
Cyber Governance Risk and Compliance Specialist
5 hours ago
Role: Cyber Governance Risk and Compliance Specialist
Salary: 100,000 AUD plus SUPERANNUATION
Job Type: Full-time, Permanent
Working Hours: 38 hours per week
Location: Melbourne, Victoria, Australia
Key Responsibilities
- Lead the governance, risk, and compliance (GRC) function for cyber security, ensuring alignment with organisational objectives, regulatory requirements, and industry best practices.
- Develop, implement, and manage enterprise-wide information security governance, risk management, and compliance programs.
- Ensure adherence to applicable Australian and international cybersecurity laws, regulations, and standards
- Plan, implement, and conduct internal and external audits for various standards, including ISO 27001, ISO 22301, ISO 27701, SOC 2, and NIST frameworks.
- Develop, implement, and maintain cyber security policies, standards, guidelines, and procedures, including database-related security documentation.
- Implement and administer database documentation, guidelines, policies, and procedures to ensure data integrity, confidentiality, and availability.
- Test database systems and upgrades, including debugging, issue reproduction, logging, tracking, and resolving all identified problems in accordance with approved quality testing scripts, procedures, and processes.
- Conduct and maintain comprehensive cyber risk assessments and maintain an up-to-date risk register.
- Lead cyber control assurance and testing activities to validate control effectiveness.
- Perform third-party security risk assessments and contractual security clause reviews.
- Manage compliance with internal security policies and regulatory requirements, ensuring evidence-based audit readiness.
- Oversee security exemptions, waivers, and cyber maturity assessments.
- Deliver actionable cyber security reporting, dashboards, and key risk metrics to executives and stakeholders.
- Collaborate with IT, Legal, Audit, and business units to embed GRC requirements into technology and operational processes.
- Support continuous improvement of governance frameworks, processes, and toolsets.
Key Skills & Experience
- Degree in Information Technology, Computer Science, Cybersecurity, or related discipline; or equivalent professional experience.
- 8+ years' experience in information security, with a strong focus on governance, risk, and compliance.
- Proven track record of planning, implementing, and auditing security frameworks, including ISO 27001, ISO 22301, ISO 27701, SOC 2, and NIST.
- Demonstrable experience conducting cyber risk assessments, managing risk registers, and overseeing remediation activities.
- In-depth understanding of common security frameworks and regulations, including AESCSF, ISO 27001, Essential Eight.
- Strong knowledge and hands-on experience in Network, Cloud, and Virtualisation platforms.
- Practical experience with EDR, MDR, DLP, email security, and vulnerability management solutions.
- Familiarity with GRC platforms and related reporting tools.
- Experience in database security governance, including implementing documentation, policies, and procedures.
- Experience with database system testing (debugging, reproducing, tracking, and resolving issues) in line with quality assurance processes.
- Excellent analytical, problem-solving, and communication skills, with the ability to convey complex concepts to both technical and non-technical audiences.
- Relevant industry certifications (CISSP, CISA) – mandatory.
- Experience working in regulated industries such as energy/utilities, financial services, or government is advantageous.
-
Melbourne, Victoria, Australia Sjog Full timeCyber Governance, Risk and Compliance Manager page is loaded## Cyber Governance, Risk and Compliance Managerlocations: Melbourne, Victoriatime type: Full timeposted on: Posted Todaytime left to apply: End Date: September 26, 2025 (14 days left to apply)job requisition id: JR-13137**Your role at St John of God** **Health Care**This is an exciting...
-
Melbourne, Victoria, Australia Sjog Full timeCyber Governance, Risk and Compliance Manager page is loaded## Cyber Governance, Risk and Compliance Managerlocations: Melbourne, Victoriatime type: Full timeposted on: Posted Todaytime left to apply: End Date: September 26, 2025 (14 days left to apply)job requisition id: JR-13137**Your role at St John of God** **Health Care**This is an exciting...
-
Cyber Governance, Risk And Compliance Manager
2 weeks ago
Melbourne, Victoria, Australia St John Of God Health Care Full timeYour role at St John of God Health CareThis is an exciting time to join, as we are digitalising our future through a major investment in technology transformation to enhance patient care and experience. Our Digital Security team is at the forefront of this journey ensuring our systems, data, and people remain secure.About the RoleThe Head of Cyber GRC is a...
-
Cyber Governance, Risk and Compliance Manager
2 weeks ago
Melbourne, Victoria, Australia St John of God Health Care Full timeCyber Governance, Risk and Compliance ManagerHealth Care This is an exciting time to join, as we are digitalising our future through a major investment in technology transformation to enhance patient care and experience. Our Digital Security team is at the forefront of this journey ensuring our systems, data, and people remain secure.OverviewSt John of God...
-
Cyber Governance, Risk and Compliance Manager
2 weeks ago
Melbourne, Victoria, Australia St John of God Health Care Full timeCyber Governance, Risk and Compliance ManagerHealth Care This is an exciting time to join, as we are digitalising our future through a major investment in technology transformation to enhance patient care and experience. Our Digital Security team is at the forefront of this journey ensuring our systems, data, and people remain secure.OverviewSt John of God...
-
Cyber Governance, Risk and Compliance Manager
2 weeks ago
Melbourne, Victoria, Australia St John of God Health Care Full time $172,700 - $191,900 per yearYour role at St John of God Health CareThis is an exciting time to join, as we are digitalising our future through a major investment in technology transformation to enhance patient care and experience. Our Digital Security team is at the forefront of this journey ensuring our systems, data, and people remain secure.St John of God Health Care (SJOG) are...
-
Governance Risk and Compliance Specialist
2 weeks ago
Melbourne, Victoria, Australia Slade Group Full timeOverviewGovernance Risk and Compliance SpecialistJoin to apply for the Governance Risk and Compliance Specialist role at Slade Group.About the roleAre you a strategic thinker with an analytical mind and a passion for compliance? We are seeking to hire a GRC specialist to help facilitate AHSA's compliance and risk functions and continue to drive best practice...
-
Governance Risk and Compliance Specialist
2 weeks ago
Melbourne, Victoria, Australia Slade Group Full timeOverviewGovernance Risk and Compliance SpecialistJoin to apply for the Governance Risk and Compliance Specialist role at Slade Group.About the roleAre you a strategic thinker with an analytical mind and a passion for compliance? We are seeking to hire a GRC specialist to help facilitate AHSA's compliance and risk functions and continue to drive best practice...
-
Cyber Security Compliance Specialist
2 weeks ago
Melbourne, Victoria, Australia Modis Full timeSeeking mid- level to Cyber Security Compliance Specialist for 12 months contract plus extension to work on federal government's compliance framework and standards. _**About the Company**Join a leading Government Department that focusses on assisting the community, to work on a major transformation project.**Location : Geelong****This role**As Cyber Security...
-
Chief Cyber Security Compliance Officer
2 weeks ago
Melbourne, Victoria, Australia beBeeCyberCompliance Full time $125,000 - $175,000Cyber Security Compliance Specialist Role Overview\This role requires expertise in Cyber Security Governance, Risk and Compliance with knowledge of relevant government security frameworks.\\Conduct Cyber Compliance risk assessments to identify potential threats and vulnerabilities.\Design and maintain the controls matrix in alignment with multiple compliance...