
IT Security, Risk and Compliance Manager
8 hours ago
**IT Security, Risk and Compliance Manager**:
**Job no**: 497812
**Work type**: MSP Contract
**Classification**: MSP
**Categories**: Information Technology
**Create our future together at the City of Greater Geelong**
At City of Greater Geelong, we are committed to working together for a thriving community. We do this by delivering over 130 services to our rapidly growing population and working hard to protect and improve what it is that makes Greater Geelong on Wadawurrung country such a great place to live, work and study.
We’re going through an exciting period of change that will help us serve our community better. From digital modernisation to the contemporary, sustainable office we've built in Central Geelong, now more than ever is a great time to join our team at the City of Greater Geelong.
Our Community is made up of diverse people from all walks of life, and it’s important to us that our workforce represents and celebrates this strength.
We encourage great people from all backgrounds to join us. We encourage authenticity, because inclusion makes us stronger.
If you’re excited about working together to create a Clever and Creative Greater Geelong, and joining a workplace where all people can thrive, then hit **apply** - we’d love to meet you
**About the role**
Key responsibilities include:
- Partner with the business to provide security, risk and compliance advice to technology related matters including cyber security.
- Responsible for leading the delivery and uplift of the City’s Information Security, Risk and Control capability maturity, including the management and execution of key security initiatives/projects.
- Management of IT security, working with other IT teams to ensure the protection of IT assets & information as well as the prevention and management of breaches.
- Monitoring the external threat environment for emerging threats, conducting system security and vulnerability assessments and working with stakeholders on the appropriate course of action.
- Managing and containing security incidents and events to protect IT assets, data, and limit operational impacts including the coordination of incident response plans to ensure that business-critical services are recovered in the event of a security event.
- Managing the process of gathering, analysing, and assessing the current and future threat landscape, as well as providing a realistic overview of risks and threats in the environment.
- Developing a security vision, strategy and roadmap that is aligned to business priorities and enables and facilitates the business objectives aligned to the risk appetite by determining enterprise-wide security requirements, including new IT investments required to protect our assets.
- Leading IT risk identification, IT risk management, and appropriate risk mitigation strategies including the reporting of IT risks and associated information both at an operational and strategic level.
- Working collaboratively with business and IT stakeholders to understand and facilitate security risk assessments and risk management processes both to optimise enterprise risk and to empower stakeholders to own and accept the level of risk they deem appropriate for their specific risk appetite.
- Establish and maintain a governance framework for IT Security, Risk and Compliance within the City and provide a point of contact to business and technology teams on security governance requirements.
- Act as a key point of contact for stakeholder engagement across the business, technology, and external vendors, while demonstrating a strong ability to independently engage and develop stakeholder relationships.
**About you**
To be successful in this role, you will have knowledge of common information security management frameworks, such as ISO/IEC 27001, ASD, COBIT and NIST.
Essential Experience:
- Bachelor's degree in computer science, information systems, or other relevant discipline
- Minimum of 5 years’ experience within IT, security and risk
- Minimum of 2 years’ experience in an IT Security Management role
- Practical hands-on experience working within Information Security, IT Risk and related technology governance frameworks
- Knowledge of enterprise information and cyber security processes, concepts, and best practices, with an exposure to public cloud models is desirable.
- Exposure to a broad range of IT functions and disciplines, with a strong working knowledge of IT governance and/or information governance.
- Regulatory compliance knowledge including PCI, VPDSF as well as knowledge and experience of network and infrastructure security and vulnerabilities.
- Experience across other security areas including penetration testing, security architecture or design and security governance including hands-on experience implementing security solutions.
- Relevant security certifications beneficial such as CISA, CISM, CISSP, SASA, ISO27K or related IT Governance certifications such as COBIT
- IT Risk
-
Security Risk Analyst
1 day ago
Geelong, Australia HAYS Full time**Your new company** Victorian government’s top statutory authority is looking for a Security Risk Consultant to be part of their Security team for a long-term contract. **Your new role** As an expert and having a blend of technical and soft skills, your main role would be: - Provide expert advice and assessment on IT and security risks, threats and...
-
Security Risk Analyst
3 days ago
Geelong, Australia Davidson Group Services Full time**About the Company** Davidson Technology have partnered with a state agency in Victoria to assist them in securing an experienced IT Security & Risk Consultant for a 6-month contract with a view to extend. **About the Role** The Security Risk Consultant is responsible for conducting assessments in Security, Technology, and Risk (STaR) for both projects...
-
Security Risk Analyst
2 days ago
Geelong, Victoria, Australia Davidson Group Services Full time**About the Company**Davidson Technology have partnered with a state agency in Victoria to assist them in securing an experienced IT Security & Risk Consultant for a 6-month contract with a view to extend.**About the Role**The Security Risk Consultant is responsible for conducting assessments in Security, Technology, and Risk (STaR) for both projects and...
-
Aps6 Cyber Security Compliance Specialist
2 weeks ago
Geelong, Australia HAYS Full timeCyber Security Compliance Specialist / Risk / Governance / Federal Gov Role / Contract Opportunity / Geelong **Your new company** Hays Technology in Geelong are currently partnered with a Federal Government organization located in Geelong CBD, Victoria. We are seeking to appoint **Cyber Security Compliance Specialist on 12 months contract role with a view...
-
Senior Security Risk Consultant
2 days ago
Geelong, Victoria, Australia beBeeRisk Full time $120,000 - $140,000**Job Overview**A Security Risk Analyst is required to conduct assessments in Security, Technology, and Risk (STaR) for both projects and ongoing business activities. These assessments evaluate data, threats, and applicable controls in relation to the project design.The consultant offers guidance to project managers, business leaders, and stakeholders on...
-
Security and Risk Management Specialist
4 days ago
Geelong, Victoria, Australia beBeesecurity Full time $83,518 - $91,435Job Title: Security and Risk Management Specialist"],
-
Concierge Security Officer
4 days ago
Geelong, Victoria, Australia Wilson Security Full timeBased in Geelong- Monday-Friday position- Site allowance of $120/weekWilson Security is the leading provider in the provision of security services across Australia and New Zealand. Our services are supported by a highly experienced management team, industry-leading expertise and a strong local and national structure. We are committed to becoming...
-
Concierge Security Officer
5 days ago
Geelong, Australia Wilson Security Full timeBased in Geelong - Monday-Friday position - Site allowance of $120/week Wilson Security is the leading provider in the provision of security services across Australia and New Zealand. Our services are supported by a highly experienced management team, industry-leading expertise and a strong local and national structure. We are committed to becoming...
-
Security & Risk Coordinator
1 week ago
Geelong, Australia The Gordon Full time$83,518 to $91,435 p.a. plus Superannuation - Full Time Ongoing - For further details contact Troy Goodrick on 0466 640 944 The Gordon is looking for a **Security and Risk Coordinator **to lead the organisation in security and security risk management including the ongoing development and maintenance of security processes, policies, and procedures. Key...
-
Cyber Security Governance Specialist
4 days ago
Geelong, Victoria, Australia beBeeCybersecurity Full time $220,800 - $288,000Job Title: Cyber Security Governance Specialist Cyber Security Compliance RoleThis role involves providing assurance to senior leadership internal control testing, auditing, and monitoring, and risk management and mitigation.Identify cyber risks and ensure compliance with company standards and the Australian Government Security Framework, relevant laws and...