Head of Cyber Security and IT Risk

2 weeks ago


Sydney, Australia LGT Crestone Wealth Management Full time

Min Experience- 10 yearsYour team
- Working as a part of the Risk, Legal & Compliance team with overall responsibility to drive all strategic and operational cyber security and IT risk functions.
- Working alongside the Head of Technology, senior business and risk executives and project management team within the reporting structure of the Chief Risk Officer.

You will be supported by 2 staff members operating in the following roles: Senior Cyber Security Consultant and Cyber Security Analyst.

Your Role

Cyber Security Governance
- Maintain a lean and effective cyber and technology risk governance structure, ensuring that risk management is deeply embedded into strategic business projects and operational decision-making.
- Ensure the business maintains an effective and agile cyber security policy framework that is aligned with LGT Group directives.
- Develop and manage the cyber security budget for all operational and strategic spend, ensuring resource allocation prioritises areas of high-risk and strategic importance.
- Establish and maintain a detailed cyber assurance program (including targeted reviews, supplier assurance, red teaming, penetration testing, disaster recovery testing, etc.) to identify and prioritise key gaps for remediation.
- Produce and present high-quality cyber risk reports to executive committees and board of directors (locally and at Group level), educating senior executives and the board on material risks, regulatory compliance, and strategic risk mitigation initiatives.
- Maintain a strong Line-2 assurance framework challenging the design and operations of the technology function, specifically ensuring the business adheres to GS007 control framework.
- Actively participate in monthly and quarterly vendor executive governance meetings — ensuring key suppliers meet contractually agreed KPIs and constantly adjust controls to mitigate emerging risks.
- Track audit findings and recommendations to ensure appropriate critical and high-rated issues are promptly addressed. Proactively engage internal and external auditors to identify synergies and avoid redundant reviews.

Stakeholder Management
- Develop and nurture relationships with key internal stakeholders, specifically executives, technology, risk management, legal, audit and HR management teams to create a shared sense of purpose and positive working culture.
- Liaise with external stakeholders, such as law enforcement, external auditors, advisory bodies, institutional clients, and business partners, as necessary, to ensure that the business maintains a resilient posture and promptly adjusts controls in line with emerging threats.

Strategy Execution
- Develop and deliver a high-impact cyber resilience strategy that is measurable, scalable, and advances strategic business goals.
- Ensure the business maintains a robust enterprise security architecture framework, ensuring that new systems are secure by design, fault-tolerant and architected in-line with industry reference standards.
- Actively collaborate with the Group CISO and their leadership team to identify opportunities to integrate local capabilities with the Group, ensuring consistency and strategic alignment.
- Negotiate vendor contracts to ensure the business invests in cost-effective and highly scalable solutions.
- Maintain a lean and effective cyber security team through ongoing mentorship, training, and maintaining a fine balance between outsourced and insourced capabilities.
- Stay abreast with key cyber security threats and regulatory changes and work with relevant stakeholders to adapt the cyber security strategy accordingly.

Incident Response
- Lead incident response, ensuring prompt containment, assessment, and remediation of key incidents. Conduct root cause analysis and implement corrective actions to prevent recurrence.
- Lead executive/board cyber crisis response simulations and drive the remediation of key issues identified.

Security Operations
- Work with outsourced providers and internal teams to ensure the business maintains a highly tuned and effective 24/7 security operations centre that prioritises threats on the business’s most valuable digital assets.
- Ensure the technology team and outsourced vendors maintain effective cyber security operational hygiene, including access management, backups, vulnerability management, patching and systems hardening.

Your skills & experience
- 10+ years of IT work experience, with at least 6+ years in leadership position overseeing cyber security teams or key projects and influencing decision makers.
- Proven leadership skills and the ability to work effectively with stakeholders, financial management, leading teams and executing complex change.
- Exceptional communications skills, with the ability to communicate with staff at various levels, both technical and clear business terms, regarding complex strategic projects.

