Cyber Security and Risk Management Lead

5 days ago


Sydney, New South Wales, Australia MARS Recruitment Full time
Job Title: Cyber & Information Security Lead

Estimated Salary: $120,000 - $180,000 per year

About the Role

We are seeking a highly skilled and experienced Cyber and Information Security Lead to join our fast-growing organisation. As a key member of our security team, you will be responsible for managing and improving our information security practices, ensuring compliance with standards, mitigating risks, and responding to external due diligence requests.

This role offers the opportunity to work closely with senior stakeholders and make a tangible impact within a dynamic, technology-driven environment. You will have the chance to shape and implement security practices in a growing and innovative organisation.

Key Responsibilities:
  • Security Operations:
    • Manage security events and alerts via Microsoft Sentinel/Defender.
    • Update Sentinel rules and adapt playbooks and automations.
  • Compliance & Certification:
    • Maintain and enforce IT security policies (ISO27001-based) and lead efforts to achieve ISO27001 certification.
    • Ensure compliance with Azure security policies and identify vulnerabilities.
  • Threat and Vulnerability Management:
    • Prioritise and remediate vulnerabilities across applications, servers, devices, and databases.
  • IT Change and Risk Management:
    • Review IT change management processes, assess solution design risks, and oversee governance.
  • Information Protection & Access Control:
    • Classify and protect sensitive data to mitigate risk.
    • Review and optimize logical and physical access controls.
  • Third-Party and Asset Management:
    • Assess IT supplier contracts and manage third-party risks.
    • Ensure lifecycle management and inventory compliance for IT assets.
  • Stakeholder Collaboration:
    • Collaborate with engineering, IT, and business teams to support secure system development.
    • Respond to client and partner due diligence requests regarding security readiness.
Requirements:
  • Proven experience in cyber and information security risk management, including threat detection, vulnerability assessment, and mitigation strategies.
  • Expertise with Microsoft Azure security tools (Defender, Sentinel) and hands-on technical knowledge.
  • Strong background in security architecture and operational tasks, including SOC operations.
  • Ability to navigate both strategic and operational responsibilities in a fast-paced environment.
Benefits:
  • Dynamic Work Environment: Collaborate with a talented team in a hybrid work setup.
  • Impactful Role: Shape and implement security practices in a growing and innovative organisation.
  • Growth Opportunities: Be part of an evolving business with opportunities for personal and professional development.


  • Sydney, New South Wales, Australia XM Cyber Full time

    About XM CyberXM Cyber is a cutting-edge threat and exposure management solution that empowers organizations to efficiently remediate security risks. Our innovative technology bridges the gap between security and IT teams, providing a unified approach to threat management.We are a SAAS-based cyber security vendor with a long-term vision for the industry,...


  • Sydney, New South Wales, Australia XM Cyber Full time

    About the RoleXM Cyber is a leading provider of continuous threat and exposure management solutions. We are seeking an experienced Channel Manager to join our team in ANZ.The successful candidate will be responsible for building and managing a channel of enterprise cyber security solutions. This will involve working closely with our sales teams and channel...


  • Sydney, New South Wales, Australia Pyramid Global Technologies Full time

    About the RoleWe are seeking a seasoned Cyber Security Risk Management Lead to join our team at Pyramid Global Technologies.This is a challenging and rewarding role that will play a key part in shaping our Information Security Management System (ISMS). As Cyber Security Risk Management Lead, you will be responsible for delivering and continuously improving...


  • Sydney, New South Wales, Australia XM Cyber Full time

    About the RoleXM Cyber is a pioneering threat and exposure management solution that empowers organizations to efficiently remediate vulnerabilities. Our innovative approach transforms the traditional cybersecurity model by fostering collaboration between security and IT teams. We are a SAAS-based cybersecurity vendor backed by a leading European retailer,...


  • Sydney, New South Wales, Australia CYOS Solutions Full time

    Cyber Security Risk SpecialistThe Cyber Security Risk Specialist will play a critical role in identifying and assessing potential security risks to the NDIA's ICT systems. This includes leading security risk analysis, implementing better-practice methodologies, and developing targeted security risk advice to prevent, detect, and respond to cyber threat...


  • Sydney, New South Wales, Australia Commonwealth Bank of Australia Full time

    About the Role:The Commonwealth Bank of Australia is seeking a highly skilled Cyber Defence Risk Lead to join our Technology and Operations (Tech & Ops) Risk team. As a key member of this team, you will be responsible for providing specialist Operational Risk and Compliance (OR&C) advice and assurance of decisions made across the Technology, Chief Operating...


  • Sydney, New South Wales, Australia HiTech Group Full time

    Job Summary:Cyber Security Risk Analyst required to join a multidisciplinary team in a leading Federal Government department. The successful candidate will be responsible for identifying key security risks in the ICT environment and ensuring the department is able to mitigate and be resilient to cyber threat activity.Key Responsibilities:Conducting security...


