Cyber Governance, Risk and Compliance Manager

2 days ago


Melbourne, Australia St John of God Health Care Full time

Your role at St John of God Health Care

This is an exciting time to join, as we are digitalising our future through a major investment in technology transformation to enhance patient care and experience. Our Digital Security team is at the forefront of this journey ensuring our systems, data, and people remain secure.

About the Role

The Head of Cyber GRC is a senior position is responsible for leading the delivery, operation and enhancement of cyber security governance, risk and compliance including:
- Drive cyber governance, risk, and compliance across the organisation.- Lead policy, standards, and compliance programs including SOCI and Essential Eight.- Oversee the expansion of cyber risk management, cyber third-party assurance, and the cyber awareness and training program.- Product Owner for Cyber GRC projects.- Build and embed a strong cyber security resilience and culture through effective reporting, control monitoring, and frameworks.- Provide executive and board-level reporting insights on cyber risk.- Lead and mentor the Cyber GRC team.

The Head of Cyber GRC is a member of the Digital Security Leadership Team and reports directly to Group Manager Digital Security (CISO)

About You

We are looking for someone who brings:
- A degree in Information Systems, Cyber Security, or a related field (or 8+ years of equivalent experience).- Relevant certifications such as CISSP, CISM, CISA, ISO Lead Auditor.- Hands-on experience running a security governance, risk and compliance function, including risk assessments, control monitoring, and reporting.- Experience building and operating security frameworks (ACSC Essential Eight, ACSC Information Security Manual, ISO27001/2, NIST CSF).- Strong stakeholder engagement skills, particularly in third-party risk management.- Excellent verbal and written communication skills.- Proven ability to lead and inspire teams, with excellent communication skills.- Experience with a Big 4 consulting firm, or within health, health insurance, banking or finance industries, will be highly regarded.- Australian citizen or permanent resident- Above all, people will be at the core of everything you do committing to and supporting our Mission and Values.
- All applicants are asked to submit a covering letter (of no more than two (2) pages) and resume (no more than 5 pages) demonstrating how you meet the above position requirements._

We can offer you- Salary: $172,700 to $191,900 per annum (total remuneration package inclusive of super).- Hybrid work: Mix of Melbourne CBD office and work-from-home arrangements available.- Salary packaging: up to $18,550 on a range of benefits such as mortgage, rent, meal entertainment, holiday accommodation or other everyday living expenses as well as options to salary package benefits above the FBT cap on items such as:
- novated leasing- work related expenses- self-education and- additional superannuation- Employee discounts: on St John of God Hospital & Medical Services and Private Health Insurance- Employee Support: through our dedicated free Employee Assistance Program (EAP)- Work-life balance: flexible work options, additional purchased leave, and well-being programs- Work for a values-based organisation striving to provide care for people: Hospitality, Compassion, Respect, Justice, and Excellence.

If you are passionate about making a real impact in health care through cyber security, we would love to hear from you.



  • Melbourne, Victoria, Australia St John of God Health Care Full time $150,000 - $180,000 per year

    Your role at St John of God Health CareThis is an exciting time to join, as we are digitalising our future through a major investment in technology transformation to enhance patient care and experience. Our Digital Security team is at the forefront of this journey ensuring our systems, data, and people remain secure.St John of God Health Care (SJOG) are...


  • Melbourne, Australia Interactive Pty Ltd Full time

    **LOCATION(S)** - Melbourne *** **POSITION** - Permanent - **DEPARTMENT** - IT & Telecomms - Our Cyber Security team protects and defends our customers’ and own internal systems and our cyber offering includes threat & vulnerability assessments, cyber risk & governance consulting and 24/7 managed security services. Our Cyber, Risk & Governance team work...


  • Melbourne, Australia Staffx Pty Ltd Full time

    **About the Company** This IT Services and IT Consulting company is an Australian company that has core competencies in banking and financial services. They work with leading and local companies across the APAC region. Their highly skilled, talented IT specialists are experts in their fields, and employees are placed in key value-adding roles with our...


  • Melbourne, Australia Nixil Full time

    **This opportunity is a 6-12 month FTC with the option to extend** You will work with a range of stakeholders across the business providing information security compliance and risk management support and guidance. Additionally, you will manage cyber security policies and standards, ensure they are periodically updated and aligned them with the overall...


  • Melbourne, Australia Experis Full time

    Shape the security strategy for a renowed educational instituate. - Permanent opportunity with a competive salary package - Hybrid work arrangement - Footscray Office As the Cyber Risk and Assurance Manager you will lead cybersecurity governance, risk, compliance, and assurance. You will establish strong security practices, define standards, and manage...


  • Melbourne, Australia Arup Full time

    Digital Technology - Corporate Services   - MEL0001GX Requisition # **Joining Arup**: Arup’s purpose, shared values and collaborative approach has set us apart for over 75 years, guiding how we shape a better world. As part of a diverse and collaborative global team, you’ll work with colleagues from around the world to uphold and strengthen our...


  • Melbourne, Australia Aurec Full time

    We are looking to engage a skilled and enthusiastic **Cyber Security Compliance Specialist **to join our Federal Government client! Our Federal Government Client seeks to engage experienced Cyber Security Compliance Specialist who will work to identify cyber risk and ensure compliance with our clients standards and the Australian Government Security...

  • IT Governance Risk

    1 week ago


    Melbourne, Australia Head Office St Kilda Rd Full time

    **IT GRC Analyst** Healthscope is a leading private provider of integrated health services in Australia. We are focused on providing exceptional services to our customers in our private hospitals throughout the country. The IT / Cyber GRC Analyst is a full-time permanent position and a key member of the Cyber Security IT GRC team helping to reduce the risk...


  • Melbourne, Australia Talent Insights Group Full time

    Security Risk, Compliance and Audit Manager in the Cyber Security division. - Working across Risk and Compliance software, Security/Cyber technologies - ITIL, CISSP, CISM, GIAC, CEH, PCI-DSS and PCS234 Our client is a top tier Health organisation who is looking to bring in a new Security Risk, Compliance and Audit Manager to join the APAC Cyber team within...


  • Melbourne, Victoria, Australia Department of Health Full time $70,000 - $120,000 per year

    About the role:The Principal Cyber Security Analyst Governance, Risk & Audit is responsible for leading and executing end-to-end activities related to internal and external audits, governance forums, cyber security performance reporting, and cyber risk management. This role plays a key part in strengthening the department's cyber resilience by identifying...