Cyber Risk

4 days ago


Sydney, Australia Betashares Full time

**Description**:
This role will also liaise with other stakeholders such as Line 2 risk, Risk and Compliance, auditors and regulators as needed.

**Role Responsibilities**:

- Lead on reviewing and developing technology, data and information security risk related policies, standards, and procedures in accordance with business priorities, business initiatives and regulatory requirements such as CPS234 and CPS230.
- Develop and implement risk management strategies and controls to mitigate identified risks, including third party provider risks, to ensure information security risk within the Betashares supply chain is appropriately managed.
- Uplift controls testing framework, conducting planning and controls assessments / testing and assurance.
- Builds and owns the IT Risk framework / register.
- Conduct regular risk assessments and audits, including third party supplier assessments where necessary.
- Populate Technology and Cyber Controls Library / matrix and ensure alignment with Betashares risk matrix.
- Collaborate with Technology teams to ensure that risk management practices are integrated into day-to-day operations and to ensure they are within risk appetite.
- Identifies compliance obligations that impact technology and ensures they are managed in projects & BAU.
- Develop and maintain incident response plans and procedures, ensuring alignment with and advising on, business continuity management across the organisation.
- Support the technology department in managing and responding to security incidents.
- Provides assurance over design and operating effectiveness of key controls. Provides oversight and advice to stakeholders on technical and risk matters.
- Works with projects to ensure that delivery and delivered risks are captured and managed appropriately.
- Maintains and facilitates the remediation of external and internal audit findings.
- Ensures that appropriate risk education and training is designed and implemented for IT.
- Promotes a culture of risk management awareness and appreciation. Implements strategies to improve IT risk management and practices.
- Ensure adherence to relevant regulations, standards, and best practices, including ISO27001 and APRA prudential standards and guidelines, reporting compliance status to management.
- Engagement and responsibility for enhancing the operational risk for IT under CPS230.
- Stay up-to-date with changes in laws and regulations affecting the financial services industry, providing relevant guidance and training to technology teams.
- Liaise with other stakeholders such as Line 2 risk, Compliance, and auditors and regulators as needed.

**Skills & Experience**:

- Professional certification in cyber security, risk management, or auditing (e.g. CISSP, CISM, CRISC, CISA, etc.)
- Sound understanding of information security risk standards and frameworks such as ISO27001 and NIST.
- At least 5 years of experience in cyber risk and compliance, preferably in the financial services industry.
- Familiarity with CPS234 and other relevant regulatory requirements and standards.
- Experience in developing and maintaining technology, data and information security risk and controls frameworks and documentation.
- Ability to perform independent and objective assessments of technology and cyber controls.
- Strong analytical, problem-solving, and communication skills.
- Ability to work effectively in a team and with multiple stakeholders.

**Reasons To Join Us**:
**What We Offer**

Betashares believes our most important asset is our people and we are proud of the culture we have built - but we are always striving to be better. We want every Betashares employee to be doing their best work and developing their careers. In addition to a competitive salary, we also offer:

- Continuous career development and training opportunities
- Access to a health and wellbeing platform with physical, mental, social and financial support programs available.
- Volunteering days off, so you can contribute to a cause that matters to you.
- Conveniently located CBD offices with fully stocked kitchens, team breakfasts and catered lunches on a regular basis.
- Fun and inclusive social events.

**Our Values**

As our business continues to grow, we’re committed to creating a workplace that gives us all the best opportunity to succeed, and that is enjoyable to be a part of. We prize ambition and drive, but equally we value honesty and humility.

We support each other, and we respect our clients and our competitors. Innovation is in our DNA, and we are always looking for better ways to do things and are willing to take measured risks and learn from our mistakes along the way.

**About Betashares**:
Betashares was founded in 2009 and launched with the vision to create intelligent and accessible investment solutions for Australian investors. Over the past decade our dedication to helping Australian investors achieve their financial goals has seen Betashares grow from ‘challenger’ to market



  • Sydney, New South Wales, Australia Skylight Cyber Security Full time $120,000 - $180,000 per year

    About Skylight CyberAt Skylight Cyber, we're young, transparent, and culture-focused boutique cyber security firm specialising in providing high-end services to enterprises globally. We provide our customers with world class expertise to build and continuously evolve an effective security stack across people, process, and technology.We thrive and are...


