Cyber Security Risk Manager
1 month ago
Established in Australia, TAL Services Limited is a leader in the financial services industry. Our company description reveals our commitment to developing leadership, promoting diversity, and retaining great talent.
Welcome to TAL. We want to grow with you. Achieve with you. And support you to do your best work. That's why we're focused on developing leadership, promoting diversity, rewarding excellence, and retaining great talent.
We're always looking for people who want to go further with us. People who do what's right, aim high, and work smart. Why not see where we can go?
**Job Summary**
The Cyber Security Risk Manager will be part of Third-Party Tech & Cyber Risk, which is part of the Technology & Cyber Risk function within the Technology Business Unit. This role will support the manager in aligning to the strategy and execution of our third-party technology risk management, third party cyber security management, relevant technology and cyber clauses within the contractual management process and overall governance of technology third parties. This role is responsible for adhering to and identifying improvements to relevant frameworks, policies, practices and controls to maintain the risk posture within the appetite.
- Adhere to the Third-Party Technology & Cyber Risk Management Framework and support the delivery of associated strategy, target state roadmap, and supporting processes and procedures.
- Conduct in-depth risk assessments and due diligence on potential and existing third-parties to identify risks and compliance gaps.
- Engage third-parties based on the non-compliance and potential cyber security issues identified via continuous passive security posture management technologies. Conduct risk assessments and develop a plan with the third-parties to remediate non-compliance and/or potential security issues.
- Establish and maintain the governance structure for ongoing management of third-party relationships, including regular performance and compliance reviews.
- Collaborate with all technology teams to embed effective vendor management practices aligned to the TAL Procurement Procedure and Vendor Management Model.
- Identifying potential areas for improvement for vendor governance, enhancement and upgrade by maintaining a good working knowledge of all services provided to TAL business units.
- Assist with the assurance and compliance activities to demonstrate the effectiveness of Third-Party Technology & Cyber Risk Management function. Address the corrective actions and resolve gaps identified during the assurance and compliance activities.
- Support and assist with the negotiation, implementation, and management of technology and cyber clauses in the third-party contracts with the Legal. Uplift those technology and cyber clauses in the contractual terms in line with regulatory and threat environment changes, as needed.
- Monitor and report on third-party compliance with technology and security requirements as well as their performance against contracts, and coordinate the corrective action, as needed
- Develop and deliver training to internal stakeholders on Third-Party Technology & Cyber Risk Management practices
**Requirements**
- Bachelor's degree in business, Finance, Information Technology, or a related field. Relevant professional certifications (e.g., CISM, CRISC, CISSP) is a plus.
- Minimum of 2 years of experience in Third-Party Risk Management, Technology Risk, Cyber Security, or a related field with proven experience of supporting, implementing and managing third party risk management programs.
- Strong understanding of regulatory compliance standards relevant to third-party risk and security (e.g., APRA CPS234 / CPS230, SOX, ISO 27001, NIST CSF, Privacy Act, SOCI, etc.).
- Strong communication skills with the ability to translate risk into business impact.
- Self-starter with strong organisational skills in a highly-adaptive and a fast-paced environment.
- Customer-oriented mindset and ability to apply collaborative approach to achieving business outcomes.
- Thinker and doer with a pragmatic approach to make decisions and at the same time focused on outcomes.
Our employees are accountable for their actions, strive to find the best outcomes for customers and partners, and value working together to find the best solutions for problems. As part of the recruitment process, there are a number of checks which may be conducted to demonstrate your eligibility for a role at TAL including Criminal History, Bankruptcy, Entitlement to Work, Regulatory and Reference Checks.
TAL values diversity in all its forms and is committed to fostering an inclusive and equitable culture for all our people. We encourage Aboriginal and Torres Strait Islander people, individuals from all backgrounds, including those with caring responsibilities, people living with disability, and individuals from the CALD and LGBTQI+ communities to apply. Even if you don't check every box in the criteria above, we encourage you to apply today or get in touch with us here. To provide you with the best experience, we can accommodate you at any stage of the recruitment process. Simply inform our Recruitment team at any time.
TAL is recognised by the Workplace Gender Equality Agency as an Employer of Choice. We are proud to be a member of Diversity Council Australia and the Australian Network on Disability. For information on our reconciliation journey, take a look at our Innovate Reconciliation Action Plan. We acknowledge the Traditional Custodians of the Land in which our Head Office is based, the land of the Gadigal people of the Eora Nation, and recognise their deep connections to the land, sea, and culture. We extend this acknowledgment to the many Traditional Lands that we operate across and pay our respects to Elders past, present, and emerging.
