Business Information Security Manager

1 week ago


Brisbane, Queensland, Australia Gallagher Full time
About the Role

The Business Information Security Officer (BISO) plays a critical role in leading the cyber and information security function for Gallagher divisions in Australia and New Zealand (ANZ). Reporting to the Global Chief Information Security Officer (CISO), this position is responsible for managing the APAC GCIS team in supporting enterprise-level and divisional information security strategies, objectives, and obligations.

Key Responsibilities
  • Manage information security risk within the region, including system security, data protection, compliance, training, audits, and mergers and acquisition risk.
  • Provide guidance to divisional CIOs and the Global CISO on existing divisional security gaps, associated risks, and prioritization of remediation activities.
  • Coordinate with the Global Cyber and Information Security team, divisional IT Compliance Leads, and other divisional BISOs to ensure a consistent approach to information security processes and procedures.
  • Raise awareness among technology and business application owners about relevant application security processes and provide oversight and assurance of the division's application inventory.
  • Work with the SOC & Incident Response Team to assist in coordinating the overall response and recovery activities for security incidents that impact the division.
  • Verify and distribute divisional cybersecurity metrics to the Global CISO, divisional CIOs, and executive teams around key divisional IT security and performance indicators.
  • Ensure alignment with and promote the Global IT & Security Policy Manual (GITSPM), and corporate and regional standards, liaising between the divisions, enterprise cyber security team, and technology leads.
  • Ensure all applicable regulatory, legal, compliance, and contractual obligations are properly interpreted and continuously met by the security program.
  • Stay abreast of external requirements, trends, and best practices.
  • Support the divisions and global CISO in seeking budget optimization by ensuring program costs and value are properly balanced.
  • Drive implementation of leading cyber security standards, practices, and controls (ISO27K, APRA, PCI-DSS, NZISM).
  • Drive divisional participation in global training and awareness campaigns for information security and data governance requirements.
  • Work with the core business platform teams to help develop secure business requirements and security architecture that will integrate into the enterprise-level and divisional information security strategies and objectives.
  • Provide divisional guidance through the identification, tracking, and remediation of divisional information security risks or other audit/regulatory findings.
  • Counsel divisional IT management on security requirements for acquisitions and mergers and the vetting and procurements of new applications and technology platforms.
  • Maintain an effective IT due diligence vendor risk management assessment program.
  • Guide divisional IT software development and application teams in the use of GCIS application security tools for tracking and correcting vulnerabilities and code weaknesses.
  • Acting as the CISO in region for satisfying Federal and State Government security requirements, ensuring updates to the ISM are implemented in a timely fashion.
  • Take responsibility for Compliance Operations, including audit preparation and liaison with internal and external auditors, including internal FAIR assessments and external government IRAP assessments as needed.
  • Support the Head of Global ISMS in the adoption of ISO27001 best practices across all ANZ divisions, contributing to the running of Division Cyber Committee meetings in region.
About You

We are seeking a highly experienced information security leader with a minimum of 8 years of experience in a similar role. The ideal candidate will have a strong understanding of information security risk management methodologies and regulatory requirements pertaining to information security and data security.

The successful candidate will have experience with international security and IT control standards and frameworks (ISO27001, GDPR, PCI-DSS, NIST, COBIT, COSO) and national security standards (APRA, ISM, NZISM etc). A CISA, CISM, CISSP or equivalent IT security-related certification is highly desirable.

The role requires strong leadership skills, with the ability to manage multiple complex priorities and competing agendas. The successful candidate will be able to interpret and apply policies and regulations across a large, complex business.

Australian citizenship and the ability to gain an AGSVA baseline clearance are mandatory for this role.

What We Offer

Gallagher offers a competitive salary, great teams, and exciting career opportunities. We also offer a wide range of benefits, including 4 weeks annual leave, up to 2 weeks additional purchased Lifestyle Leave, Novated Leasing opportunities, and more.



  • Brisbane, Queensland, Australia Gallagher Full time

    About the RoleThe Business Information Security Officer (BISO) is a critical leadership position within Gallagher, responsible for driving information security strategies and objectives across all divisions in Australian and New Zealand (ANZ). Reporting to the Global Chief Information Security Officer (CISO), this role will manage the APAC GCIS team in...


  • Brisbane, Queensland, Australia Gallagher Full time

    Job Title: Business Information Security Officer, ANZOverviewThe Business Information Security Officer (BISO) plays a critical role in leading the cyber and information security strategy for all Gallagher divisions in Australian and New Zealand (ANZ). Reporting to the Global Chief Information Security Officer (CISO), the BISO will work closely with...


  • Brisbane, Queensland, Australia Gallagher Full time

    About the RoleThe Business Information Security Officer (BISO) is a critical leadership position within Gallagher, responsible for driving information security strategies and objectives across all divisions in Australian and New Zealand (ANZ). Reporting to the Global Chief Information Security Officer (CISO), this role will manage the APAC GCIS team in...


  • Brisbane, Queensland, Australia Gallagher Full time

    About the RoleThe Business Information Security Officer (BISO) is responsible for leading the cyber and information security efforts for Gallagher divisions in Australia and New Zealand. This includes providing guidance to divisional CIOs and the Global CISO on existing security gaps, associated risks, and prioritization of remediation activities.Key...


