoing mentorship, training, and maintaining a fine balance between outsourced and insourced capabilities.
- Stay abreast with key cyber security threats and regulatory changes and work with relevant stakeholders to adapt the cyber security strategy accordingly.
Incident Response
- Lead incident response, ensuring prompt containment, assessment, and remediation of key incidents. Conduct root cause analysis and implement corrective actions to prevent recurrence.
- Lead executive/board cyber crisis response simulations and drive the remediation of key issues identified.
Security Operations
- Work with outsourced providers and internal teams to ensure the business maintains a highly tuned and effective 24/7 security operations centre that prioritises threats on the business’s most valuable digital assets.
- Ensure the technology team and outsourced vendors maintain effective cyber security operational hygiene, including access management, backups, vulnerability management, patching and systems hardening.
Your skills & experience
- 10+ years of IT work experience, with at least 6+ years in leadership position overseeing cyber security teams or key projects and influencing decision makers.
- Proven leadership skills and the ability to work effectively with stakeholders, financial management, leading teams and executing complex change.
- Exceptional communications skills, with the ability to communicate with staff at various levels, both technical and clear business terms, regarding complex strategic projects.
Your role competencies
- Strong communication skills
- Resourceful, self-starter/driven
- R
-
Cyber Security Risk Manager
3 months ago
Sydney, Australia University of New South Wales Full time**Job no**: 527962 **Work type**: full time **Location**: Sydney, NSW **Categories**: Information Technology, Cyber - Employment Type: full time continuing role as a Cyber Security Risk Manager - Excellent salary package including superannuation - Location: UNSW Kensington Campus (Hybrid Working Opportunities) **About UNSW**: UNSW isn’t like other places...
-
Head of Cyber Security, Governance
2 weeks ago
Sydney, Australia University of New South Wales Full time**Job no**: 529814 **Work type**: Full Time **Location**: Sydney, NSW **Categories**: Information Technology, Cyber - Employment Type: full time continuing role as Head of Cyber Security and Governance - Excellent salary package including superannuation - Based Kensington, Sydney. Hybrid options available **Join Our High-Performing Cyber Security Team at...
-
Head of Cyber Security
7 months ago
Sydney, Australia SustainRecruit Full time**Classification**: Tech **Job Location**: - Sydney NSW**Contract Type**: Full Time **Salary**: $220,000 - $270,000 + Super + Bonus **Company**: Join a leading financial services firm that has gone from strength to strength, known for delivering great long-term results with a fantastic working culture. This renowned financial services institution had...
-
Head of Cyber Security
2 weeks ago
Sydney, Australia Lumus Imaging Full time**Date**:18 Dec 2024 **Location**: Sydney, New South Wales, AU, 2000 **Company**:Healius **Job reference**: #13263 **Brand**:Lumus Imaging **Location**: Sydney **Work type**: Full Time (Permanent) Are you ready to lead the charge in protecting critical infrastructure and shaping the future of healthcare through cutting-edge technology? Lumus Imaging...
-
Head of Cyber Risk
2 months ago
Sydney, Australia Westpac Banking Corporation Full timeHead of Cyber Risk - Permanent - Sydney - Role sits in Risk Division / 2nd Line of Defence Function **How will I help?** As the Head of Cyber Risk, reporting to the Chief Risk Officer for Technology, you will join the Risk Division in a 2nd Line of Defence function and set, own, advise and report on the Group-wide approach to managing Cyber Risk. You will...
-
Cyber Security Risk Advisor
6 months ago
Sydney, Australia University of New South Wales Full time**Job no**: 525136 **Work type**: full time **Location**: Sydney, NSW **Categories**: Information Technology, Cyber - Employment: Full time (35 hours per week) - Continuing role as a Cyber Security Risk Advisor - Remuneration: Excellent salary package including leave loading and generous superannuation - Location: Based in Kensington, Sydney (hybrid...
-
Cyber Security Risk Advisor
2 months ago
Sydney, Australia University of New South Wales Full time**Job no**: 527915 **Work type**: Full Time **Location**: Sydney, NSW **Categories**: Information Technology, Cyber - Employment Type: full time continuing role as a Cyber Security Risk Advisor - Exceptional salary package including generous superannuation - Location: UNSW Kensington Campus (Hybrid Working Opportunities) **About UNSW**: UNSW isn’t like...
-
Head of Cyber Security
6 months ago
Sydney, Australia mx51 Full timeHead of Cyber Security mx51 is a payments-as-a-service solution for banks, non-bank acquirers, and other merchant service providers. We are building a payment platform that allows merchants to accept payments in-store, in-app and online, whilst consolidating all their data on a real-time business management dashboard. We're a bank grade scale-up which...
