Head of Security Risk
3 days ago
Are you looking for an awesome place to work, where you can proudly be your authentic self, and be part of #oneteam?
We are looking for a passionate team player who aligns with our values and culture, takes pride in their unique contributions, and can challenge the status quo with disruptive thinking. If this sounds like you, come and join us
The Opportunity
We have an exciting opportunity to join Vocus as The Head of Security Risk and Governance in our team in either Melbourne, Perth or Sydney office. this role will provide strategic direction and authoritative oversight of Vocus’ security governance, risk and compliance (GRC) functions.
The role ensures that Vocus security policies, controls, and risk practices remain robust, transparent, and responsive to evolving regulatory, compliance, and threat landscapes.
What you’ll be doing day-to-day
By harmonising strategic priorities with established frameworks and embedding risk reporting, awareness and accountability into decision-making processes, the Head of Security Risk and Governance strengthen our internal security risk management practices, ensure public trust through the management of audits, enhance market credibility by maintaining our accreditations, and uphold Vocus’ values.
This position is also accountable for Vocus’ physical in conjunction with facilities and network operations, and personnel security including the management of clearance holders in support of our Defence Industry Security Partnership (DISP) accreditation.
This position will foster a high-performance culture of ethical leadership and continuous improvement, influence key stakeholders, lead security GRC reporting and build Vocus’ capability to support sustainable, risk-informed business outcomes.
This role may require occasional after-hours engagement to manage emerging incidents or compliance deadlines. Also have potential interstate or international travel to liaise with regulators, auditors, and industry networks.
This role operates within a complex, matrixed environment that demands agility, cross-functional collaboration, and alignment with broader strategic initiatives.
What you’ll bring to this role
Required Skills & Competencies
- Demonstrated experience and shaping and maintaining integrated security risk management, compliance and governance frameworks, ensuring alignment with organisational priorities, regulatory requirements, and industry standards.
- Expert knowledge of relevant regulatory and compliance frameworks, including NIST, ISO27001:2022, DISP, ISM, PCI-DSS and PSPF; and the ability to adapt strategies in response to evolving legislative and industry landscapes.
- Proven ability to lead large-scale, cross-functional initiatives that drive secure-by-design principles, policy optimisation, and effective control implementation.
- A track record of fostering a risk-aware culture, embedding systematic risk assessment, scenario planning, and clear reporting into critical decision-making processes.
- Evidence of strong stakeholder engagement, influencing senior executives, legal, compliance, audit, and finance teams to support well-informed and transparent governance outcomes.
- Advanced analytical and problem-solving capabilities, with the capacity to interpret complex data, metrics, and reports to inform strategic actions; as well as the ability to drive management, board and operational reporting.
- Strong communication, negotiation, and influencing skills to build trust and collaboration across diverse teams and functional areas.
- Demonstrated proficiency in policy development, security control optimisation, and risk assessment methodologies, combined with the capability to translate findings into actionable recommendations.
- Able to lead internal and external audits and ensure that any findings are implemented.
- Demonstrated capability to lead, mentor and build high performance teams.
Desirable Skills & Competencies
- Familiarity with enterprise risk management tools, GRC (Governance, Risk & Compliance) platforms, and emerging security technologies. Experience in GRC policy-as-code and GRC automation will be highly regarded.
- Security risk quantification methodologies such as FAIR. Experience in adapting these methods to Board level reporting will be highly regarded.
- Experience engaging directly with regulators, industry bodies, and auditors, shaping external perceptions and reinforcing organisational credibility.
- Knowledge of supply chain security frameworks and global best practice to further integrate governance measures throughout the extended enterprise environment.
- Practical experience with the Protective Security Policy Framework (PSPF) would be highly regarded.
Qualifications & Education
- Bachelors in cyber security, information assurance, risk management, law, business administration or a related field; a postgraduate qualification is advantageous.
