GRC Analyst

1 week ago


City of Melbourne, Australia Kinetic Full time

What You Will Do

- Support and evaluate security policies and governance roles.
- Integrate security into projects and business planning.
- Establish and maintain the Technology Risk Register and remediation tracking.
- Develop, review, and promote security policies and procedures.
- Report on security assurance, control maturity, and compliance gaps.
- Build and manage third-party risk assessments and ensure compliance in contracts.
- Document mitigation actions, risk treatments, and residual risk.
- Monitor and report on security threats in collaboration with SOC providers.
- Track and document regulatory obligations and changes (e.g. Essential Eight, SOCI).
- Help the organisation meet compliance requirements (ISO 27001, PCI DSS, NIST, VPDSS).
- Support internal and external audit activities and complete follow-up actions.
- Coordinate compliance testing, risk workshops, and incident response tabletop exercises.
- Develop and support cyber security awareness programs across the organisation.
- Prepare clear and meaningful executive and board reporting on risks, compliance, and assurance.

What You Will Need

- 3–5 years’ experience in cyber governance, risk, or compliance.
- Knowledge of ISO 27001, NIST, PCI DSS, Essential Eight, VPDSS
- Risk assessment and audit experience.
- Strong communicator who can influence and educate.
- Builder mindset – comfortable starting with a blank canvas.

About us:

At Kinetic, we don't just move people - we're creating the positive change our planet needs. As a leader in sustainable transport, we're committed to creating cleaner, safer, and greener environments for generations to come.

Our size and scale give our people real opportunities to learn, grow, and progress in their careers. Calm, positive and respectful team players thrive here. Our people embrace change and are encouraged to stretch their comfort zone while making a difference. We challenge each other to be our best.

We're driven by respect, diversity and genuine connection. From networking groups to community partnerships and volunteering, our camaraderie naturally brings people together. Our energy and dedication keep communities moving and our people growing.

How to apply:

Kineticis proud to be an Equal Opportunity Employer and our people represent the community which we service. We invite all suitably qualified applicants to apply, including First Nations People, and people from diverse social, cultural and gender backgrounds.

If you're interested in this rewarding role with Kinetic then click the 'Apply' button now

End of listing

#J-18808-Ljbffr


  • Grc Analyst

    1 week ago


    Melbourne, Australia Anson McCade Full time

    Manage Security Compliance Standards - Lead Audit and Review Processes - Mentor Junior Analysts Our client is looking for a GRC Analyst who will work closely with the Technology team and report to the Technology Risk & Security Manager. This role will focus on ensuring adherence to internal and external security standards and requirements such as ISO 27001,...

  • Grc System Analyst

    7 days ago


    Melbourne, Australia HESTA Full time

    GRC System Analyst **Be inspired everyday - let your work make a difference** At HESTA we're a leading national superannuation fund dedicated to people working in health and community services - a growing sector of ordinary people doing extraordinary things, day in day out, right across Australia. More than 1 million Australians trust HESTA with their...

  • Grc Cyber Analyst

    1 week ago


    Melbourne, Australia Arup Full time

    **Joining Arup** Arup’s purpose, shared values and collaborative approach has set us apart for over 75 years, guiding how we shape a better world. As a governance, risk and compliance (GRC) cyber analyst for our growing global cyber security team you will help protect Arup’s digital infrastructure and data from cyber-attack. You will help to assess...

  • Grc Cyber Analyst

    5 days ago


    Melbourne, Australia Arup Full time

    A career at Arup offers you the chance to make a positive difference in the world. Independently owned and independently minded, we attract a diverse mix of people to work on ground-breaking global projects. We have an ambitious commitment to be the digital leader in the built environment and have digital teams and experts all over the world, who collaborate...


  • Melbourne, Australia HESTA Full time

    GRC Principal System Analyst **Careers with Impact** More than one million Australians trust HESTA with their money. HESTA is a top-performing industry super fund working for real-world impact. We use our expertise and influence to deliver strong long-term returns while accelerating our contribution to a more sustainable world. HESTA is also an inspiring...


  • Melbourne, Australia Hudson Australia Full time

    You'll be an SME on cyber GRC within the company, advising, designing and implementing fit for purpose security controls to protect data and meet compliance requirements. The role can be performed remotely from anywhere within Australia! Responsibilities of the role include but are not limited to: - Implementing security controls, risk assessment...


  • City of Melbourne, Australia Bank Australia Limited Full time

    Job Category: Banking and Financial Services Through the merger of Bank Australia and Qudos Bank we’re creating a better, stronger and more resilient bank for our customers and employees. As one company with two trusted brands, we’re building on the strong foundations of our history and shared values as we bring together the best of both banks. As...

  • Senior Risk Analyst

    3 days ago


    City of Melbourne, Australia Sustainability Full time

    Are you an experienced risk professional looking to take the next step in your career? We’re seeking a Senior Risk Analyst to join a collaborative and purpose-driven risk team at an industry super fund. In this key role, you’ll contribute to the effective operation of our Risk Management Framework and play an active part in enhancing our organisational...


  • Council of the City of Sydney, Australia Hudson AU Full time

    Overview - Build the next generation of enterprise risk reporting and analytics - Drive uplift in GRC tooling, Power BI reporting, and automation capability - Sydney | 12-Month Contract | Hybrid (3 days on-site) The Opportunity Join a leading national organisation undergoing a major uplift in governance, risk, and compliance capability. As Risk...


  • Melbourne, Australia Naviro Pty Ltd Full time

    Hybrid work setting - Melbourne office - Rewarding 6 month contract - Showcase your Cyber Security Operations and GRC capability Our client is an internationally leading cyber security company who are seeking an additional security analyst for an upcoming project. Integrating into an existing team, you will focus on providing security operations services...