-
Head of Cyber Risk
3 months ago
Sydney, Australia Westpac Full timePermanent - SydneyRole sits in Risk Division / 2nd Line of Defence Function **How will I help?** As the Head of Cyber Risk, reporting to the Chief Risk Officer for Technology, you will join the Risk Division in a 2 nd Line of Defence function and set, own, advise and report on the Group-wide approach to managing Cyber Risk. You will have responsibility for...
-
Cyber Security Architect
2 months ago
Sydney, Australia Latitude IT Full timeCollaborative, supportive, Values driven environmentGreat coffee (and a variety of tea) and fresh fruitAvoid the traffic: we are outside the CBD and close to public transportLead security strategy in a high-impact financial environment.Work onsite in a formal, professional setting.Drive Secure By Design for cloud and emerging tech.Cyber Security Architect...
-
Head of Cyber Risk and Response
4 months ago
Sydney, Australia APRA Full timeHead of Cyber Risk and Response As a senior leader in the Non-Financial Risk team, the **Head of Cyber Risk and Response** will work collaboratively to deliver a range of initiatives and activities which drive the transformation of operational resilience across the industries APRA regulates. The scope of work will include the implementation of strategies...
-
Cyber Security Risk Consultant
1 month ago
Sydney, New South Wales, Australia HiTech Group Full timeJob Summary:Cyber Security Risk Analyst required to join a multidisciplinary team in a leading Federal Government department. The successful candidate will be responsible for identifying key security risks in the ICT environment and ensuring the department is able to mitigate and be resilient to cyber threat activity.Key Responsibilities:Conducting security...
-
Cyber Security Risk Manager
1 month ago
Sydney, New South Wales, Australia Tal Services Limited Full timeEstablished in Australia, TAL Services Limited is a leader in the financial services industry. Our company description reveals our commitment to developing leadership, promoting diversity, and retaining great talent.Welcome to TAL. We want to grow with you. Achieve with you. And support you to do your best work. That's why we're focused on developing...
-
Head of Cyber Risk and Response
4 months ago
Sydney, Australia Australian Prudential Regulation Authority (APRA) Full timeAs a senior leader in the Non-Financial Risk team, the **Head of Cyber Risk and Response** will work collaboratively to deliver a range of initiatives and activities which drive the transformation of operational resilience across the industries APRA regulates. The scope of work will include the implementation of strategies and work programs to enable...
-
Cyber Security Analyst
7 months ago
Sydney, Australia NSW Government -Department of Customer Service Full time**Cyber Security Analyst** **Role type**:Ongoing, Full-time opportunity **Salary**: DCS Clerk grade 7/8, annual base salary starting at $101,947 plus employer’s contribution to superannuation and annual leave loading **Location**: Hybrid opportunity, Head Office Haymarket Sydney **About the Role** We are currently looking for a Cyber Security Analyst to...
-
Senior Cyber Security Risk Manager
2 weeks ago
Sydney, New South Wales, Australia Stockland Full timeStockland Overview">We are a leading retail property group in Australia, with a long history of innovation and commitment to customer satisfaction. Our technology team is at the forefront of driving digital transformation across the organization, and we are now seeking a highly skilled Cyber Security Risk Manager to join our team.">Job Description">In this...
-
Cyber Security Advisor
2 days ago
Sydney, Australia Bluefin Resources Full timePrestigious State Government Client w Excellent Team Culture - 6 Month Contract w Guaranteed Extensions - Sydney Location w Excellent Hybrid Working Flexibility A large government organisation is on the lookout for a mid level Cyber Security Advisor for a 6 month contract based from their head office in the Sydney CBD. The purpose for the role is to be...
-
Incident Responder
6 months ago
Sydney, Australia Quigly Cyber Full timeDiverse, inclusive and supportive team - Proudly making a difference with the transition to renewable energy - You love Cyber Security Quigly are a boutique consultancy with a great network of clients across many industries. **Company Overview** Join one of Australia's top organizations. Our client improves the lives of millions - from lighting up sports...
-
Cyber Sec Gov
6 months ago
Sydney, Australia University of New South Wales Full time**Job no**: 525766 **Work type**: full time **Location**: Sydney, NSW **Categories**: Information Technology, Cyber - Employment: Full time (35 hours per week) - Duration: Continuing - Remuneration: Excellent salary package including leave loading and generous superannuation - Location: Based in Kensington, Sydney (hybrid working available) **About UNSW...
-
Manager Cyber Risk
3 months ago
Sydney, Australia Commonwealth Bank of Australia Full timeManager Cyber Risk **See yourself in our team**: The Technology and Operations (Tech & Ops) Risk team is responsible for providing specialist Operational Risk and Compliance (OR&C) advice and assurance of decisions made across the Technology, Chief Operating Office, and Business Unit divisions. **Do work that matters**: The Manager Cyber Risk plays and...