- Relevant professional certifications (e.g., CISA, CRISC, CISSP, CISM CGEIT) preferred, i
-
Head of Risk and Compliance
1 week ago
Melbourne, Victoria, Australia Cloudtech Group Full time $180,000 - $250,000 per yearCloudTech Group is building a simpler, safer, and smarter financial future for all Australians. Powered by blockchain, backed by compliance, and built for real life, we're transforming how Australians interact with financial services through innovative technology solutions. As we continue to expand our operations and navigate the evolving regulatory...
-
Head of Risk and Compliance
6 days ago
South Melbourne, Victoria, Australia Cloudtech Group Full time $180,000 - $250,000 per yearCloudTech Group is building a simpler, safer, and smarter financial future for all Australians. Powered by blockchain, backed by compliance, and built for real life, we're transforming how Australians interact with financial services through innovative technology solutions. As we continue to expand our operations and navigate the evolving regulatory...
-
Security Risk Analyst
2 weeks ago
Melbourne, Australia Australian Bureau of Meteorology Full timeExecutive Level 1, Ongoing/Non-ongoing - $115,443 - $125,832 + 15.4% super - Melbourne The Security Risk Analyst is a trusted advisor and analyst, reporting to the Security Risk Manager. The position plays an important role in safeguarding the Bureau's customers, systems, personnel and facilities, ensuring compliance with Australian Government's Protective...
-
Head of Information and Physical Security
2 weeks ago
Melbourne, Australia AustralianSuper Full timeFlexible and inclusive work environment - Full-time, permanent opportunity - Deliver outcomes for our Members At AustralianSuper, we truly care about our colleagues. We know work and life are intertwined. That’s why we support the diverse needs of everyone and have policies that enable us all to thrive and be truly flexible. We ensure diversity is...
-
Melbourne, Australia Head Office St Kilda Rd Full time**Cyber Security Education and Influence Specialist** The Cyber Security Education and Influence Specialist role is a 12-month full time, fixed term position that will join a team to deliver the Healthscope Cyber Security Education and Influence program, including providing training to employees, contractors and third parties with access to Healthscope’s...
-
Security Risk and Compliance Manager
7 days ago
Melbourne City Centre, Australia Department of Education Full timeSecurity Risk and Compliance Manager VPS6 Ongoing PN20009308 Enjoy a career that makes a difference by helping to shape the education experience for Victoria. - Be part of a vibrant Department culture with a strong sense of community and inclusion. - Join the Education State. - At the Department of Education, we are committed to giving every Victorian the...
-
Full Time Security Officer Concierge
2 weeks ago
Melbourne, Australia Challenger Security Full time**Who are we?** We are people, people. Challenger Security is an ISO accredited industry leader in the provision of security services across Australia. We specialise in high-end luxury retail, commercial, education and government. We have built our brand understanding clients, protecting them, and then doing it better. **Who are we looking...
-
Security Risk Assurance
5 days ago
Melbourne, Victoria, Australia Tech Aalto Full time $120,000 - $180,000 per yearSecurity Risk AssuranceRoleThe Senior Cyber Security Risk Assurance Lead is hands-on and multi disciplined, assessing complex technical issues and performing cyber security risk assessments across a wide range of initiatives in a fast-paced, complex environment.• Performing cyber security risk assessments across multiple projects.• Collaborating with...
-
Head of Risk
1 day ago
Melbourne, Australia Dean & Ling Executive Full timeCareer defining opportunity to progress from a Senior Manager level. CEO is committed to the value the function can contribute. This leading investment research house is highly regarded for the quality of the solutions it provides to fund managers, super funds and financial planners. They provide a professional, stimulating and friendly work environment and...
-
Head of Risk
1 day ago
Melbourne, Australia Dean & Ling Pty Ltd Full timeMarket Leading Investment Research House - Client Focused & Collaborative Culture - $200,000 Salary Package - Negotiable This leading investment research house is highly regarded for the quality of the solutions it provides to fund managers, super funds and financial planners. They provide a professional, stimulating and friendly work environment and their...