Cyber Security Governance, Risk

5 days ago


Council of the City of Sydney, Australia GWA Group Full time

Your new role

We take cyber security seriously at GWA and it is pivotal to supporting our digital transformation and managing the direction of the infrastructure underpinning our digital growth. To bring all of this to life, we are looking for a Cyber Security Governance, Risk & Compliance Engineer in all facets of modern enterprise technologies to help us bring this transformation to life. Internally this role will be known as a Cyber Security Engineer.

This role is permanent, full-time and is based in our Prestons office.

You will proactively partner with your stakeholders and the Technology team to drive best practice cyber security leadership across our transformation projects, all whilst supporting ongoing operational security activities.

As our new Cyber Security Engineer, your key responsibilities will include but will not be limited to:

- Providing hands on engineering capability for securing cloud services
- Providing system support and supporting the team for any high priority issues.
- Providing technical security leadership to ensure a “secure -by-design” approach
- Service Design & Architecture – be accountable for designing & developing resilient & secure patterns for cloud services

About you

Along with your previous experience (3+ years) in security engineering and operations, you’ll have knowledge and experience in:

- Implement ISO27001 – Information Security Management System in an IoT environment.
- AI Governance and Security Operations
- Management of Microsoft Purview for Data Loss Prevention (DLP), Insider Risk Management, and Information Protection
- Public Cloud Infrastructure, Azure Cloud platforms and supporting Microsoft Technologies
- Identifying and responding to cyber security incidents
- MS Azure Security services such as PIM, Azure AD, Sentinel, Defender, Cloud App Security, VWAN
- Vulnerability and patch management tools (e.g. Rapid7)
- Secure code practices and secure code automation pipelines
- Logging and monitoring using cloud native SIEM architecture, development, and analysis (e.g., Rapid7)
- Identity and access management including Azure AD, Conditional Access, Privileged Identity Management (PIM), Segregation of Duties and Zero Trust principles.
- Cloud / or Microsoft Certifications (including AZ-500)
- Cybersecurity industry certifications such as CISSP, OSCP, GIAC Incident Handler are highly desirable but not essential

About us

At GWA, we're not just a company—we're a supportive community committed to making everyday water experiences extraordinary. Our dedication to water sustainability, customer-first values, and community engagement creates a ripple effect of positive impact, ensuring that our consumers not only enjoy our products, but also contribute to saving millions of litres of water each year.

When you join us, you'll discover a welcoming workplace where safety, collaboration, and inclusivity are the cornerstones of our culture. Every contribution matters, and we provide a supportive environment where you can thrive, learn, and grow, recognising and celebrating performance in diverse and meaningful ways.

We celebrate the unique perspectives and talents that everyone brings with them and foster a culture of care where you feel valued and empowered to succeed. Our cultural pillars—We are One Team, We are Customer Focused, and We Care for Each Other—are more than just words; they're our way of life.

What can you expect from us?

Join us on our journey from Good to Great, where you'll collaborate with inspiring colleagues, engage with iconic brands, and contribute to a business with a legacy of strong growth. Take the first step towards an exciting career and become part of a team that's dedicated to delivering exceptional customer experiences and making a real difference in the world. We value passion, potential, and a willingness to learn.

Aside from a supportive and collaborative culture where you’ll be set up for success and know that you’re making a real difference from day one, we’ll offer you:

- Hybrid working options
- Free onsite parking
- Competitive remuneration and bonus structures
- An immersive onboarding program to set you up for success
- Opportunities to learn and grow through our Learning & Development programs
- ‘Great Rewards’ program - exclusive access todiscounts and cashbackrewards at your favourite stores
- ‘Bathrooms & More’ program - great discounts on a wide range of our products
- Volunteer and Community Service Leave
- Option to purchase additional annual leave
- Opportunity to take advantage of novated leasing options
- Health & Wellbeing Services with 24/7 in app access to medical advice, safety support and mental healthcare for you and your immediate family members.
- Annual flu vaccinations
- Medibank Health Insurance - discounts on corporate cover

Ready to apply?