  • Sydney, Australia Vertex Cyber Security Full time

    **Core Duties**: The Cyber Security Consulting Team Lead manages the Consulting Team to deliver end-to-end cyber security consulting services, undertaking duties that include, but are not limited to: - Conducting comprehensive cyber security risk assessments and audits of client technical environments (cloud and on-premise) and policies and procedures,...


  • Sydney, Australia Aon Corporation Full time

    Posting Description: - Opportunity for a risk management professional to join our Cyber Consulting team - Full time, permanent opportunity based in Sydney **Cyber Risk Consultant** This role is responsible for helping to set the strategy in relation to Aon’s Cyber Risk endeavours. In the role you will be executing the provision of Cyber Risk consulting...


  • Sydney, Australia Aon Corporation Full time

    Posting Description: - Key leadership opportunity for a senior Cyber specialist - Work across an enviable portfolio for our Australian operations - Join one of Australia’s leading Cyber Risk solutions provider **Cyber Risk Consultant** You will be an integral component of the Cyber Solutions Group, working closely with the Cyber Insurance Practice...

  • Cyber Risk Analyst

    2 days ago


    Sydney, Australia GWG Full time

    12 month contract - 100% remote opportunity - Large well-established organisation **The Company** This large organisation is dynamic and rapidly evolving in a changing ecosystem. Seeking to improve safety, performance, and culture while driving efficiency, managing costs, and creating value in a best practice environment. As the business continues its path...

  • Cyber Risk Analyst

    4 weeks ago


    Sydney, New South Wales, Australia NSW Government Full time

    OverviewCyber Risk Analyst, ongoing opportunity based in Sydney plus flexible/hybrid working options available. The Department of Customer Service is looking for a Cyber Risk Analyst to join our growing teamBenefitsFantastic ongoing clerk grade 7/8 opportunity.Salary range: $113,574 - $125,720 plus superannuation, commensurate with experience.Genuinely...

  • Cyber Risk Analyst

    4 weeks ago


    Sydney, New South Wales, Australia NSW Government Full time

    OverviewCyber Risk Analyst, ongoing opportunity based in Sydney plus flexible/hybrid working options available. The Department of Customer Service is looking for a Cyber Risk Analyst to join our growing teamBenefitsFantastic ongoing clerk grade 7/8 opportunity.Salary range: $113,574 - $125,720 plus superannuation, commensurate with experience.Genuinely...

  • Cyber Risk Analyst

    6 days ago


    Sydney, New South Wales, Australia NSW Government Full time $113,574 - $125,720 per year

    Cyber Risk Analyst, Ongoing opportunity based in Sydney plus flexible/hybrid working options availableThe Department of Customer Service is looking for a Cyber Risk Analyst to join our growing teamBenefitsFantastic ongoing clerk grade 7/8 Opportunity.Salary range: $113,574 - $125,720 plus superannuation, commensurate with experience.Genuinely flexible...

  • Cyber Risk Analyst

    6 days ago


    Sydney, New South Wales, Australia myCareer - NSW Government Full time $113,574 - $125,720 per year

    Cyber Risk Analyst, Ongoing opportunity based in Sydney plus flexible/hybrid working options available The Department of Customer Service is lookingfor a Cyber Risk Analyst to join our growing teamBenefitsFantastic ongoing clerk grade 7/8 Opportunity.Salary range: $113,574 - $125,720 plus superannuation, commensurate with experience.Genuinely flexible...

  • Cyber Risk Analyst

    6 days ago


    Sydney, New South Wales, Australia NSW Department of Customer Service Full time $113,574 - $125,720 per year

    Cyber Risk Analyst, Ongoing opportunity based in Sydney plus flexible/hybrid working options availableThe Department of Customer Service is looking for a Cyber Risk Analyst to join our growing teamBenefitsFantastic ongoing clerk grade 7/8 Opportunity.Salary range: $113,574 - $125,720 plus superannuation, commensurate with experience.Genuinely flexible...