[Only 24h Left] Senior Security Risk Reporting Specialist
6 days ago
Senior Security Risk Reporting Specialist
The Senior Security Risk & Reporting Specialist is a pivotal role responsible for developing, managing, and maintaining the end-to-end security risk management processes. This includes policy exceptions and exemptions, maintaining the security risk register, and supporting security risk assessments. The specialist will develop and maintain a security risk reporting framework, implement a cyber risk quantification capability, and provide regular executive-level reporting on security outcomes. This role requires cross-collaboration with personnel, physical, and cyber/information security topic areas to ensure a cohesive end-to-end analysis, identification, management, and reporting of security risks and issues.
The team
APRA is embarking on an ambitious program of change incorporating cloud, data, digital and security initiatives. This has created the opportunity to join a small but growing Security team within the Technology, Data and Security division. The Security team manages cyber, information and personnel security aligning with the Protective Security Policy Framework (PSPF). The team works in a highly collaborative manner with a wide range of stakeholders at all levels of the organisation to develop, communicate and implement the security strategy. Key stakeholders include the CIO, CDO, CRO, Enterprise Architecture and IT Governance, as well as the Business Divisions, People and Culture, Procurement and Project Management Office.
Key responsibilities
- Lead the development, management and maintenance of security risk management and reporting processes, including policy exceptions and exemptions.
- Proactively maintain and manage the security risk register and support security risk assessments.
- Ensure cohesive end-to-end analysis, identification, management, and reporting of security risks and issues through cross-collaboration with personnel, physical, and cyber/information security teams; as well as broader teams in Technology and Data, Project Management Office, People and Culture and Procurement.
- Lead the coordination and management of government reporting (e.g., PSPF, E8, response to government directives).
- Develop and maintain the security risk reporting framework, including the implementation and ongoing management of a cyber risk quantification capability.
- Support the CISO by providing regular executive-level reporting on security outcomes, including development of executive papers and data-driven metrics.
- Contribute to strategic security analysis and planning to enhance the overall security framework, execution of security objectives and resolution of gaps.
- Proactively contribute to and support broader direct team outcomes.
To work with us
To work with us you must be an Australian citizen with eligibility to gain a NV1 clearance through the Australian Government Security Vetting Agency.
About you
- Proven track record in security risk management and reporting.
- Proven track record in maintaining security risk registers and supporting security risk assessments.
- Experience in developing and maintaining security risk reporting frameworks and implementing cyber risk quantification capabilities.
- Experience in providing executive-level reporting, including executive papers and data-driven metrics.
- Experience in coordinating and managing government reporting, such as PSPF and E8.
- Strong knowledge of security risk management principles and practices.
- Strong understanding of security controls and compensating controls.
- Proficiency in risk assessment methodologies and tools.
- Ability to develop and maintain comprehensive security risk reporting frameworks.
Familiarity with cyber risk quantification techniques e.g. FAIR.
About APRA
Australian Prudential Regulation Authority (APRA) is an independent statutory authority supervising almost 1,200 financial institutions and overseeing $8.6 trillion in assets for Australians. APRA seeks to recruit, develop and retain highly skilled professionals to shape financial services and protect the financial wellbeing of the community.
Why Work for APRA
APRA rewards skilled professionals, supports wellbeing, and cultivates an inclusive workplace where everyone belongs, feels valued and respected. The commitment to wellbeing is reflected in engaged people supported by resilient leaders and a values‑aligned culture. APRA fosters diversity of background, thought, and experience, recognising that a broad range of perspectives enables us to better protect the financial wellbeing of the Australian community.
To apply
To apply, please visit our Careers Page at www.apra.gov.au. For further information or assistance, please email talent@apra.gov.au.
#J-18808-Ljbffr
-
Council of the City of Sydney, Australia International Netherlands Group Full timeGroup Treasury Controls Specialist page is loaded## Group Treasury Controls Specialistlocations: Sydneytime type: Full timeposted on: Posted 3 Days Agotime left to apply: End Date: October 25, 2025 (11 days left to apply)job requisition id: REQ-10103081At ING Australia, you will have the chance to build a career as unique as you are, with the...
