Governance, Risk, and Compliance Analyst

2 days ago


Melbourne, Australia Staffx Pty Ltd Full time

**About the Company**

This IT Services and IT Consulting company is an Australian company that has core competencies in banking and financial services. They work with leading and local companies across the APAC region.

Their highly skilled, talented IT specialists are experts in their fields, and employees are placed in key value-adding roles with our customers on strategic projects to strengthen their core teams. The company is fiercely proud and supportive of the talented people they bring on board to join their company. They endeavour to find you challenging and fulfilling work that converts passion into action. They actively support and drive skills development to enable growth opportunities.
- Competitive Salary
- Flexible Work Arrangements
- Generous Benefits
- Opportunities for Growth
- Collaborative Culture

An opportunity has arisen for the Governance, Risk, and Compliance Analyst role. You will work with a range of stakeholders across the business providing information security compliance and risk management support and guidance.

**About the Governance, Risk, and Compliance Analyst Role**:
In the Governance, Risk, and Compliance Analyst Role, you will manage cyber security policies and standards, ensure they are periodically updated, and aligned them with the overall Banking Information Security Policy framework. You will be reporting to the Manager for Information Security.

**Key responsibilities**:

- Provide senior leadership support and guidance to other Governance, Risk and Compliance Analysts (GRC).
- The GRC analysts will report into this senior role for the duration of the contract.
- Maintain the Bank Information Security Framework in alignment with legal and regulatory requirements.
- Ensure and contribute to regulatory compliance including APRA CPS234
- Develop, maintain, and review security governance documentation including policies, procedures and guidelines for cyber security.
- Provide guidance to ensure compliance with information security policies and standards.
- Maintain the Information Security Risk Register
- Liaise with information system owners to support them in maintaining risk and compliance protocols and progress risk treatment plans.
- Contribute to technology strategies and product selections.
- Ensure security controls are implemented and tested in alignment with banking information security policies and standards.
- Play a lead role in governance, risk and compliance information security reporting.
- Manage third party risk including the third-party register, third-party assessments and third-party reporting.
- Identify and appropriately manage security risks and drive opportunities to improve security within the Bank environment.
- Build strong relationships with internal and external stakeholders to maintain and improve service to business users and enhance knowledge and information sharing.

To succeed in a Governance, Risk, and Compliance Analyst role, you should have at least one or more related certifications such as CISSP, CEH, CISA, CISM, etc. You must have the full working rights in Australia.

**Key requirements**:

- Degree in Computer Science or a related field
- Solid knowledge of information security principles and practices
- At least 4+ years’ experience in a combination of information security risk management, compliance, governance, and IT Audit
- Demonstrated experience in performing information security audits and control assurance activities across security controls.
- Demonstrated experience in performing third-party security assessments and an understanding of vendor security risk management and assessment practices
- Understanding of security risk and information security vulnerabilities
- Exposure and understanding of cyber security standards NIST Cyber Security Framework, ISO27001, PCI DSS
- Sound knowledge of contemporary information security management trends, tools, practices, and concepts
- Familiarity with the banking industry
- Understanding of APRA Prudential Standards relating to cyber security
- Strong knowledge of Cyber Security Infrastructure technologies, best practices, and broad knowledge of network security concepts
- An understanding and experience with third-party risk management
- An understanding of security technologies that are commonly used to detect, contain or prevent security incidents such as IDS/IPS, Endpoint Security, Firewalls, Content Inspection, and SIEM
- Experience in the development, operationalization and maintenance of security policies, procedures, and standards
- Strong communications skills - both verbal and written, being able to share knowledge and educate others.

If you are driven, determined, and want to take the next step in your career, this is the role for you. Great career progression opportunities await the right person in this exciting Governance, Risk and Compliance Analyst job.



  • Melbourne, Australia Arup Full time

    Governance, Risk and Compliance Analyst - Melbourne, Victoria, Australia _ **New** 2 additional locations Digital TechnologyCorporate Services  MEL0001GX - Joining Arup Arup’s purpose, shared values and collaborative approach has set us apart for over 75 years, guiding how we shape a better world. As part of a diverse and collaborative global...

  • IT Governance Risk

    2 days ago


    Melbourne, Australia Head Office St Kilda Rd Full time

    **IT GRC Analyst** Healthscope is a leading private provider of integrated health services in Australia. We are focused on providing exceptional services to our customers in our private hospitals throughout the country. The IT / Cyber GRC Analyst is a full-time permanent position and a key member of the Cyber Security IT GRC team helping to reduce the risk...


  • Melbourne, Australia Australian Unity Full time

    **What Makes Us, Us** We want to be the most trusted wellbeing company in Australia, and this means our focus on wellbeing starts with our people. We support our employees’ Real Wellbeing so that they can better support our members’ and customers’ wellbeing journey. At Australian Unity we’re for real wellbeing. For us, real wellbeing means so much...

  • Investment Risk

    4 days ago


    Melbourne, Australia FE fundinfo Full time

    Play a key role in ensuring sound investment governance, risk oversight, and portfolio integrity across a diverse range of managed account portfolios in one of Australia’s leading investment research and consulting firms. This role offers a balance of analytical depth, governance responsibility, and client-focused problem solving, ideal for someone...


  • Melbourne, Victoria, Australia Future Fund Full time $70,000 - $120,000 per year

    About Future FundAt the Future Fund, we're for future minds - like yours. The new investors and creators who thrive on different thinking and doing it together. Those who glimpse opportunity before it strikes and step up every day to grab it.The Future Fund is Australia's Sovereign Wealth Fund, managing over $310 billion across seven public asset funds with...


  • Melbourne, Victoria, Australia MessageXchange Full time $90,000 - $120,000 per year

    About the roleWe are looking for a passionate and motivated Risk and Compliance Analyst to join our dynamic and growing team. You will have a wide range of knowledge to detect and minimise any adverse impacts to the company these may have. You will work closely with all teams and levels of management to identify any potential risks and educate other...


  • Melbourne, Victoria, Australia Aware Super Full time $80,000 - $120,000 per year

    Your SUPER career starts hereAs one of Australia's largest profit-for-members superannuation funds, we always remember whose money it is and whose future we're looking after. We work to reimagine a new way forward for our 1.1 million members and their communities. Each other. And our world.Sound good? Learn more about us and what we do at Your New RoleAs the...


  • Melbourne, Australia Aware Super Full time

    Want to be a force for good? At Aware Super we believe that we do well through doing good. Finding ways to support our communities is part of our DNA and we have a track record of being bold and breaking new ground. We have always believed that we have a responsibility to invest in ways that deliver strong returns for members at the same time as improving...

  • Governance, Risk

    12 hours ago


    Melbourne, Victoria, Australia NextGen HR Pty Ltd Full time $80,000 - $120,000 per year

    Governance, Risk & Compliance (GRC) AnalystWhat is on offer?Career development in a leading MSPFully remote with an opportunity to meet the Queensland-based team when requiredFull employee welcome kitBirthday gift voucherQuarterly team building activities / company eventsEnergetic and positive work culture – where people enjoy their job, have a laugh, and...


  • Melbourne, Victoria, Australia Elysium Digital Full time $104,000 - $130,878 per year

    We are seeking a Data Analyst to join our Data Governance, Risk & Compliance team to focus ensuring data sets are compliant and identifying areas of risk and non complianceTypical Responsibilities IncludeAnalyze and manipulate data sets to ensure integrity, security, and regulatory complianceReview data streams, sources, and pipelines to identify...