Third Party Security Consultant

18 hours ago


Sydney, Australia Commonwealth Bank Full time

**_You are _**_a problem solver with a strong background in Cyber Security Risk and Governance with a key focus across data minimisation. _
- **_We are _**_one of the best and most advanced Cyber Security teams in Australia. _
- **_Together we can _**_contribute to protecting the group, its customers and community. _

**Your business:
**The Technology division delivers the Group’s information technology and banking operation functions to ensure the highest levels of customer service through world-class process excellence and technology innovation. Cyber Security protects the bank and our customers from theft, loss and risk events, through effective and proactive management of cyber security, privacy and operational risk.

We support our people with the flexibility to balance where work is done with at least half your time each month connecting in office. We also have many other flexible working options available including changing start and finish times, part-time arrangements and job share to name a few. Talk to us about how these arrangements might work for you.

**Your new team**:
This role will be part of the Third-Party Security Team. The team’s primary role is, facilitating the assessment of cyber risks in relations of the Group’s third parties and engaging in activities to reduce the quantity of data held by third parties.

The Third-Party Security Team, implements, consults, and drives a variety of complex assessment and governance initiatives related to the cyber security of our third parties. The Team maintains a robust framework to ensure the Group’s information security risk objectives are being met.

**Your impact and contribution**:
This role has a focus on third parties, and you can expect to be engaging and working with your peers across the Group’s third-party landscape who engage with Commbank as well as like-minded Cyber Security professionals across the Group.

A key focus will be collaborating with cross-functional teams to implement **data minimisation **strategies, ensuring that third-party engagements adhere to the group’s security and related standards. This will involve, assessing data requirements, identifying opportunities to reduce Commbank’s data exposure with internal stakeholders, and working closely with third parties to enforce data minimisation practices.

You will also:

- Undertake security assessments to measure the design and operating effectiveness of the security controls of CommBank’ third parties.
- Identify and documenting supplier security risks and advising on the management of findings through to issue remediation.
- Provide reports and insights into findings arising from security assessments.
- Contribute to continuous improvement activities associate with the groups third party and data governance and date minimisation processes.

**We are interested in people who**:
Will bring previous experience working in security governance and security risk management with the key focus on data minimisation. You have the ability to consult with the business on complex security issues to ensure the organisation’s risk and governance objectives are met.

You will bring:

- **Proficient **across **data minimisation **, supporting data management solutions and services across the business.
- Experience across **cyber risk and governance **.
- Understanding in information security standards such as APRA CPS 234, **NIST CSF, and the ISO 27000 series **essential.
- **Process improvement mindset **and someone who is curious and keen to help others and looking to build a future career across cyber.
- Understanding of technical and procedural information security in relation to key third parties used by large financial service organisations.

We're aware of some accessibility issues on this site, particularly for screen reader users. We want to make finding your dream job as easy as possible, so if you require additional support please contact HR Direct on 1800 989 696.

Advertising End Date: 15/09/2024



  • Sydney, Australia ING Full time

    We are looking for an enthusiastic **Information Security Analyst - Third Party Security **to join our growing Information Security team in Sydney. The Information Security team, led by the ING Australia CISO provides cyber security capabilities and consultancy to enable the entire organisation to be successful in a safe and secure way. In this **newly...


  • Sydney, New South Wales, Australia Commonwealth Bank Full time

    About the RoleThis is an exciting opportunity to join Commonwealth Bank, a leading financial institution, as a manager of third party cyber incident response. The role involves effective management and coordination of cyber security incidents, threats, privacy, and operational risk across the group globally.The team is passionate about leveraging existing...


  • Sydney, Australia ING Full time

    It’s a fun and exciting time to join ING, Australia’s most recommended bank for the 3rd year running and we’re on the hunt for an experienced **Third Party Risk Manager** to join our high performing team. As **Third Party Risk Manager**, you’ll be responsible for designing and embedding the Third Party Risk Management Framework. You will be...


  • Sydney, New South Wales, Australia Commonwealth Bank Full time

    About Commonwealth BankCommonwealth Bank is a leading financial institution that prioritizes the protection of its customers and the community from theft, losses, and risk events.We are seeking a seasoned cyber security professional to join our team as a manager of third party cyber incident response.Your Key ResponsibilitiesYou will be responsible...


  • Sydney, New South Wales, Australia Risk Full time

    About the OpportunityWe are seeking a dynamic and innovative Technology Third Party Risk Specialist to join our 'Risk and Controls Chapter' in the Group Risk Platform. As a key member of our team, you will play a critical role in shaping how we manage third-party risk at Woolworths.Key Responsibilities:Reimagine how we do third-party/vendor risk management,...

  • Risk Strategy

    17 hours ago


    Sydney, Australia KPMG Full time

    Our Risk Strategy & Technology team is dedicated to helping clients achieve commercial outcomes by viewing risk management as a lever for enhanced innovation, reputation, and sustainable growth. Our areas of expertise include Risk Strategy - understanding risk capacity to inform strategic direction and decision-making, Governance - looking at Risk Operating...


