Cyber Security Risk Management Specialist

1 month ago


Sydney, New South Wales, Australia TAL Full time

At TAL, we are seeking a highly skilled Cyber Security Risk Management Specialist to join our team in Third-Party Tech & Cyber Risk. This role plays a critical part in aligning with our strategy and executing third-party technology risk management, cyber security management, and relevant technology and cyber clauses within the contractual management process.

About the Role
  • The successful candidate will support the manager in adhering to and identifying improvements to relevant frameworks, policies, practices, and controls to maintain the risk posture within our appetite.
  • This includes conducting in-depth risk assessments and due diligence on potential and existing third-parties to identify risks and compliance gaps.

The ideal candidate will have a strong understanding of regulatory compliance standards relevant to third-party risk and security, including APRA CPS234 / CPS230, SOX, ISO 27001, NIST CSF, Privacy Act, SOCI, etc.

Key Responsibilities
  1. Adhere to the Third-Party Technology & Cyber Risk Management Framework and support the delivery of associated strategy, target state roadmap, and supporting processes and procedures.
  2. Conduct risk assessments and develop plans to remediate non-compliance and/or potential security issues identified via continuous passive security posture management technologies.
  3. Establish and maintain governance structures for ongoing third-party relationship management, including regular performance and compliance reviews.
  4. Collaborate with all technology teams to embed effective vendor management practices aligned to the TAL Procurement Procedure and Vendor Management Model.
  5. Identify areas for improvement in vendor governance, enhancement, and upgrade by maintaining a good working knowledge of services provided to TAL business units.
Requirements
  • Bachelor's degree in Business, Finance, Information Technology, or a related field.
  • Minimum of 2 years of experience in Third-Party Risk Management, Technology Risk, Cyber Security, or a related field with proven experience supporting, implementing, and managing third-party risk management programs.
  • Strong communication skills with the ability to translate risk into business impact.
  • Self-starter with strong organisational skills in a highly-adaptive and fast-paced environment.

We offer a competitive salary of $120,000 - $150,000 per annum, depending on experience, as well as a range of benefits, including professional development opportunities and a supportive work environment.

TAL is committed to fostering an inclusive and equitable culture for all our people. We encourage applications from diverse backgrounds, including Aboriginal and Torres Strait Islander peoples, individuals with disabilities, and those from culturally and linguistically diverse communities.



  • Sydney, New South Wales, Australia RSM Full time

    About the RoleRSM is seeking a skilled Cyber Security Specialist to join our team, responsible for providing expert advice on IT risk management and security strategies. As a key member of our team, you will work closely with clients to identify and mitigate potential risks, ensuring their business operations are secure and compliant.Key...


  • Sydney, New South Wales, Australia Stockland Full time

    Stockland Overview">We are a leading retail property group in Australia, with a long history of innovation and commitment to customer satisfaction. Our technology team is at the forefront of driving digital transformation across the organization, and we are now seeking a highly skilled Cyber Security Risk Manager to join our team.">Job Description">In this...


  • Sydney, New South Wales, Australia Tal Services Limited Full time

    Established in Australia, TAL Services Limited is a leader in the financial services industry. Our company description reveals our commitment to developing leadership, promoting diversity, and retaining great talent.Welcome to TAL. We want to grow with you. Achieve with you. And support you to do your best work. That's why we're focused on developing...


  • Sydney, New South Wales, Australia HiTech Group Full time

    Job Summary:Cyber Security Risk Analyst required to join a multidisciplinary team in a leading Federal Government department. The successful candidate will be responsible for identifying key security risks in the ICT environment and ensuring the department is able to mitigate and be resilient to cyber threat activity.Key Responsibilities:Conducting security...


  • Sydney, New South Wales, Australia Pyramid Global Technologies Full time

    About the RolePyramid Global Technologies seeks a highly skilled Cyber Security Risk Management Lead to support the delivery and continuous improvement of its Information Security Management System (ISMS). The successful candidate will have a minimum of 10 years of experience in cyber security roles within major organisations, focusing on management of...


  • Sydney, New South Wales, Australia Commonwealth Bank of Australia Full time

    We're looking for a highly skilled Cyber Defence Risk Management Specialist to join our team at the Commonwealth Bank of Australia.About the role:This is an exciting opportunity to work with our Technology and Operations (Tech & Ops) Risk team, providing specialist Operational Risk and Compliance (OR&C) advice and assurance of decisions made across the...


  • Sydney, New South Wales, Australia Ignite Recruitment Full time

    About the OpportunityWe are seeking a highly skilled Cyber Security Specialist to join our team. As an APSP6 Cyber Security Specialist, you will play a critical role in strategic planning and policy development, ensuring that our cybersecurity posture is resilient and adaptive to emerging threats.Key responsibilities include:Managing and updating the Cyber...


