[Only 24h Left] Senior Security Risk Reporting Specialist

6 days ago


Council of the City of Sydney, Australia Australian Prudential Regulation Authority Full time

Senior Security Risk Reporting Specialist

The Senior Security Risk & Reporting Specialist is a pivotal role responsible for developing, managing, and maintaining the end-to-end security risk management processes. This includes policy exceptions and exemptions, maintaining the security risk register, and supporting security risk assessments. The specialist will develop and maintain a security risk reporting framework, implement a cyber risk quantification capability, and provide regular executive-level reporting on security outcomes. This role requires cross-collaboration with personnel, physical, and cyber/information security topic areas to ensure a cohesive end-to-end analysis, identification, management, and reporting of security risks and issues.

The team

APRA is embarking on an ambitious program of change incorporating cloud, data, digital and security initiatives. This has created the opportunity to join a small but growing Security team within the Technology, Data and Security division. The Security team manages cyber, information and personnel security aligning with the Protective Security Policy Framework (PSPF). The team works in a highly collaborative manner with a wide range of stakeholders at all levels of the organisation to develop, communicate and implement the security strategy. Key stakeholders include the CIO, CDO, CRO, Enterprise Architecture and IT Governance, as well as the Business Divisions, People and Culture, Procurement and Project Management Office.

Key responsibilities

- Lead the development, management and maintenance of security risk management and reporting processes, including policy exceptions and exemptions.

- Proactively maintain and manage the security risk register and support security risk assessments.

- Ensure cohesive end-to-end analysis, identification, management, and reporting of security risks and issues through cross-collaboration with personnel, physical, and cyber/information security teams; as well as broader teams in Technology and Data, Project Management Office, People and Culture and Procurement.

- Lead the coordination and management of government reporting (e.g., PSPF, E8, response to government directives).

- Develop and maintain the security risk reporting framework, including the implementation and ongoing management of a cyber risk quantification capability.

- Support the CISO by providing regular executive-level reporting on security outcomes, including development of executive papers and data-driven metrics.

- Contribute to strategic security analysis and planning to enhance the overall security framework, execution of security objectives and resolution of gaps.

- Proactively contribute to and support broader direct team outcomes.

To work with us

To work with us you must be an Australian citizen with eligibility to gain a NV1 clearance through the Australian Government Security Vetting Agency.

About you

- Proven track record in security risk management and reporting.

- Proven track record in maintaining security risk registers and supporting security risk assessments.

- Experience in developing and maintaining security risk reporting frameworks and implementing cyber risk quantification capabilities.

- Experience in providing executive-level reporting, including executive papers and data-driven metrics.

- Experience in coordinating and managing government reporting, such as PSPF and E8.

- Strong knowledge of security risk management principles and practices.

- Strong understanding of security controls and compensating controls.

- Proficiency in risk assessment methodologies and tools.

- Ability to develop and maintain comprehensive security risk reporting frameworks.

Familiarity with cyber risk quantification techniques e.g. FAIR.

About APRA

Australian Prudential Regulation Authority (APRA) is an independent statutory authority supervising almost 1,200 financial institutions and overseeing $8.6 trillion in assets for Australians. APRA seeks to recruit, develop and retain highly skilled professionals to shape financial services and protect the financial wellbeing of the community.

Why Work for APRA

APRA rewards skilled professionals, supports wellbeing, and cultivates an inclusive workplace where everyone belongs, feels valued and respected. The commitment to wellbeing is reflected in engaged people supported by resilient leaders and a values‑aligned culture. APRA fosters diversity of background, thought, and experience, recognising that a broad range of perspectives enables us to better protect the financial wellbeing of the Australian community.

To apply

To apply, please visit our Careers Page at www.apra.gov.au. For further information or assistance, please email talent@apra.gov.au.

#J-18808-Ljbffr



  • Council of the City of Sydney, Australia International Netherlands Group Full time

    Group Treasury Controls Specialist page is loaded## Group Treasury Controls Specialistlocations: Sydneytime type: Full timeposted on: Posted 3 Days Agotime left to apply: End Date: October 25, 2025 (11 days left to apply)job requisition id: REQ-10103081At ING Australia, you will have the chance to build a career as unique as you are, with the...


  • City of Brisbane, Australia CAE Inc Full time

    Cyber Security Specialist page is loaded Cyber Security Specialist Apply locations Homebush Brisbane time type Full time posted on Posted Yesterday job requisition id 116869 About This Role Job Title: Cyber Security Specialist Job Location: Homebush, NSW CAE Overview At CAE, we equip people in critical roles with the expertise and solutions to create a safer...


  • Council of the City of Sydney, Australia Dexus Units FP Stapled Full time

    Senior Manager, Transactions - Retail page is loaded## Senior Manager, Transactions - Retaillocations: Sydney, QQTtime type: Full timeposted on: Posted 5 Days Agotime left to apply: End Date: November 14, 2025 (14 days left to apply)job requisition id: R0005436**Dexus (ASX: DXS)** is a leading Australasian fully integrated real asset group,...


  • Council of the City of Sydney, Australia ING Group Full time

    Role Overview ING Australia is hiring for multiple senior roles in Technology Risk within our Line 1 Technology Risk & Controls function. If driving risk excellence is your passion, we want to hear from you! As a leading digital bank, Technology Risk at ING Australia is about enabling informed decisions so we can deliver secure, reliable products and...


  • Council of the City of Sydney, Australia Standards Australia Full time

    Provide strategic leadership and drive operational execution of Standards Australia's enterprise risk function. 23rd October, 2025 Who are we? Standards Australia (SA) is the peak standards development organisation in Australia, with a rich history that dates back to 1922. We proudly employ over 200 professionals dedicated to helping shape Australia’s...


  • Sydney, New South Wales, Australia Australian Prudential Regulation Authority Full time $120,000 - $180,000 per year

    The role The Senior Security Risk & Reporting Specialist is a pivotal role responsible for developing, managing, and maintaining the end-to-end security risk management processes. This includes policy exceptions and exemptions, maintaining the security risk register, and supporting security risk assessments. The specialist will develop and maintain a...


  • Sydney, New South Wales, Australia Australian Prudential Regulation Authority (APRA) Full time $120,000 - $180,000 per year

    The roleThe Senior Security Risk & Reporting Specialist is a pivotal role responsible for developing, managing, and maintaining the end-to-end security risk management processes. This includes policy exceptions and exemptions, maintaining the security risk register, and supporting security risk assessments. The specialist will develop and maintain a security...


  • Council of the City of Sydney, Australia Ampol Limited Full time

    Company: Ampol At Ampol, we believe in the Power of Us - the extraordinary power of people to connect, act, and make a difference. As a leading energy company operating across Australia, New Zealand, Singapore and from the United States, our work spans fuel supply, energy solutions, convenience retail, infrastructure, trading and shipping. Every role at...


  • Council of the City of Sydney, Australia Randstad Education Australia Full time

    Overview Risk Insurance Advisor - National Accounting Wealth Business - Great Referral Network - CBD Location About the Role Are you a passionate Risk Advisor looking to make a genuine impact? This business is searching for a dedicated professional to join their Investment Services team in Melbourne. This is a fantastic, client-facing opportunity where...


  • City of Melbourne, Australia Service Stream Full time

    IT Senior Network Engineer page is loaded## IT Senior Network Engineerlocations: VIC - Melbourne - 655 Collins Sttime type: Full timeposted on: Posted Todaytime left to apply: End Date: November 16, 2025 (30 days left to apply)job requisition id: JR-116420# **Primary Location**VIC - Melbourne - 655 Collins St# **Job Description Summary**As an IT...