**Estimate Salary:** $100,000 - $130,000 per annum
-
Cyber Security Risk Consultant
1 month ago
Sydney, New South Wales, Australia HiTech Group Full timeJob Summary:Cyber Security Risk Analyst required to join a multidisciplinary team in a leading Federal Government department. The successful candidate will be responsible for identifying key security risks in the ICT environment and ensuring the department is able to mitigate and be resilient to cyber threat activity.Key Responsibilities:Conducting security...
-
Cyber Security Risk Management Specialist
1 month ago
Sydney, New South Wales, Australia TAL Full timeAt TAL, we are seeking a highly skilled Cyber Security Risk Management Specialist to join our team in Third-Party Tech & Cyber Risk. This role plays a critical part in aligning with our strategy and executing third-party technology risk management, cyber security management, and relevant technology and cyber clauses within the contractual management...
-
Senior Cyber Security Risk Manager
2 weeks ago
Sydney, New South Wales, Australia Stockland Full timeStockland Overview">We are a leading retail property group in Australia, with a long history of innovation and commitment to customer satisfaction. Our technology team is at the forefront of driving digital transformation across the organization, and we are now seeking a highly skilled Cyber Security Risk Manager to join our team.">Job Description">In this...
-
Strategic Risk Leader: Cyber Security Expert
2 weeks ago
Sydney, New South Wales, Australia EFinancialCareers Ltd. Full timeAbout the RoleCyber security is a critical component of our organization, and we're seeking an experienced Strategic Risk Leader to join our team. As a key member of our Cyber Security function, you will be responsible for providing strategic advice on operational and compliance risk management. Your expertise will help us design and implement effective...
-
Senior Cyber Risk Manager
2 months ago
Sydney, New South Wales, Australia TAL Full timeSenior Cyber Risk Manager Job DescriptionThe Senior Cyber Risk Manager will be responsible for managing and mitigating cyber risks associated with third-party technology vendors. This role will work closely with the Technology and Cyber Risk function to ensure that all third-party vendors meet the required security and risk management standards.Key...
-
Sydney, New South Wales, Australia HiTech Group Full timeCyber Security Risk Analyst Job DescriptionEstimated Salary: $120,000 - $150,000 per annum.About HiTech GroupA leading Federal Government department is seeking an experienced Cyber Security Risk Analyst to join a highly multidisciplinary team. The successful candidate will be responsible for identifying key security risks in the ICT environment and ensuring...
-
Sydney, New South Wales, Australia RSM Full timeAbout the RoleRSM is seeking a skilled Cyber Security Specialist to join our team, responsible for providing expert advice on IT risk management and security strategies. As a key member of our team, you will work closely with clients to identify and mitigate potential risks, ensuring their business operations are secure and compliant.Key...
-
Cyber Security Professional
1 month ago
Sydney, New South Wales, Australia Ignite Recruitment Full timeAbout the OpportunityWe are seeking a highly skilled Cyber Security Specialist to join our team. As an APSP6 Cyber Security Specialist, you will play a critical role in strategic planning and policy development, ensuring that our cybersecurity posture is resilient and adaptive to emerging threats.Key responsibilities include:Managing and updating the Cyber...
-
Technology Risk Management Leader
4 weeks ago
Sydney, New South Wales, Australia Group Risk Full timeCompany Overview">The Star Entertainment Group is a leading gaming and hospitality company in Australia, committed to creating fun at trusted destinations. With a strong focus on sustainability, we aim to deliver exceptional experiences for our guests, employees, and the communities we serve.">Salary">We offer an attractive salary of $150,000 - $180,000 per...
-
Cyber Defence Risk Management Specialist
4 weeks ago
Sydney, New South Wales, Australia Commonwealth Bank of Australia Full timeWe're looking for a highly skilled Cyber Defence Risk Management Specialist to join our team at the Commonwealth Bank of Australia.About the role:This is an exciting opportunity to work with our Technology and Operations (Tech & Ops) Risk team, providing specialist Operational Risk and Compliance (OR&C) advice and assurance of decisions made across the...
