Governance, Risk and Compliance Analyst

7 days ago


Melbourne, Australia Nixil Full time

You will work with a range of stakeholders across the business providing information security compliance and risk management support and guidance.

Additionally, you will manage cyber security policies and standards, ensure they are periodically updated and aligned them with the overall Banking Information Security Policy framework.

Reporting to the Manager, Information Security, you will:

- Provide senior leadership support and guidance to other Governance, Risk and Compliance Analyst (GRC).
- The GRC specialist will report into this senior role for the duration of the contract.
- Maintain the Bank Information Security Framework in alignment with legal and regulatory requirements;
- Ensure and contribute to regulatory compliance including APRA CPS234
- Develop, maintain and review security governance documentation including policies, procedures and guidelines for cyber security;
- Provide guidance to ensure compliance with information security policies and standards;
- Maintain the Information Security Risk Register
- Liaise with information system owners to support them in maintaining risk and compliance protocols and progress risk treatment plans;
- Contribute to technology strategies and product selections;
- Ensure security controls are implemented and tested in alignment with banking information security policies and standards;
- Play a lead role in governance, risk and compliance information security reporting;
- Manage third party risk including the third party register, third party assessments and third party reporting.
- Identify and appropriately manage security risks and drive opportunities to improve security within the Bank environment;
- Build strong relationships with internal and external stakeholders to maintain and improve service to business users and enhance knowledge and information sharing

QUALIFICATIONS AND EXPERIENCE:

- ** One or more related certifications such as CISSP, CEH, CISA, CISM etc.**:

- Degree in Computer Science or related field
- Solid knowledge of information security principles and practices
- ** At least 4+ years’ experience in a combination of information security risk management, compliance, governance and IT Audit**:

- Demonstrated experience in performing information security audits and control assurance activities across security controls
- Demonstrated experience in performing third party security assessment and an understanding of vendor security risk management and assessment practices
- Understanding of security risk and information security vulnerabilities
- ** Exposure and understanding of cyber security standards NIST Cyber Security Framework, ISO27001, PCI DSS**:

- Sound knowledge of contemporary information security management trends, tools, practices and concepts
- Familiarity with the banking industry
- ** Understanding of APRA Prudential Standards relating to cyber security**:

- Strong knowledge of Cyber Security Infrastructure technologies, best practices and broad knowledge of network security concepts
- An understanding and experience with third party risk management
- An understanding of security technologies that are commonly used to detect, contain or prevent security incidents such as IDS/IPS, Endpoint Security, Firewalls, Content Inspection and SIEM
- Experience in the development, operationalisation and maintenance of security policies, procedures and standards
- Strong communications skills - both verbal and written, being able to share knowledge and educate others
- ** FULL Working rights in Australia



  • Melbourne, Australia Staffx Pty Ltd Full time

    **About the Company** This IT Services and IT Consulting company is an Australian company that has core competencies in banking and financial services. They work with leading and local companies across the APAC region. Their highly skilled, talented IT specialists are experts in their fields, and employees are placed in key value-adding roles with our...


  • Melbourne, Australia McMillan Shakespeare Full time

    The McMillan Shakespeare Group (MMS) is a trusted provider of salary packaging, novated leasing, disability plan management and support co-ordination, asset management and related financial products and services. From our origins in 1988 when we created Australia’s salary packaging industry to today, MMS has a proud history of innovation and exceptional...


  • Melbourne, Victoria, Australia Future Fund Full time

    Senior Governance Risk Compliance Analyst page is loaded## Senior Governance Risk Compliance Analystlocations: Melbournetime type: Full timeposted on: Posted Todaytime left to apply: End Date: September 30, 2025 (13 days left to apply)job requisition id: JR100247***About Future Fund***At the Future Fund, we're for future minds – like yours. The...


  • Melbourne, Victoria, Australia Future Fund Full time

    Senior Governance Risk Compliance Analyst page is loaded## Senior Governance Risk Compliance Analystlocations: Melbournetime type: Full timeposted on: Posted Todaytime left to apply: End Date: September 30, 2025 (13 days left to apply)job requisition id: JR100247***About Future Fund***At the Future Fund, we're for future minds – like yours. The...


  • Melbourne, Australia Future Fund Full time

    Senior Governance Risk Compliance Analyst page is loaded## Senior Governance Risk Compliance Analystlocations: Melbournetime type: Full timeposted on: Posted Todaytime left to apply: End Date: September 30, 2025 (13 days left to apply)job requisition id: JR100247***About Future Fund***At the Future Fund, we’re for future minds – like yours. The...

  • IT Governance Risk

    2 weeks ago


    Melbourne, Australia Head Office St Kilda Rd Full time

    **IT GRC Analyst** Healthscope is a leading private provider of integrated health services in Australia. We are focused on providing exceptional services to our customers in our private hospitals throughout the country. The IT / Cyber GRC Analyst is a full-time permanent position and a key member of the Cyber Security IT GRC team helping to reduce the risk...


  • Melbourne, Australia Aboriginal Health Council of Western Australia Full time

    About Future Fund At the Future Fund, we’re for future minds – like yours. The new investors and creators who thrive on different thinking and doing it together. Those who glimpse opportunity before it strikes and step up every day to grab it. The Future Fund is Australia's Sovereign Wealth Fund, managing over $310 billion across seven public asset...


  • Melbourne, Australia Bendigo & Adelaide Bank Full time

    **Your new role with Bendigo Bank is just a few clicks away.** As the** Risk and Compliance Analyst, **you will be reporting to the **Head of Risk and Compliance Services **with key responsibilities relating to analysing risk and compliance data for deep dives and thematic reviews related to risk, controls, events, business continuity management and...


  • Melbourne, Victoria, Australia Aboriginal Health Council of Western Australia Full time

    About Future FundAt the Future Fund, we're for future minds – like yours. The new investors and creators who thrive on different thinking and doing it together. Those who glimpse opportunity before it strikes and step up every day to grab it.The Future Fund is Australia's Sovereign Wealth Fund, managing over $310 billion across seven public asset funds...


  • Melbourne, Victoria, Australia Aboriginal Health Council of Western Australia Full time

    About Future FundAt the Future Fund, we're for future minds – like yours. The new investors and creators who thrive on different thinking and doing it together. Those who glimpse opportunity before it strikes and step up every day to grab it.The Future Fund is Australia's Sovereign Wealth Fund, managing over $310 billion across seven public asset funds...