Cyber Security Grc Specialist

1 week ago


Melbourne, Australia BlueScope Full time

**Job Description**:
The Global Cyber Security GRC Specialist is an integral part of our global security team and plays a critical part in BlueScope’s purpose: To create and inspire smart solutions in steel, to strengthen our communities for the future.

You will support cyber security governance, risk, compliance and assurance capabilities across the global footprint. This role will contribute to the establishment and management of a well-structured GRC capability that will uplift and maintain BlueScope’s maturity to proactively safeguard the organisation from cyber related threats. The role reports to the Global Head of Security GRC and Architecture.

**What you will do**

You will contribute to BlueScope’s GRC function to ensure cyber risks are effectively and proactively managed within agreed risk tolerances in compliance with appropriate frameworks, policies, standards and best practices.
- Develop, maintain and review security governance documentation including frameworks, policies, standards, procedures and guidelines
- Provide guidance to ensure compliance with information security policies and standards
- Identify and manage security risks and liaise with key stakeholders to support them in maintaining risk and compliance protocols and progress risk treatment plans
- Contribute to roadmap and strategy development and product selection
- Ensure security controls are implemented in alignment with BlueScope’s cyber security policies and standards
- Establish key GRC processes and implement supporting tools
- Manage third party risk management tools, processes and reporting
- Manage regular governance, risk and compliance information security reporting
- Build strong relationships with internal and external stakeholders to maintain and improve service to business users and enhance knowledge and information sharing.

You will work and develop meaningful relationships with global leaders, cross-functional teams, service providers and vendors. Utilising your strong process knowledge, you’ll manage key governance and assurance processes to ensure that BlueScope both attains and maintains the agreed levels of maturity. This includes conducting security reviews, risk reviews, compliance and maturity assessments and ensure that metrics are collated and reported at both the operational and senior executive levels.

**What are we looking for?**

We’re expecting you to be a highly collaborative and influential communicator, who can build trust and meaningful relationships across the organisation. You will demonstrate a forward-thinking approach, with the ability to develop, manage and continually improve GRC processes and capabilities to protect BlueScope’s global security environment.

We’re seeking a professional with demonstrated experience in a combination of information security risk management, compliance, governance and assurance, with experience in managing and establishing a GRC capability supported by industry standard tools and processes.

You will have a proven track record in all aspects of Cyber GRC, with a strong focus on establishing and managing processes and supporting tools, including the ability to collate and report on key metrics and other measures to clearly articulate risks and compliance.

Experience with common frameworks such as NIST and ISO is mandatory, in addition to experience developing key processes and setting up and managing supporting GRC tools and third party vendor management.

Location is **Wollongong, Sydney or Melbourne.



  • Melbourne, Victoria, Australia More Telecom Full time $60,000 - $90,000 per year

    THE COMPANY:More ) and Tangerine ) are two fast-growing challenger brands in the telecommunications space, offering nbn, mobile and fixed voice products to consumers and small businesses right across Australia. We're rapidly expanding and on the lookout for a Cyber Security GRC Associate.As the Cyber Security GRC Associate at More Telecom and Tangerine...


  • Melbourne, Victoria, Australia More Full time $60,000 - $120,000 per year

    The CompanyMore ) and Tangerine ) are two fast-growing challenger brands in the telecommunications space, offering nbn, mobile and fixed voice products to consumers and small businesses right across Australia. We're rapidly expanding and on the lookout for a Cyber Security GRC Associate.As the Cyber Security GRC Associate at More Telecom and Tangerine...


  • Melbourne, Victoria, Australia Aurec Full time $104,000 - $130,878 per year

    Cyber Security GRC Consultant6 month contractMelbourne CBDHybridCritical role responsible for driving key cybersecurity initiatives and supporting strategic decision making. You will be a key contributor to the organisation's cyber resilience, working to uplift security maturity, develop critical documentation, and shape future policy. This is a unique...


  • Melbourne, Victoria, Australia Intellihub Group Full time $120,000 - $180,000 per year

    Company DescriptionIntellihub is committed to simplifying the energy transition – as a leader in smart metering across ANZ and innovator of solar, battery, EV, virtual power plant and home electrification solutions.With strong leadership supporting you, a career at Intellihub is defined by flexibility, growth and a deeply fulfilling experience. We're...

  • Grc Cyber Analyst

    5 days ago


    Melbourne, Australia Arup Full time

    **Joining Arup** Arup’s purpose, shared values and collaborative approach has set us apart for over 75 years, guiding how we shape a better world. As a governance, risk and compliance (GRC) cyber analyst for our growing global cyber security team you will help protect Arup’s digital infrastructure and data from cyber-attack. You will help to assess...

  • Grc Cyber Analyst

    20 hours ago


    Melbourne, Australia Arup Full time

    A career at Arup offers you the chance to make a positive difference in the world. Independently owned and independently minded, we attract a diverse mix of people to work on ground-breaking global projects. We have an ambitious commitment to be the digital leader in the built environment and have digital teams and experts all over the world, who collaborate...


  • Melbourne, Victoria, Australia Leidos Australia Full time $100,000 - $150,000 per year

    DescriptionWe're a 'Family Friendly' certified workplace – we understand the often many and varied roles our team members need to play within their own unique family setting and actively support them.Our team feel Leidos is a great place to work. Learn more about our culture and benefits by visiting us here Do Work That MattersLeidos Australia delivers IT...

  • Cyber GRC Analysts

    2 weeks ago


    Melbourne, Victoria, Australia Talent Full time $90,000 - $120,000 per year

    4 x Cyber GRC Analysts - NV1 Clearance - SCTY 5 - Flexible Location (Australia)We're looking forCyber Governance, Risk & Compliance Analyststo join Defence programs across Australia (work can be based anywhere in the country).You'll work with project teams, engineers and architects to analyse and document cyber security risks, develop Security Documentation...


  • Melbourne, Victoria, Australia Leidos Full time $120,000 - $180,000 per year

    We're a 'Family Friendly' certified workplace – we understand the often many and varied roles our team members need to play within their own unique family setting and actively support them.Our team feel Leidos is a great place to work. Learn more about our culture and benefits by visiting us here Do Work That MattersLeidos Australia delivers IT and...


  • Melbourne, Australia Naviro Pty Ltd Full time

    Hybrid work setting - Melbourne office - Rewarding 6 month contract - Showcase your Cyber Security Operations and GRC capability Our client is an internationally leading cyber security company who are seeking an additional security analyst for an upcoming project. Integrating into an existing team, you will focus on providing security operations services...