  • Sydney, New South Wales, Australia University of New South Wales Full time

    Job SummaryThe University of New South Wales is seeking a highly skilled Cyber Security Risk Manager to join our team. The successful candidate will be responsible for providing strategic leadership in developing and continuously improving the University's cyber security risk management practices.Key ResponsibilitiesDevelop and Implement Risk Management...


  • Sydney, New South Wales, Australia Commonwealth Bank of Australia Full time

    Role SummaryWe are seeking a highly skilled Cyber Security Risk Management Leader to join our team. As a key member of our Operational Risk and Compliance team, you will be responsible for providing expert advice and guidance on cyber security risk management across the organisation.Key Responsibilities:Provide SME risk management advice to crews aligned to...


  • Sydney, New South Wales, Australia CYOS Solutions Full time

    Cyber Security Role OverviewCyOS Solutions is seeking a highly skilled Cyber Security Risk Analyst to join their team. This role will involve conducting security risk analysis of internal systems, assessing cyber threats, and implementing better-practice methodologies and risk management practices.Key ResponsibilitiesConduct security risk analysis of NDIA...


  • Sydney, New South Wales, Australia University of New South Wales Full time

    About the RoleThe University of New South Wales is seeking a highly skilled Cyber Security Risk Advisor to join our team. As a key contributor to the operational delivery of a fit-for-purpose and adaptive Cyber Security Governance framework and Information Security Management System (ISMS), you will be responsible for the management and assessment of...


  • Sydney, New South Wales, Australia University of New South Wales Full time

    About the RoleWe are seeking an experienced Cyber Security Risk Manager to join our team at the University of New South Wales. In this critical role, you will provide strategic leadership in developing and continuously improving our cyber security risk management practices. Your expertise will ensure that risks are continually identified, assessed,...


  • Sydney, New South Wales, Australia Employers Mutual Management Pty Ltd Full time

    About the RoleEmployers Mutual Management Pty Ltd is a leading Workers Compensation and Personal Injury Claims Management business, dedicated to helping individuals recover through ongoing support during their return-to-work journey. As a Cyber & Information Security Manager, you will be part of a dynamic team based in Sydney, making a positive impact on...


  • Sydney, New South Wales, Australia Employers Mutual Management Pty Ltd Full time

    Employers Mutual Management Pty Ltd is a leading Workers Compensation and Personal Injury Claims Management business. Our goal is to help people get their lives back through ongoing support during their return-to-work journey. We continue to experience ongoing growth and now have over 4,000 dedicated employees. We foster a learning culture that allows for us...


  • Sydney, New South Wales, Australia Commonwealth Bank of Australia Full time

    About the RoleWe are seeking an experienced Cyber Defence Risk Manager to join our Technology and Operations (Tech & Ops) Risk team.Job DescriptionThis is a key role within the Cyber Defence Risk team, supporting Group Security. You will partner with the Executive Manager Cyber Risk to provide independent Line 2 advice and assurance, actively uplifting...


  • Sydney, New South Wales, Australia Qantas Full time

    Job OverviewWe are seeking an experienced Cyber Security Leader to join our team at Qantas, responsible for leading cultural change across the Group to manage cyber as a business and technology risk.About the RoleThe Senior Business Information Security Officer (SBISO) will serve as a trusted advisor and partner to the business and Technology domains. This...


  • Sydney, New South Wales, Australia University of New South Wales Full time

    About the RoleThe University of New South Wales is seeking a highly skilled Cyber Security Risk Advisor to join our team. As a key contributor to the operational delivery of a fit-for-purpose and adaptive Cyber Security Governance framework and Information Security Management System (ISMS), you will be responsible for the management and assessment of...


  • Sydney, New South Wales, Australia Pyramid Global Technologies Full time

    About the rolePyramid Global Technologies is seeking a Cyber Security Specialist - Enterprise Risk Management to join our team in Melbourne/Sydney. The ideal candidate will have a minimum of 10 years of experience in cyber security roles within major organizations, focusing on management of governance, risk, and compliance.Key responsibilities...


  • Sydney, New South Wales, Australia University of New South Wales Full time

    About the RoleWe are seeking a Chief Cyber Security Risk Management Strategist to provide strategic leadership in developing and continuously improving our cyber security risk management practices. As a key member of our team, you will be responsible for ensuring that risks are continually identified, assessed, prioritised, monitored, and mitigated in line...


  • Sydney, New South Wales, Australia Commonwealth Bank of Australia Full time

    About the Role:As a Cyber Defence Risk Lead with the Commonwealth Bank of Australia, you will be responsible for providing specialist Operational Risk and Compliance (OR&C) advice and assurance of decisions made across the Technology, Chief Operating Office, and Business Unit divisions. You will work closely with the Executive Manager Cyber Risk to provide...