Principal Cyber and Technology Risk Advisor

7 months ago


Melbourne, Australia Department of Transport and Planning Full time

Location: Melbourne | CBD

Job type: Ongoing - Full Time

Organisation: Department of Transport and Planning

**Salary**: $130,673 - $174,869

Occupation: IT and Telecommunications

Reference: 3676

The Department of Transport & Planning brings together all transport modes to design, plan, build and operate Victoria's transport system. Our job is to further integrate the transport network and improve the delivery of services to Victorians for simpler, quicker and safer journeys that connect people and places and support Victoria's prosperity and liveability.

We’re focused on outcomes that deliver more choice, connections and confidence in our travel, ensuring the whole transport network works as one to deliver better services and outcomes.

The department is committed to building a culture where we say 'yes' to flexible work arrangements, provide personal and professional development programs and support ways of working that help employees balance work and life.

The department is an equal opportunity employer and welcomes applicants from a diverse range of backgrounds, including veterans, people who identify as Aboriginal and Torres Strait Islander, have a disability, are from varied cultural backgrounds and those who identify as LGBTIQ+. The department provides workplace adjustments for applicants with disabilities

**Investment and Technology** is a Group within the Department of Transport and Planning, and is responsible for leading investment strategy and provide commercial and information technology services to drive high performance and improved commercial outcomes for the Transport and Planning portfolio and state.

**Enterprise Technology** is a division within Investment and Technology, and is reponsible for providing IT services and technology for DTP and delivery Corporate and Enterprise wide capabilities. Enterprise Technology performs a central role providing core IT operational services, cyber leadership, and documenting strategic directions for all of DTP’s information technology.

**About the Role**

Reporting to the Assistant Director, IT Risk Assurance and Awareness, this role is responsible for providing specialist support to the Enterprise Technology Divisional leadership through the preparation and implementation of the specialised enterprise cyber and technology risk framework, leading the facilitation of cyber and technology risk assessments and guiding on risk prioritisation and management strategies. This role will work closely with the Line 2 enterprise risk team and provide guidance to relevant operational teams on implementing the Department’s Cyber and Technology strategy.
- To access the Position Description, please click here._

**Position Outcomes / Accountabilities**
- Effective Whole of Department Cyber and Enterprise Governance and Risk framework aligned and integrated with the Department’s enterprise Risk Management Framework.
- Established and embedded the cyber and technology risk operating rhythm, aligned to the Department’s enterprise risk cycle, including management and review of the Enterprise Technology Divisional risk register. - Whole of Department Security risk Profile Assessment (SRPA) established including implementation of Essential 8, Victorian Protective Data Security Framework, and other relevant best practice controls and control assurance overlay.- Operated within a complex and dynamic environment you will provide specialist support to Enterprise Technology leadership group through the preparation and co-ordination of enterprise cyber and technology risk, contingency and consequence framework establishment to improve resilience.
- Developed and managed stakeholder engagement, ensuring the achievement of identifying, assessing, and controlling cyber and technology risks.
- Lead in the prioritisation and closure of audit findings, including the activity of works to close audit findings.
- Lead the Cyber Maturity Benchmarking assessments and work with Enterprise Technology to undertake a risk-based approach to inform a program of works to uplift cyber maturity and mitigate risk.
- Promote and support safe, inclusive, and flexible team operations

**Qualifications and Experience**

**Desirable**
- Tertiary qualification in cyber and technology risk management
- Experience in developing and implementing an annualised security risk program assessment (SRPA)

**What we offer**
- Meaningful work making Victorian communities more accessible and liveable
- Professional growth and development opportunities across the department and the wider Victorian Public Services
- A hybrid working model focused on collaboration and teamwork
- Optimal work-life balance initiatives including flexible working arrangements
- Opportunity to work across multiple urban and suburban hubs
- We prioritise the development of a safe and inclusive culture

**Culture Value**

We are an equal opportunity employer, embracing a diverse range of applicants such as veterans, and peop


  • Cyber Risk Advisor

    7 months ago


    Melbourne, Australia Jenny Barbour IT & Project Recruitment Full time

    **Cyber GRC**: - **An iconic Australian brand**: - **Fantastic team culture** **About the job**: The role reports to the Cyber and Tech Risk & Governance Manager and provides cyber risk advisory to enable secure and cyber resilient business operation and innovation. Stakeholders include project delivery teams, security and technology experts, system...


  • Melbourne, Australia Verizon Full time

    **When you join Verizon**: Verizon is one of the world’s leading providers of technology and communications services, transforming the way we connect around the world. We’re a human network that reaches across the globe and works behind the scenes. We anticipate, lead, and believe that listening is where learning begins. In crisis and in celebration, we...

  • Principal Risk Advisor

    7 months ago


    Melbourne City Centre, Australia HAYS Full time

    Ongoing VPS 6 Principal Risk Advisor opportunity **Your new company** **Your new role** **What you'll need to succeed** - experience in developing and implementing strategic and operational risk management and reporting frameworks. - the proven ability to drive risk maturity across organisations and lead risk workshops. **What you need to do now** At...


  • Melbourne, Australia Technology People Australia Full time

    **The Organisation** *** A fantastic opportunity for an experienced Principal Security Advisor to join a medium sized company at the start of their cyber journey. This is an opportunity whereby you will drive and design the cyber strategy & roadmap, ensure the business adheres to certain standards and regulatory obligations and manages 3rd party...