-
Cyber Security Specialist
2 weeks ago
City of Brisbane, Australia CAE Inc Full timeCyber Security Specialist page is loaded Cyber Security Specialist Apply locations Homebush Brisbane time type Full time posted on Posted Yesterday job requisition id 116869 About This Role Job Title: Cyber Security Specialist Job Location: Homebush, NSW CAE Overview At CAE, we equip people in critical roles with the expertise and solutions to create a safer...
-
[Only 24h Left] Senior Manager, Transactions
2 weeks ago
Council of the City of Sydney, Australia Dexus Units FP Stapled Full timeSenior Manager, Transactions - Retail page is loaded## Senior Manager, Transactions - Retaillocations: Sydney, QQTtime type: Full timeposted on: Posted 5 Days Agotime left to apply: End Date: November 14, 2025 (14 days left to apply)job requisition id: R0005436**Dexus (ASX: DXS)** is a leading Australasian fully integrated real asset group,...
-
Only 24h Left! Senior Manager
1 week ago
Council of the City of Sydney, Australia ING Group Full timeRole Overview ING Australia is hiring for multiple senior roles in Technology Risk within our Line 1 Technology Risk & Controls function. If driving risk excellence is your passion, we want to hear from you! As a leading digital bank, Technology Risk at ING Australia is about enabling informed decisions so we can deliver secure, reliable products and...
-
[Only 24h Left] Head of Risk and Resilience
3 weeks ago
Council of the City of Sydney, Australia Standards Australia Full timeProvide strategic leadership and drive operational execution of Standards Australia's enterprise risk function. 23rd October, 2025 Who are we? Standards Australia (SA) is the peak standards development organisation in Australia, with a rich history that dates back to 1922. We proudly employ over 200 professionals dedicated to helping shape Australia’s...
-
Senior Security Risk Reporting Specialist
7 days ago
Sydney, New South Wales, Australia Australian Prudential Regulation Authority Full time $120,000 - $180,000 per yearThe role The Senior Security Risk & Reporting Specialist is a pivotal role responsible for developing, managing, and maintaining the end-to-end security risk management processes. This includes policy exceptions and exemptions, maintaining the security risk register, and supporting security risk assessments. The specialist will develop and maintain a...
-
Senior Security Risk Reporting Specialist
7 days ago
Sydney, New South Wales, Australia Australian Prudential Regulation Authority (APRA) Full time $120,000 - $180,000 per yearThe roleThe Senior Security Risk & Reporting Specialist is a pivotal role responsible for developing, managing, and maintaining the end-to-end security risk management processes. This includes policy exceptions and exemptions, maintaining the security risk register, and supporting security risk assessments. The specialist will develop and maintain a security...
-
Council of the City of Sydney, Australia Ampol Limited Full timeCompany: Ampol At Ampol, we believe in the Power of Us - the extraordinary power of people to connect, act, and make a difference. As a leading energy company operating across Australia, New Zealand, Singapore and from the United States, our work spans fuel supply, energy solutions, convenience retail, infrastructure, trading and shipping. Every role at...
-
Only 24h Left: Risk Advisor
3 weeks ago
Council of the City of Sydney, Australia Randstad Education Australia Full timeOverview Risk Insurance Advisor - National Accounting Wealth Business - Great Referral Network - CBD Location About the Role Are you a passionate Risk Advisor looking to make a genuine impact? This business is searching for a dedicated professional to join their Investment Services team in Melbourne. This is a fantastic, client-facing opportunity where...
-
Only 24h Left! IT Senior Network Engineer
4 weeks ago
City of Melbourne, Australia Service Stream Full timeIT Senior Network Engineer page is loaded## IT Senior Network Engineerlocations: VIC - Melbourne - 655 Collins Sttime type: Full timeposted on: Posted Todaytime left to apply: End Date: November 16, 2025 (30 days left to apply)job requisition id: JR-116420# **Primary Location**VIC - Melbourne - 655 Collins St# **Job Description Summary**As an IT...