Your role competencies
- Strong communication skills
- Resourceful, self-starter/driven
- R



  • Sydney, Australia SustainRecruit Full time

    **Classification**: Tech **Job Location**: - Sydney NSW**Contract Type**: Full Time **Salary**: $220,000 - $270,000 + Super + Bonus **Company**: Join a leading financial services firm that has gone from strength to strength, known for delivering great long-term results with a fantastic working culture. This renowned financial services institution had...

  • Head of Cyber Security and IT Risk

    Found in: Talent AU C2 - 2 weeks ago


    Sydney, Australia LGT Crestone Full time

    Your team Working as a part of the Risk, Legal & Compliance team with overall responsibility to drive all strategic and operational cyber security and IT risk functions. Working alongside the Head of Technology, senior business and risk executives and project management team within the reporting structure of the Chief Risk Officer. You will be supported...


  • Sydney, Australia Nuix Careers Full time

    Nuix creates innovative software that empowers organisations to simply and quickly find the truth from any data in a digital world. We are a passionate and talented team, delighting our customers with software that transforms data into actionable intelligence. We collaborate to provide innovative solutions for more than 2,000 customers in over 75 countries....

  • Cyber Sec Gov

    14 hours ago


    Sydney, Australia University of New South Wales Full time

    **Job no**: 523893 **Work type**: full time **Location**: Sydney, NSW **Categories**: Information Technology - Employment: Full time (35 hours per week) - Duration: Continuing - Remuneration: Excellent salary package including leave loading and generous superannuation - Location: Based in Kensington, Sydney (hybrid working available) **About UNSW...

  • Cyber Security Advisor

    14 hours ago


    Sydney, Australia NSW Government -Department of Customer Service Full time

    **Cyber Security Advisor (Training & Resilience Stream)** - ** Role type**: Ongoing, full-time opportunity - ** Salary**: DCS Clerk Grade 7/8, annual base salary starting at $101,947 plus employer’s contribution to superannuation and annual leave loading - ** Location**:Sydney **About Us**: The Department of Customer Service (DCS) is transforming the way...


  • Sydney, Australia NSW Government -Department of Customer Service Full time

    **Role: Cyber Security Analyst Roles** **Grade: Ongoing - Grade 7/8** **Location: Sydney or Bathurst** ***Role Type: Full Time Permanent** **About the Role** Cyber Security NSW is looking for a Cyber Security Analyst, focusing on incident response, to join our Intelligence and Response Team. The Intelligence and Response Team leads and coordinates...


  • Sydney, Australia Ventia Pty Limited Full time

    Cyber Security Operations Analyst **Date**:29 Feb 2024**Location**:Sydney, NSW, AU, 2060**Company**:Ventia- **Use leading edge security tools to work on exciting projects**Flexible start and finish times & work from office/ work from home split**Strong team culture with genuine opportunity for career growth and progression** An exciting opportunity for a...


  • Sydney, Australia Aon Corporation Full time

    Posting Description: - Key leadership opportunity for a senior Cyber specialist - Work across an enviable portfolio for our Australian operations - Join one of Australia’s leading Cyber Risk solutions provider **Cyber Risk Consultant** You will be an integral component of the Cyber Solutions Group, working closely with the Cyber Insurance Practice...


  • Sydney, Australia Charterhouse Full time

    Excellent opportunity for senior Security professionals with aspirations to work towards the executive suite as you will be engaging with C level on a regular basis and operate at a strategic level. The ability to communicate technical terminology into business risks is essential and your communication style should be collaborative to see you successful in...

  • Assistant Director Cyber Security Risk

    Found in: Talent AU C2 - 1 week ago


    Sydney, Australia Softtest pays pty ltd Full time

    Australian Citizens with ability to obtain NV1 Clearance residing in Australia only respond.Contract start 07 August 2023 to 12 months, 12 months extensions.Australian Citizen, Ability to obtain NV1 Clearance, Canberra, Sydney, Brisbane, Melbourne role.Send your responses to jobs@softtestpays.comOverviewThe EL1 Cyber Security Risk is accountable under broad...