Great Just click the apply button to build your career with us

Please note: You must be a citizen, permanent resident or hold all the relevant employment visas and other approvals for the location and duration of this position to apply for this role.

Please note that we are not accepting applications from agencies at this time.

#J-18808-Ljbffr



  • Sydney, New South Wales, Australia Skylight Cyber Security Full time

    About Skylight CyberAt Skylight Cyber, we're young, transparent, and culture-focused boutique cyber security firm specialising in providing high-end services to enterprises globally. We provide our customers with world class expertise to build and continuously evolve an effective security stack across people, process, and technology.We thrive and are...


  • Council of the City of Sydney, Australia Qantas Airways Full time

    - Fantastic opportunity to join our Airline IT business and to join our Group Cyber Assurance Risk & Compliance - Be part of super-collaborative, passionate team that values cyber safe practice - Permanent opportunity based at our Head Office in Mascot The Manager, Group Cyber Risk & Assurance will be responsible for managing and delivering strategic risk...


  • Council of the City of Sydney, Australia Experis ManpowerGroup Sp. z o.o. Full time

    A great opportunity for a Principal Cyber Security Specialist. Location: ACT, QLD and NSW Job type: Contract Organisation: Federal Government Duties and Responsibilities - Leading and conducting risk assessments of agency's internal systems and assessing risk from external connections. - Undertaking compliance activities in relation to cyber security...


  • Council of the City of Sydney, Australia NSW Government Full time

    Job Description - Cyber Security Analyst (0000B23Y) Cyber Security Analyst - 0000B23Y - Ongoing Full Time Opportunity - Work with leading cyber security tools, including IAM, PAM, and SIEM platforms - Work with a passionate, innovative team to protect critical systems from evolving cyber threats About the Role The Cyber Security Analyst is responsible...


  • Council of the City of Sydney, Australia Telstra Corporation Full time

    ## Employment TypePermanent## Closing Date29 Oct 2025 11:59pm## Job TitleSenior Security Architect – Cyber Security**Job Summary**## Job Description**Shape the future of secure tech with us!**At Telstra, we’re more than Australia’s leading telecommunications company — we’re a tech powerhouse with a global presence in over 22 countries. We're on a...


  • Council of the City of Sydney, Australia Australian Prudential Regulation Authority Full time

    Senior Security Risk Reporting Specialist The Senior Security Risk & Reporting Specialist is a pivotal role responsible for developing, managing, and maintaining the end-to-end security risk management processes. This includes policy exceptions and exemptions, maintaining the security risk register, and supporting security risk assessments. The specialist...


  • Sydney, Australia University of New South Wales Full time

    **Job no**: 525136 **Work type**: full time **Location**: Sydney, NSW **Categories**: Information Technology, Cyber - Employment: Full time (35 hours per week) - Continuing role as a Cyber Security Risk Advisor - Remuneration: Excellent salary package including leave loading and generous superannuation - Location: Based in Kensington, Sydney (hybrid...


  • Sydney, Australia University of New South Wales Full time

    **Job no**: 529814 **Work type**: Full Time **Location**: Sydney, NSW **Categories**: Information Technology, Cyber - Employment Type: full time continuing role as Head of Cyber Security and Governance - Excellent salary package including superannuation - Based Kensington, Sydney. Hybrid options available **Join Our High-Performing Cyber Security Team at...


  • Council of the City of Sydney, Australia Australian Reinsurance Pool Corporation Full time

    Reporting to the Chief Operating Officer (COO), the Head of Information Security leads ARPC’s enterprise approach to cyber security covering strategy, implementation, compliance, and incident response. A core accountability of the role is to advise, write for, and present to the ARPC Board and its Committees supporting the COO, ensuring the Board has...

  • Incident Responder

    2 weeks ago


    Sydney, Australia Quigly Cyber Full time

    Diverse, inclusive and supportive team - Proudly making a difference with the transition to renewable energy - You love Cyber Security Quigly are a boutique consultancy with a great network of clients across many industries. **Company Overview** Join one of Australia's top organizations. Our client improves the lives of millions - from lighting up sports...