  • Melbourne, Australia Technology People Australia Full time

    Reporting directly to the CISO this newly created role will see you drive maturity in engagement with technology and the business as well as grow the cyber education and influence capability. Managing a small and high performing team, this organisation offers a fast paced and dynamic work culture where you will truly get the opportunity to make a...


  • Melbourne, Australia Quigly Cyber Full time

    Supportive team - Multi-tasker - Good communicator Quigly are a boutique consultancy with a great network of clients across many industries. Currently we are looking for a Project Support Co-Ordinator for our fantastic client to join the Canberra based team as part of the Information Security Office. This is a 12 month fixed term contract with possibility...

  • Technology Risk

    3 days ago


    Melbourne, Australia Bluefin Resources Full time

    **The Company** You will join a well-known ASX listed Australian financial services organisation who pride themselves on a professional and supportive culture. **A day in the Life of a Technology Risk and Compliance Manager** This first line role is responsible for partnering with the business to provide risk and compliance advise to technology related...


  • Melbourne, Australia Mars Recruitment Full time

    Key Responsibilities: - Ensure the appropriate and successful execution of Operational Risk Framework throughout the business - Identify key incidents, as well as manage the appropriate escalation and remedial actions - Support the wider Cyber, Technology and Data teams with high-quality risk advice and collaboration - Conduct ‘Risk in Change’...


  • Melbourne, Australia DXC Technology Full time

    DXC Technology (NYSE:DXC) - where brilliant people embrace change and seize opportunities to advance their careers and amplify customer success. A new job opportunity presents now in DXC for a Consulting leader in the Cyber Security space to manage a successful Cyber Security team in delivering excellence to our client. This role will provide excellent...


  • Melbourne, Australia Mars Recruitment Full time

    Risk Partner - Technology - Central Melbourne location - Up to $200k package + sti - Modern and rapidly growing financial services organisation. Drive technology risk management excellence in an emerging ASX listed financial services company across BAU and a project portfolio. About the company: ASX listed and rapidly growing financial services...

  • Technology Risk

    5 days ago


    Melbourne, Australia Sportsbet Full time

    **About us** Sportsbet's purpose is to bring excitement to life for its customers and we do this by over-delivering on excitement through serious fun, disrupting the status quo and living our values. We’re a flexible, progressive, open-minded, and inclusive employer with over 7,000 cool, clever and curious people around the world. As part of the Flutter...


  • Melbourne City Centre, Australia Peoplebank Full time

    Location: - Melbourne CBD- Job Type: - Contract- Posted: - about 3 hours ago- Contact: - Abuk Mawn- Discipline: - Security / Cyber Security - Reference: - 258932One of our clients within the **Government enterprise sector**, is seeking an experienced **Cybersecurity Compliance Advisor **for a **12 month contract**. The **Cybersecurity Compliance Advisor**...


  • Melbourne, Australia Australian Unity Full time

    **Join us and let’s make a bigger difference together.** It’s an exciting time to be joining Australian Unity - we have grown significantly over recent years and are transforming to capitalise on further growth opportunities to help our customers and employees thrive. We operate with commercial principles and with a strong social purpose to create...


  • Melbourne, Australia Trustwave Full time

    As a recognized global cyber defender that stops cyber threats all day, every day - we enable our clients to conduct their business, securely. Trustwave detects threats that others can’t see, enabling us to respond quickly and protect our clients from the devastating impact of cyberattacks. We leverage our world-class team of security consultants, threat...


  • Melbourne, Australia ANZ Banking Group Full time

    About the role Work for one of Australia's Big 4 Join ANZ - We’ll invest in your career Be part of an organisation that values diversity, inclusion, and respect **Role Type**: Permanent, Full-Time **Role Location**: 833 Collins Street, Docklands VIC 3008 This role is responsible for supporting the communications response during technology incidents,...


  • Melbourne, Victoria, Australia Department of Government Services Full time

    About the RoleWe are seeking a highly skilled Cyber Risk and Assurance Professional to join our team at the Department of Government Services in Australia. As a Senior Cyber Risk and Assurance Officer, you will play a crucial role in supporting the Victorian Government Chief Information Security Officer and Executive Director, Data and Digital...


  • Melbourne, Australia Interactive Pty Ltd Full time

    **LOCATION(S)** - Melbourne *** **POSITION** - Permanent - **DEPARTMENT** - IT & Telecomms - Our Cyber Security team protects and defends our customers’ and own internal systems and our cyber offering includes threat & vulnerability assessments, cyber risk & governance consulting and 24/7 managed security services. Our Cyber, Risk & Governance team work...


  • Melbourne, Australia Experis Full time

    Shape the security strategy for a renowed educational instituate. - Permanent opportunity with a competive salary package - Hybrid work arrangement - Footscray Office As the Cyber Risk and Assurance Manager you will lead cybersecurity governance, risk, compliance, and assurance. You will establish strong security practices, define standards, and manage...


  • Melbourne, Victoria, Australia Department of Government Services Full time

    Established in 2023, the Department of Government Services is dedicated to streamlining services for Victorians and businesses. As a Cyber Assurance and Risk Management Lead, you will support the Victorian Government Chief Information Security Officer and Executive Director, Data and Digital Resilience in uplifting cyber security across the Victorian Public...


  • Melbourne, Australia Saab Inc. Full time

    **Cyber Security Consultant** **About us**: Saab Australia is a defence, security and cyber solutions provider, specialising in the development and integration of major defence and security systems. For over 30 years in Australia, we have built a reputation for delivering complex systems integration projects that provide proven and advanced capabilities to...