Cyber Sec Governance

2 days ago


Sydney, Australia University of New South Wales Full time

**Job no**: 528006
**Work type**: full time
**Location**: Sydney, NSW
**Categories**: Information Technology, Cyber
- Employment Type: full time continuing role as a Cyber Security Governance and Compliance Manager
- Excellent salary package including superannuation
- Location: UNSW Kensington Campus (Hybrid Working Opportunities)

**About UNSW**:
UNSW isn’t like other places you’ve worked. Yes, we’re a large organisation with a diverse and talented community, a community doing extraordinary things. Together, we are driven to be thoughtful, practical, and purposeful in all we do. Taking this combined approach is what makes our work matter. If you want a career where you can thrive, be challenged and do meaningful work, you’re in the right place.

**Accountabilities**:

- Lead the strategic oversight and continuous improvement of the cyber security policy framework, ensuring alignment with industry standards and regulatory requirements.
- Develop, implement and maintain cyber security policies, standards, and guidelines in response to emerging risks and changes in the threat landscape.
- Lead the quarterly Cyber Security Standards Review process, ensuring policies and standards remain current and relevant to organisational needs.
- Oversee the operationalisation and effectiveness of the policy compliance attestation process, ensuring compliance across the University.
- Manage security baselines and associated policies, ensuring their alignment with the organisation’s security posture and strategic goals.
- Lead the development and implementation of cyber security compliance strategy and framework, ensuring ongoing compliance with DISP, SOCI, ISO 27001, and other regulatory requirements.
- Oversee bi-annual compliance assessments, ensuring that findings are reported, agreed, and remediated through strategic action plans.
- Provide leadership and support for the DISP accreditation and ISO 27001 certification processes, ensuring full compliance and successful certification.
- Manage the University’s compliance with the Security of Critical Infrastructure Act (SOCI) and ensure that PCI-related obligations are continuously met.
- Ensure that all regulatory requirements are tracked, monitored, and integrated into the University's broader cyber security governance strategy.
- Oversee internal and external audit engagements, including NSW Audit Office audits, DISP, SOCI, and other compliance audits, ensuring that all requirements are met, and corrective actions are implemented.
- Lead the strategic coordination of cyber security insurance audits and renewals, ensuring all necessary documentation and compliance requirements are fulfilled.
- Establish and manage key operational metrics for monitoring cyber security audit and insurance processes, ensuring continuous improvement and accountability.
- Lead and mature the Cyber Security GRC (Governance, Risk, and Compliance) Communities of Practice, fostering collaboration and best practice sharing across faculties and divisions.
- Represent the cyber security function at key governance forums, such as the weekly Change Advisory Board (CAB) and monthly Business Partners (BP) forums, ensuring cyber security governance is integrated into decision-making processes.
- Lead the strategic maturity uplift of the Cyber Security Exemption Process, ensuring that all exemptions are justified, managed, and periodically reviewed for ongoing relevance.
- Provide strategic cyber security consulting and advisory services to the Cyber Security Enablement Program and other key initiatives across the University, ensuring alignment with governance and compliance standards.
- Oversee the management of the Security Service Catalogue, ensuring it is regularly updated and accessible.
- Oversee and manage the Asset register in Cyber Security GRC Platform, ensuring all new assets are properly assessed and approved within the cyber security governance framework.
- Align with and actively demonstrate the Code of Conduct and Values
- Ensure hazards and risks psychosocial and physical are identified and controlled for tasks, projects, and activities that pose a health and safety risk within your area of responsibility.

**Who you are**:

- Relevant tertiary qualification with extensive experience (7+ years) in cyber security governance, risk management, and compliance, or equivalent competence gained through any combination of education, training and experience.
- Strong knowledge and experience with compliance frameworks, including DISP, SOCI, ISO 27001, PCI-DSS, and other relevant regulatory requirements.
- Proven track record of managing cyber security audits and certifications, with experience coordinating both internal and external audit activities.
- Demonstrated leadership in developing and enforcing cyber security policies, standards, and regulatory requirements across complex organisations.
- Strong strategic and project management skills, with the ability to lead multiple governa



  • Sydney, Australia SEC Newgate Full time

    At **SEC Newgate**, our people are what set us apart and are at the heart of our success. We create an environment that stimulates and rewards our people, where staff are supported to contribute ideas and embrace opportunities to achieve their personal goals. We look for people who are curious, self-motivated, and collaborative. If you are like-minded and...


  • Sydney, Australia Vertex Cyber Security Full time

    **Core Duties**: The Cyber Security Consulting Team Lead manages the Consulting Team to deliver end-to-end cyber security consulting services, undertaking duties that include, but are not limited to: - Conducting comprehensive cyber security risk assessments and audits of client technical environments (cloud and on-premise) and policies and procedures,...

  • Credit Controller

    2 weeks ago


    Sydney, Australia SEC Newgate Full time

    **Credit Controller** At SEC Newgate, our people are what set us apart and are at the heart of our success. We create an environment that stimulates and rewards our people, where staff are supported to contribute ideas and embrace opportunities to achieve their personal goals. We look for people who are curious, self-motivated and collaborative. If you are...


  • Sydney, New South Wales, Australia Skylight Cyber Security Full time $120,000 - $180,000 per year

    About Skylight CyberAt Skylight Cyber, we're young, transparent, and culture-focused boutique cyber security firm specialising in providing high-end services to enterprises globally. We provide our customers with world class expertise to build and continuously evolve an effective security stack across people, process, and technology.We thrive and are...


  • Sydney, New South Wales, Australia Stockland Full time $120,000 - $180,000 per year

    Company description: At Stockland we are a community delivering outcomes that benefit the community at large. We work collaboratively and inclusively, building strong working relationships. Our portfolio is diverse and so are the opportunities for professional and career development. We are committed to providing our people with broad experiences to build a...

  • Cyber Governance

    2 weeks ago


    Sydney, Australia AMP Limited Full time

    The Cyber Governance & Metrics Analyst is responsible for assisting with AMP’s internal processes that provide assurance to our stakeholders that their information assets are appropriately secured. **How you will make an impact** - Lead monthly governance meetings with senior stakeholders, to ensure they are meeting the Cyber metric targets for their...

  • Executive Assistant

    1 week ago


    Sydney, Australia SEC Newgate Full time

    At **SEC Newgate**, our people are what set us apart and are at the heart of our success.We create an environment that stimulates and rewards our people, where staff are supported to contribute ideas and embrace opportunities to achieve their personal goals. We look for people who are curious, self-motivated and collaborative. If you are like-minded and are...


  • Sydney, Australia King & Wood Mallesons Full time

    New role to the firm - Enhance what we have and take the next step in your career- With a few years experience behind you, you will be looking to introduce what you’ve learnt in developing and implementing cyber governance frameworks and processes, ensuring that we meet our information security and compliance goals.- As a leading law firm, we actively seek...


  • Sydney, Australia Commonwealth Bank Full time

    **Executive Manager Group Cyber Governance and Compliance** - **_You are _**_a passionate Cyber Security Leader with strong expertise in governance, risk and compliance and a demonstrated capability to lead and develop people _ - **_We are one _**_of the best and most advanced Cyber Security teams in Australia _ - **_Together we can _**_contribute to...


  • Sydney, New South Wales, Australia AI Talent Full time $70,000 - $120,000 per year

    About the RoleWe are seeking an experienced Cyber Governance, Risk, and Compliance (GRC) Specialist to lead the implementation and continuous improvement of our organisation's cybersecurity governance framework. This position is pivotal in ensuring that our systems, data, and infrastructure adhere to internal policies and external regulatory obligations,...