  • Senior Cyber Analyst

    Found in: Talent AU C2 - 2 weeks ago


    Sydney, Australia Tal Services Limited Full time

    Company DescriptionWelcome to This Australian Life. From the millions of Australians we protect, to those that make it happen every day at TAL, people really are what we’re all about. We want to grow with you. Achieve with you. And support you to do your best work. That's why we're focused on developing leadership, promoting diversity, rewarding...

  • Manager - Third Party Tech & Cyber Risk

    Found in: Talent AU C2 - 2 weeks ago


    Sydney, Australia Tal Services Limited Full time

    Company DescriptionWelcome to This Australian Life. From the millions of Australians we protect, to those that make it happen every day at TAL, people really are what we’re all about. We want to grow with you. Achieve with you. And support you to do your best work. That's why we're focused on developing leadership, promoting diversity, rewarding...


  • Sydney, Australia Security Careers at Mantel Group Full time

    **About us** Mantel Group is an Australian-owned technology consulting business with capabilities across Cloud, Digital, Data & Security. Since our inception in November 2017, we have experienced remarkable growth across Australia & New Zealand and are honoured to be recognised as a Great Place to Work for 4 years in a row! We hire smart and talented...

  • IT & Cyber Security Manager

    Found in: Talent AU C2 - 2 weeks ago


    Sydney, Australia West Recruitment Full time

    - Circa $260k package- Get in on the ground floor- High growth organisation!- Sydney CBD locationYour New Employer:West Technology is partnering with a new joint venture company in the energy sector that is backed by highly successful companies that operate within Australia as well as Europe. Being a completely greenfields organisation, the successful...

  • Snr Cyber Security Architect

    Found in: Talent AU C2 - 7 days ago


    Sydney, Australia UNSW Australia Full time

    Snr Cyber Security Architect Job no: 524357 Work type: full time Location: Sydney, NSW Categories: Information Technology Employment Type: continuing full time role Excellent salary package available Location: UNSW Kensington Campus (Hybrid Working Opportunities) About UNSW: UNSW isn’t like other places you’ve worked. Yes,...


  • Sydney, Australia TAL Full time

    Company Description Welcome to This Australian Life. From the millions of Australians we protect, to those that make it happen every day at TAL, people really are what we’re all about. We want to grow with you. Achieve with you. And support you to do your best work. That's why we're focused on developing leadership, promoting diversity, rewarding...

  • SOC Analyst

    1 week ago


    Sydney, Australia Genesis IT&T Pty Ltd Full time

    **9 Months Contract (with the view to extend)**: - **Global Technology Company**: - **Experience in Healthcare industry is mandatory** A leading global technology company is currently seeking for an experienced SOC Analyst to be responsible for ensuring the detection and resolution of cyber security incidents, exposures, and vulnerabilities across all...

  • Program Manager

    14 hours ago


    Sydney, Australia NSW Government -Service NSW Full time

    **Pr** **ogram Manager** - Location: Hybrid opportunity, Head Office - Haymarket- 12-month opportunity with the potential to convert to Permanent- Salary: SNSW Grade 11/12 $145,682 - $175,260 + 10.5% superannuation **Do you want to...** - Deliver state-of-the-art digital experiences- Support the delivery of Cyber Security Projects- Be part of a truly agile...


  • Sydney, Australia NSW Government -Corporate Services Full time

    **About Us** Transport for NSW is the lead agency of the NSW Transport cluster. Our role is to lead the development of a safe, efficient, integrated transport system that keeps people and goods moving, connects communities and shapes the future of our cities, centres and regions. We work with several government agencies to coordinate road, rail, bus and...


  • Sydney Central Business District, Australia Peoplebank Full time

    Location: - Sydney CBD- Job Type: - Contract- Posted: - 23 days ago- Contact: - Pravin Manandhar- Discipline: - Security / Cyber Security - Reference: - 253625**The company**: Large insurance group with over 1.8 Million members, who pride themselves on a human approach and putting their members first. They offer a friendly, dynamic, and flexible working...