  • Brisbane, Queensland, Australia Product And Technology Full time

    Job Title: Business Information Security AdvisorJoin Product and Technology as a Business Information Security Advisor and lead Security, Compliance, and Assurance activities in your business pillar within the organization globally.About the RoleWe are seeking an experienced Business Information Security Advisor to lead our Security, Compliance, and...


  • Brisbane, Queensland, Australia Flight Centre Travel Group Full time

    About the RoleWe are seeking a highly skilled Business Information Security Advisor to join our team at Flight Centre Travel Group. As a key member of our organization, you will play a critical role in leading Security, Compliance, and Assurance activities globally.Key ResponsibilitiesCollaborate with the Chief Information Security Officer (CISO), Risk, and...


  • Brisbane, Queensland, Australia Flight Centre Travel Group Full time

    About the RoleWe are seeking a highly skilled Business Information Security Advisor to join our team at Flight Centre Travel Group. As a key member of our organization, you will play a critical role in leading Security, Compliance, and Assurance activities globally.Key ResponsibilitiesCollaborate with the Chief Information Security Officer (CISO), Risk, and...


  • Brisbane, Queensland, Australia FCM Travel Full time

    Lead Information Security Officer RoleAs a key member of the security team at FCM Travel, you will be responsible for managing security risks, governance, and compliance across the organization. Your expertise will be crucial in identifying and mitigating security risks, ensuring compliance with regulatory requirements, and implementing effective security...


  • Brisbane, Queensland, Australia Gallagher - Global Full time

    About the RoleGallagher is seeking a highly skilled Business Information Security Officer to lead our cyber and information security efforts in Australian and New Zealand. As a key member of our global security team, you will be responsible for managing information security risk, developing and implementing security strategies, and ensuring compliance with...


  • Brisbane, Queensland, Australia Gallagher Full time

    About the RoleGallagher is seeking a highly skilled Business Information Security Officer to lead our cyber and information security efforts in Australian and New Zealand. As a key member of our global security team, you will be responsible for managing information security risk, developing and implementing security strategies, and ensuring compliance with...


  • Brisbane, Queensland, Australia Gallagher Full time

    About the RoleGallagher is seeking a highly skilled Business Information Security Officer to lead our cyber and information security efforts in Australian and New Zealand. As a key member of our global security team, you will be responsible for managing information security risk, developing and implementing security strategies, and ensuring compliance with...


  • Brisbane, Queensland, Australia Australian Security Intelligence Organisation Full time

    About the RoleWe are seeking a highly skilled Information Management Officer to join our team at the Australian Security Intelligence Organisation (ASIO). As an Information Management Officer, you will play a critical role in managing and maintaining ASIO's information, ensuring that it is accurate, complete, and secure.Key ResponsibilitiesContribute to the...


  • Brisbane, Queensland, Australia Gallagher Full time

    About the RoleGallagher is seeking a highly skilled Business Information Security Officer to lead our cyber and information security efforts in Australian and New Zealand. As a key member of our global security team, you will be responsible for managing information security risk, developing and implementing security strategies, and ensuring compliance with...


  • Brisbane, Queensland, Australia Gallagher Full time

    About the RoleThe Business Information Security Officer (BISO) is a critical role within Gallagher, responsible for leading the cyber and information security strategy for all divisions in Australian and New Zealand. This position reports to the Global Chief Information Security Officer (CISO) and works closely with divisional leaders, technology teams, and...


  • Brisbane, Queensland, Australia Gallagher Full time

    About the RoleThe Business Information Security Officer will serve as the cyber and information security leader for all Gallagher divisions in Australian and New Zealand. This role will manage the APAC GCIS team in supporting both enterprise-level and divisional information security strategies, objectives, and obligations.Key ResponsibilitiesProvide guidance...


  • Brisbane, Queensland, Australia Talent International Full time

    We are seeking a highly skilled Business Analyst to join an exciting Information Security Program with a leading QLD-based commercial organisation. The successful candidate will play a pivotal role in analysing and documenting business requirements for ISO 27001 compliance, with the potential to support additional compliance initiatives, including SOC 2.The...


  • Brisbane, Queensland, Australia Talent International Full time

    We are seeking a highly skilled Business Analyst to join an exciting Information Security Program with a leading QLD-based commercial organisation. The successful candidate will play a pivotal role in analysing and documenting business requirements for ISO 27001 compliance, with the potential to support additional compliance initiatives, including SOC 2.Key...


  • Brisbane, Queensland, Australia FCM Travel Full time

    About the RoleWe are seeking a highly skilled Senior Information Security Specialist to join our team at FCM Travel. As a key member of our security operations team, you will play a crucial role in identifying and managing business risks in support of our growth objectives.Key ResponsibilitiesEngage in complex and challenging projects to maintain the...


  • Brisbane, Queensland, Australia FCM Travel Full time

    About the RoleWe are seeking a highly skilled Senior Information Security Specialist to join our team at FCM Travel. As a key member of our security operations team, you will play a crucial role in identifying and managing business risks in support of our growth objectives.Key ResponsibilitiesEngage in complex and challenging projects to maintain the...


  • Brisbane, Queensland, Australia FCM Travel Full time

    Job DescriptionAt FCM Travel, we're seeking a highly skilled Information Security Officer to lead our Security, Compliance, and Assurance activities globally. As a key member of our team, you'll be responsible for managing security risks, implementing compliance and assurance programs, and ensuring the security of our organization's information assets.Key...