  • Sydney, New South Wales, Australia Suncorp Full time

    About the Role">This is an exciting opportunity to join a newly established team at Suncorp as a Third-Party Risk Coordinator on a 6-month fixed term contract. As a key member of the team, you will be responsible for supporting the implementation of CPS230 regulation, currently being implemented across the organization.">Key Responsibilities">">Build and...


  • Sydney, New South Wales, Australia Commonwealth Bank Full time

    About Commonwealth BankAt Commonwealth Bank, we are committed to protecting our customers and the community from theft, losses, and risk events through effective and proactive management of cyber security, privacy, and operational risk.We are looking for a highly motivated individual who can manage third party cyber incidents, threats, privacy, and...


  • Sydney, Australia Risk Full time

    We are Woolworths Group We are Woolworths Group. 200,000+ bright minds, passionate hearts, and unique perspectives across Australia and New Zealand. Connected by a shared Purpose - 'to create better experiences together for a better tomorrow'. That Purpose fuels our ambition to explore new ideas, make brave commitments, and innovate better ways to meet the...


  • Sydney, New South Wales, Australia Risk Full time

    Our TeamWe are a collaborative and dynamic team of professionals who are passionate about risk management and compliance. As a Technology Third Party Risk Specialist, you will work closely with our team to develop and implement effective risk management strategies. Our team is committed to delivering exceptional results and making a positive impact on our...


  • Sydney, Australia Launch Recruitment Full time

    Hybrid Working - 3 days in the office 2 days fromt home - ISO experience is essential certified is a beneficial - Insurance Expereince would be an advantage The Information Security, Risk and Complaince Consultant will collaborate with compliance, security, and general IT risks to ensure that IT supports the business objectives of the group, while enforcing...


  • Sydney, New South Wales, Australia Suncorp Full time

    About Tideri JobbörseCompany Overview: We are a leading insurance company with a strong presence in Australia. Our mission is to make the complex simple and bring our customers peace of mind when it matters most.Job Description: As a Third-Party Risk Coordinator, you will play a crucial role in supporting our team with administrative tasks such as updating...


  • Sydney, Australia Naviro Pty Ltd Full time

    Join a growing cyber security firm - Work on challenging and interesting projects - Be surrounded by like minded specialists in offensive security Sekuro Operations is seeking a full time ‘Consultant’ to join our Offensive Security Team in Sydney, NSW. The role is suited for professionals with experience in manual penetration testing and a passion for...


  • Sydney, Australia Atlassian Full time

    **Working at Atlassian** **Atlassian can hire people in any country where we have a legal entity. Assuming you have eligible working rights and a sufficient time zone overlap with your team, you can choose to work remotely or return to an office as they reopen (unless it’s necessary for your role to be performed in the office). Interviews and onboarding...

  • Lead Security Analyst

    17 hours ago


    North Sydney, Australia opentext Full time

    **OPENTEXT - THE INFORMATION COMPANY** As the Information Company, our mission at OpenText is to create software solutions and deliver services that redefine the future of digital. Be part of a winning team that leads the way in Enterprise Information Management. **Role** - Work in a team that manage and maintain Web Application Firewalls (WAF), Intrusion...


  • Sydney, Australia Security Centric Full time

    **Role**: Cyber Security Delivery Lead **Location**: Sydney **Division**: Service Delivery - Advise and shape client cyber security journeys - Reporting to a Managing Director that wants to hear and support your ideas Lead a skilled team delivering services and solutions across projects and long-term managed services clients. About us Not all...

  • Solution Designer

    4 days ago


    Sydney, Australia Torch Professional Services Pty Ltd Full time

    SOLUTION DESIGNER - LONG TERM CONTRACT - LARGE TRANSFORMATION **Solution Designer - Security - Major Transformation Program** Torch Professional Services is a people-focused specialist consultancy that provides skilled project IT Professionals to organisations across Australia. **This is a great opportunity to work on exciting community-driven digital...

  • Security Consultant

    17 hours ago


    Sydney, Australia 55 Exec Search Full time

    Security Consultant - Australia - GRC / PCI / Risk Assessments Our client is a global cyber security solutions, services and support advisory business. Due to one of the biggest acquisitions within the Cyber Security industry they are now growing and expanding internationally and looking for Security Consultants to join some of the best consultants in the...


  • Sydney, Australia Rest Full time

    **Job Description**: - ** Financial Services - Award Winning Super Fund**: - ** Critical Leadership Role, Building and Maturing of the Security Operations Centre (SOC)**: - **Permanent, Full-time Opportunity**: - ** Hybrid Working from Sydney Location** Awarded as an ESG and Responsible Investment Leader, Rest is one of Australia’s largest...


  • Sydney, Australia Citi Full time

    Job Description The Australia Lead Business Information Security Officer (BISO) is accountable for all IS activities including but not limited to oversight of the IS Risk Management to the Franchise and its processes, local BISO team management, and also support the APAC region when needed. The Lead BISO will support the Country, APAC region and work...