-
Cyber Security Professional
4 weeks ago
Sydney, New South Wales, Australia Ignite Recruitment Full timeEstimated Salary: $120,000 - $180,000 per annumAbout the OpportunityWe are seeking a skilled Cyber Security Engineer to join our team in a critical technical position. The successful candidate will be responsible for deploying, tuning, and maintaining the Cyber Security Controls Framework, guided by the Australian Cyber Security Centre (ACSC) Essential 8...
-
Cyber Governance Risk Management Lead
4 weeks ago
Sydney, New South Wales, Australia Cuscal Limited Full timeExciting Job Opportunity at Cuscal LimitedCuscal Limited, a leading provider of payment solutions, is seeking a highly skilled Cyber Governance Risk Management Lead to join their dynamic IT Security team.Job Description:About the RoleWe are looking for an experienced professional to lead the development and execution of our cyber governance, risk management,...
-
Cyber Security Governance Strategist
9 hours ago
Sydney, New South Wales, Australia This Is An IT Support Group Full timeJob DescriptionThis Is An IT Support Group is seeking a highly experienced Cyber Security Governance Strategist to join our team. As a key member of our Cyber Security team, you will play a crucial role in shaping the University's cyber security posture and ensuring compliance with internal standards, industry regulations, and legislative requirements.The...
-
Cyber Security Leader
4 weeks ago
Sydney, New South Wales, Australia DP WORLD AUSTRALIA LIMITED Full timeAbout the RoleWe are seeking an experienced Cyber Security Leader to join our team in Oceania. The successful candidate will lead and oversee all aspects of our cyber security program, ensuring the confidentiality, integrity, and availability of information assets.Key ResponsibilitiesDevelop and implement comprehensive cyber security strategies, policies,...
-
Cyber Security Manager Position in Sydney
4 weeks ago
Sydney, New South Wales, Australia Employers Mutual Management Pty Ltd Full timeEmployers Mutual Management Pty Ltd is a leading provider of Workers Compensation and Personal Injury Claims Management services.We are committed to helping people return to work through ongoing support and have over 4,000 dedicated employees. Our company culture fosters a learning environment that allows us to continually invest in our employees for...
-
Cyber Security Specialist
4 weeks ago
Sydney, New South Wales, Australia Infosys Singapore & Australia Full timeAbout Us:At Infosys Singapore & Australia, we combine innovation and excellence to deliver exceptional results for our clients.We are a leading management consulting firm that thrives on disruption and growth. With a strong entrepreneurial spirit, we partner with top brands across various sectors, leveraging the expertise of our parent organization Infosys,...
-
Cyber Security Expert, Strategic Advisor
4 weeks ago
Sydney, New South Wales, Australia Ampersand International Full timeAbout Ampersand InternationalAmpersand International is a leading organisation in the field of cyber security, seeking an experienced Senior Advisor, Cyber Security to join our team.Salary: Up to $120/hour inclusive of super, with a base rate of $90 - $107.75/hour + super.Job Description: As a Senior Advisor, Cyber Advisory, you will be responsible for...
-
Senior Cyber Security Lead
2 months ago
Sydney, New South Wales, Australia Talent Web Full timeJob Title: Senior Cyber Security LeadJob Type: PermanentLocation: SydneyIndustry: Banking and FinanceAbout the Role:The Cyber Threat Defence team within the Global Information Security (GIS) division is seeking a Senior Cyber Security Lead to join their Malware Defence team. As a key member of the team, you will be responsible for leading the Malware and...
-
Cyber Risk Analyst with PAM Expertise
4 weeks ago
Sydney, New South Wales, Australia Pyramid Global Technologies Full timeAbout the RoleAt Pyramid Global Technologies, we are seeking an experienced Cyber Risk Analyst to join our team in Sydney.We offer a competitive salary of AU$120,000 - AU$150,000 per annum, depending on experience.Job DescriptionCyber Risk Analysts play a vital role in protecting our clients' sensitive information and systems from cyber threats. As a key...
-
Cyber Security Project Manager
4 weeks ago
Sydney, New South Wales, Australia Hydrogen Group Full timeWe are seeking a seasoned Cyber Security Project Manager to lead our client's uplift program of work in Sydney.As a key member of the Hydrogen Group team, you will be responsible for managing projects from initiation through to closure, including the preparation of project cost estimates and monitoring benefits against what was predicted in the business...