  • Sydney, New South Wales, Australia Local Peoples Full time

    We are seeking an experienced Cyber Security Risk Specialist to join our team in the Australian Capital Territory (ACT), Queensland (QLD), South Australia (SA), or Victoria (VIC). This role will involve working with government agencies to assess and mitigate cyber security risks.The ideal candidate will have extensive experience with risk and information...

  • Cyber Security Leader

    1 month ago


    Sydney, New South Wales, Australia Qantas Full time

    Job OverviewWe are seeking an experienced Cyber Security Leader to join our team at Qantas, responsible for leading cultural change across the Group to manage cyber as a business and technology risk.About the RoleThe Senior Business Information Security Officer (SBISO) will serve as a trusted advisor and partner to the business and Technology domains. This...


  • Sydney, New South Wales, Australia BDO Full time

    We are seeking a highly experienced Cyber Security Specialist to join our team in Sydney. The successful candidate will have a strong background in cybersecurity, with experience in governance, risk and compliance, as well as business continuity planning, policy and procedure uplifts, incident response planning and testing, and technology risk review.Job...


  • Sydney, New South Wales, Australia Commonwealth Bank of Australia Full time

    About This RoleWe are seeking an experienced Cyber Defence Risk Manager to join our team in providing specialist Operational Risk and Compliance advice and assurance across the Technology, Chief Operating Office, and Business Unit divisions.Key ResponsibilitiesProvide SME risk management advice to cybersecurity teams aligned to cyber risk management domains,...


  • Sydney, New South Wales, Australia Charterhouse Full time

    Cyber Security RoleWe are seeking a highly skilled Cyber Security Specialist to join our team at Charterhouse.Estimated Salary: Up to $900 per day, inclusive of superannuation.This contract position is based in Sydney and will run until June 2025, with the potential for extension. We are looking for someone to start in January 2025, so prompt applications...


  • Sydney, New South Wales, Australia Charterhouse Full time

    Cyber Security Risk ConsultantWe are seeking a highly skilled Cyber Security Risk Consultant to join our team at Charterhouse.Salary: Up to $900 per day (inclusive of superannuation).About the RoleThis contract role is available immediately and will continue until June 2025, with potential for extension. You will be working with a NSW Government client,...


  • Sydney, New South Wales, Australia Fujitsu Full time

    Fujitsu is a global leader in technology and business solutions that transform organisations and the world around us.We are seeking an experienced Cyber Security Specialist to join our Security Operations Team based in the Fujitsu Cyber Resilience Centre (CRC). As part of your role, you will ensure that cyber security incidents, as well as any exposures and...


  • Sydney, New South Wales, Australia Infosys Singapore & Australia Full time

    We are seeking a highly skilled Cyber Security Risk Management Specialist to join our team in Sydney or Melbourne. This is a unique opportunity to leverage your expertise in identifying and mitigating security risks within an organisation.Job Summary:The primary responsibility of this role will be to map out business information systems to assets, supporting...


  • Sydney, New South Wales, Australia The Decipher Bureau Full time

    Seeking an experienced Enterprise Cyber Security Specialist to join our team in Sydney.About The Decipher BureauThe Decipher Bureau is a leading provider of cybersecurity services, dedicated to helping businesses protect themselves against cyber threats. As an Enterprise Cyber Security Specialist, you will play a key role in supporting the development and...


  • Sydney, New South Wales, Australia EFinancialCareers Ltd. Full time

    About the RoleCyber security is a critical component of our organization, and we're seeking an experienced Strategic Risk Leader to join our team. As a key member of our Cyber Security function, you will be responsible for providing strategic advice on operational and compliance risk management. Your expertise will help us design and implement effective...


  • Sydney, New South Wales, Australia Bluefin Resources Full time

    Bluefin Resources is seeking an experienced Cyber Security Architect to join their team in Sydney. This 2-year fixed term contract offers a competitive salary of up to $188k including superannuation.Job DescriptionThe purpose of this role is to contribute to the overall technical direction of the security capability, working closely with the client...


  • Sydney, New South Wales, Australia Employers Mutual Management Pty Ltd Full time

    Employers Mutual Management Pty Ltd is a leading provider of Workers Compensation and Personal Injury Claims Management services.We are committed to helping people return to work through ongoing support and have over 4,000 dedicated employees. Our company culture fosters a learning environment that allows us to continually invest in our employees for...


  • Sydney, New South Wales, Australia TAL Full time

    Senior Cyber Risk Manager Job DescriptionThe Senior Cyber Risk Manager will be responsible for managing and mitigating cyber risks associated with third-party technology vendors. This role will work closely with the Technology and Cyber Risk function to ensure that all third-party vendors meet the required security and risk management standards.Key...