
Information Security Risk and Assurance Manager
5 days ago
**_Be inspired everyday_**
At HESTA we’re a leading national superannuation fund dedicated to people working in health and community services - a growing sector of ordinary people doing extraordinary things, day in day out, right across Australia.
More than 1 million Australians trust HESTA with their money. So together, we invest billions of their savings globally, striving to generate strong investment returns and make a real difference to their financial futures. Our focus is on helping our members enjoy the retirement they’ve worked hard for.
- **Do you have a passion for information and cyber security?**:
- **Do you want to be part of a talented team and a unique opportunity that blends leadership and technical skills?**
Our business is rapidly transforming and our information security capability is growing.
**The opportunity**
Reporting directly into the GM Information Security, this critical leadership role will oversee and implement robust information security governance, risk, and assurance practices through management of HESTA’s Information Security Management System (ISMS).
This role will lead the uplift of maturity and operations of HESTA’s Information Security Governance, Risk and Assurance Framework and team, and contribute to the delivery of HESTA’s information security program, strategy implementation, key initiatives and priorities.
This includes maintaining and evolving an ISO27001 based ISMS framework, ensuring alignment with the organisation's security objectives, regulatory obligations, and risk appetite.
You will play a vital part in making sure information security is implemented and operated in the way it should be, adhering to regulatory requirements as well as our own policies, standards and procedures, to keep us in check and secure
**About you**
You will be a seasoned Information Security leader that has built and lead security risk and assurance teams. You will have experience working with or working knowledge of governance tools such as One Trust or Archer GRC, and a working understanding of enterprise operations that span across Public Cloud environments, and security principles across Iaas, PaaS and SaaS. This role will also develop, govern and oversee technical security assurance capabilities across penetration testing, vulnerability management, and security controls testing.
You will have a strong understanding of security obligations for APRA regulated entities, experience and knowledge of security standards and frameworks such as NIST Cybersecurity Framework, ISO27001/2, including security controls and compliance requirements.
You will be agile in your approach, embrace impactful leadership and develop your team to be the best they can be. You will work collaboratively with key stakeholders to ensure outcomes are achieved and provide leadership and support to ensure a strong security posture is achieved and maintained in alignment with the HESTA’s Information Security Strategy.
**_We will leave all the ‘work you’ll be doing’ stuff in the PD but here’s a few things that you’ll get to enjoy working at HESTA:_**
- Your leave and time off matters, up to 6 days paid volunteer leave, up to an additional 5 days of leave over the end of year and new year period, access your LSL after 3 years Take AL at half pay, and purchase up to 2 weeks additional leave
- Your professional development matters, up to $5k per year professional development and up to 8 days professional development leave, HESTA scholarships and free access to a range of premium learning tools
- Your health and wellbeing matters, free annual flu shots and skin checks, incredible social events throughout the year and a comprehensive employee assistance program available 24/7
- Your financial wellbeing matters, financial planning support, end of year payment for all Enterprise Agreement-covered employees, incentivised Employee Referral Program and novated lease options
HESTA is a great place to work but don’t take our word for it, we were named (again) Employer of Choice for Gender Equality 2022.
-
Security Assurance Specialist
21 hours ago
Melbourne, Australia Talent Street Full time**Security Assurance Specialist - long-term contract - Federal Government Agency - Melbourne** We’re currently seeking a Security Assurance Specialist to work with a Federal Government agency in Melbourne. Under the guidance of Security Assurance Manager, the focus of the role is to conduct assurance activities with a particular focus on the Protective...
-
Melbourne, Victoria, Australia L3HHCM20 Full time $150,000 - $250,000 per yearL3Harris is dedicated to recruiting and developing high-performing talent who are passionate about what they do. Our employees are unified in a shared dedication to our customers' mission and quest for professional growth. L3Harris provides an inclusive, engaging environment designed to empower employees and promote work-life success. Fundamental to our...
-
Senior Security, Risk and Assurance Specialist
2 weeks ago
Melbourne, Victoria, Australia L3Harris Full time $120,000 - $180,000 per yearL3Harris is dedicated to recruiting and developing high-performing talent who are passionate about what they do. Our employees are unified in a shared dedication to our customers' mission and quest for professional growth. L3Harris provides an inclusive, engaging environment designed to empower employees and promote work-life success. Fundamental to our...
-
Head of Information Security
2 weeks ago
Melbourne, Australia Guild Group Holdings Ltd Full timeHead of Information Security **Head of Information Security** **Job Number**: 493552 **Work type**: Full Time Permanent **Location**: Melbourne (CBD) **Categories**: Technology **Head of Information Security** **About the role...** Reporting to the Chief Information Officer you will be part of our Group Technology function at Guild Group. The Head of...
-
Risk and Assurance Manager
1 week ago
Melbourne, Australia Bupa Full timeA full time, permanent opportunity has become available in our Risk & Assurance team within Bupa Government Contracts. This includes the Bupa ADF Health Services contract (ADFHS) which provides integrated and seamless end-to-end health support to 85,000 Australian Defence Force (ADF) personnel across 59 facilities as well as Bupa Medical Visa Services (BMVS)...
-
Information Security Manager
3 days ago
Melbourne, Australia Angle Finance Full timeAngle Finance is a leading non-bank asset finance company operating in the rapidly growing intermediary asset finance market. Our signature is Faster, Easier Finance, provided by consistent, predictable and reliable service propositions in everything we do. Our people make us remarkable. So we’ve built a culture of empowerment, enabling our people to make...
-
Risk and Assurance Coordinator
2 days ago
Melbourne, Victoria, Australia Victoria University Minimal Full time $110,100 - $123,987 per yearPlay a critical role in the management of risk and assurance activities across the Digital and Campus Services portfolio. Highly attractive remuneration package and generous leave provisions Located at our Footscray Park CampusAbout VU:At Victoria University, our aim is to be a global leader in dual-sector learning and research by 2028. Join us on the...
-
Senior Cyber Security Risk Assurance Lead
2 weeks ago
Melbourne, Victoria, Australia Telstra Full time $120,000 - $180,000 per yearEmployment TypePermanentClosing Date5 Nov :59pmJob TitleSenior Cyber Security Risk Assurance LeadJob SummaryAs a Senior Cyber Security Risk Assurance Lead, you play a critical role in ensuring that Telstra provides an industry leading secure ecosystem for employees and customers. You draw on your deep expertise and experience in cyber security and...
-
Manager, Information Security
6 days ago
Melbourne City Centre, Australia Victorian Building Authority Full timePosition overview The Manager, Information Security leads the Information Security function and is responsible for assisting business teams and projects understand information security risks, identification of treatments to manage those risks and compliance with VBA and VPDSS Information Security standards and policies. The role contributes to improving the...
-
Assurance Management Expert
4 days ago
Melbourne, Australia ANZ Banking Group Full timeAbout the role The purpose of the Technology Assurance Team is to manage and uplift awareness of operational risk caused by the use of Technology, and to embed sustainable risk management practices. The Australian Retail & Commercial Technology Assurance team is a 1st line risk assurance team who partners with Australia Retail and Australia Commercial...