Third Party Security Consultant

1 day ago


Sydney, Australia Commonwealth Bank Full time

**_You are _**_a problem solver with a strong background in Cyber Security Risk and Governance with a key focus across data minimisation. _
- **_We are _**_one of the best and most advanced Cyber Security teams in Australia. _
- **_Together we can _**_contribute to protecting the group, its customers and community. _

**Your business:
**The Technology division delivers the Group’s information technology and banking operation functions to ensure the highest levels of customer service through world-class process excellence and technology innovation. Cyber Security protects the bank and our customers from theft, loss and risk events, through effective and proactive management of cyber security, privacy and operational risk.

We support our people with the flexibility to balance where work is done with at least half your time each month connecting in office. We also have many other flexible working options available including changing start and finish times, part-time arrangements and job share to name a few. Talk to us about how these arrangements might work for you.

**Your new team**:
This role will be part of the Third-Party Security Team. The team’s primary role is, facilitating the assessment of cyber risks in relations of the Group’s third parties and engaging in activities to reduce the quantity of data held by third parties.

The Third-Party Security Team, implements, consults, and drives a variety of complex assessment and governance initiatives related to the cyber security of our third parties. The Team maintains a robust framework to ensure the Group’s information security risk objectives are being met.

**Your impact and contribution**:
This role has a focus on third parties, and you can expect to be engaging and working with your peers across the Group’s third-party landscape who engage with Commbank as well as like-minded Cyber Security professionals across the Group.

A key focus will be collaborating with cross-functional teams to implement **data minimisation **strategies, ensuring that third-party engagements adhere to the group’s security and related standards. This will involve, assessing data requirements, identifying opportunities to reduce Commbank’s data exposure with internal stakeholders, and working closely with third parties to enforce data minimisation practices.

You will also:

- Undertake security assessments to measure the design and operating effectiveness of the security controls of CommBank’ third parties.
- Identify and documenting supplier security risks and advising on the management of findings through to issue remediation.
- Provide reports and insights into findings arising from security assessments.
- Contribute to continuous improvement activities associate with the groups third party and data governance and date minimisation processes.

**We are interested in people who**:
Will bring previous experience working in security governance and security risk management with the key focus on data minimisation. You have the ability to consult with the business on complex security issues to ensure the organisation’s risk and governance objectives are met.

You will bring:

- **Proficient **across **data minimisation **, supporting data management solutions and services across the business.
- Experience across **cyber risk and governance **.
- Understanding in information security standards such as APRA CPS 234, **NIST CSF, and the ISO 27000 series **essential.
- **Process improvement mindset **and someone who is curious and keen to help others and looking to build a future career across cyber.
- Understanding of technical and procedural information security in relation to key third parties used by large financial service organisations.

We're aware of some accessibility issues on this site, particularly for screen reader users. We want to make finding your dream job as easy as possible, so if you require additional support please contact HR Direct on 1800 989 696.

Advertising End Date: 15/09/2024



  • Sydney, Australia Westpac Banking Corporation Full time

    Information Security Consultant - Third Party Governance **How will I help?** We are seeking a highly skilled and detail-oriented Information Security Consultant who will play an integral role in advising business and GroupTech units in Information Security, so as to facilitate compliance with the Westpac Group information security framework and target...


  • Sydney, Australia ING Full time

    We are looking for an enthusiastic **Information Security Analyst - Third Party Security **to join our growing Information Security team in Sydney. The Information Security team, led by the ING Australia CISO provides cyber security capabilities and consultancy to enable the entire organisation to be successful in a safe and secure way. In this **newly...


  • Sydney, Australia NSW Government -Engineering & Maintenance Full time

    **About us** At Sydney Trains our vision is to keep Sydney moving by putting the customer at the centre of everything we do. We work at the heart of local communities and integrate cutting edge technology to deliver efficient rail services which exceed expectations and support a rapidly growing economy. Sydney Trains also operate the Rail Operations Centre...


  • Sydney, New South Wales, Australia KPMG Australia Full time

    Senior Consultant, Third Party Risk Management Senior Consultant, Third Party Risk Management 1 day ago Be among the first 25 applicants Get AI-powered advice on this job and more exclusive features.Our Governance, Risk and Compliancepractice is the advisory division of choice for many of Australia's leading organisations across financial services, corporate...


  • Sydney, New South Wales, Australia beBeeRisk Full time $120,000 - $170,000

    Job OverviewWe are seeking an experienced professional to support our Third-Party Risk Management practice. As a Senior Consultant, you will play a critical role in delivering market-leading advisory services.About the RoleYou will work closely with clients to increase their third-party risk capabilities.You will support the facilitation of workshops to...


  • Sydney, Australia Commonwealth Bank Full time

    **Manager, Third Party Cyber Incident Response** **See yourself in our team**: Cyber Security protects the bank and our customers from theft, loss and risk events, through effective and proactive management of cyber security, privacy, fraud, physical security and operational risk. **Do work that matters**: The Third Party Cyber Incident Management team...


  • Sydney, New South Wales, Australia KPMG Australia Full time

    This is a Senior Consultant, Third Party Risk Management role with KPMG Australia based in Sydney, NSW, AU == KPMG Australia ==Role Seniority - seniorMore about the Senior Consultant, Third Party Risk Management role at KPMG AustraliaJob DescriptionOur  Governance, Risk and Compliance practice is the advisory division of choice for many of Australia's...


  • Sydney, New South Wales, Australia beBeeRiskManagement Full time $180,000 - $220,000

    Job OverviewThe role of Third Party Risk Analyst plays a critical part in supporting the effective implementation of the Third Party Risk Management Policy. This includes identifying, assessing, mitigating and monitoring risks associated with our Third Party arrangements.Key Responsibilities:Collaborate with various business units to implement and embed...


  • Sydney, Australia The Star Entertainment Group Full time

    The Star Entertainment Group (TSEG) is a publicly listed company on the ASX. Our purpose is to create fun at trusted destinations and our aim is to deliver sustainable outcomes for our guests, our Team Members, the communities in which we exist and our shareholders. We do this by providing entertainment, gaming, and leisure experiences in a safe,...


  • Sydney, New South Wales, Australia beBeeProcurement Full time $90,000 - $120,000

    Third Party Management SpecialistJob Summary:Collaborate with Business Banking teams in identifying, acquiring, and onboarding new suppliers and distribution partners to ensure procurement compliance with internal policies, processes, and frameworks.Develop and execute annual calendars of third-party management activities, encompassing contract updates, risk...