GRC Manager

6 days ago


Melbourne, Victoria, Australia WebBeds Full time $80,000 - $120,000 per year

Who are Web Travel Group?

The Web Travel Group, an ASX 200 listed company (ASX: WEB), is a global B2B organisation servicing the travel industry, connecting hotels and other travel sellers to a diverse network of travel buyers all over the world through our trade only digital travel marketplace brand – WebBeds.

In September 2024, we changed our name from Webjet Limited to the Web Travel Group as part of a Demerger. The Webjet Group (Webjet B2C - comprising of Webjet OTA, GoSee, Trip Ninja) demerged from the Web Travel Group, creating two independent and simplified companies, improving our ability to pursue independent strategic priorities and growth agendas relevant to our businesses.

Find out more about the Web Travel Group at:

How will you make an impact?

Join Web Travel Group as a GRC Consultant and take the lead in shaping and strengthening our compliance and security frameworks. You will play a lead role in key programs such as PCI-DSS, ISO 27001, and NIST CSF. You'll manage audits, conduct risk assessments, and support policy development—ensuring our compliance posture stays strong and future-ready.

Key elements to the role include:

  • Maintain and lead our compliance programs including PCI-DSS, ISO 27001, NIST CSF etc.
  • Manage audit programs – liaise with third-party auditors.
  • Conduct risk assessments and gap analyses to understand key threats to our organisation.
  • Select and implement an appropriate compliance tool to manage our compliance programs.
  • Facilitate third-party risk management, vendor due diligence, and contract compliance.
  • Support development of our security and compliance policies and procedures.
  • Monitor and report on key risk indicators (KRIs), compliance metrics, and audit findings.
  • Stay current on emerging regulatory trends and best practices in risk and compliance.
  • Following up with key stakeholders on open risks and ensuring appropriate mitigations are in place.

The skills we would love to see in your suitcase

  • Bachelor's degree in a related field i.e. Commerce, IT, Information Security, Risk Management, Finance.
  • 2 years knowledge of frameworks such as:
  • ISO 27001 / 31000
  • NIST CSF
  • PCI-DSS
  • Strong analytical, writing, and presentation skills.
  • Ability to manage multiple projects and interact with both technical and non-technical stakeholders.
  • Professional certification such as CISA, CRISC, ISO Lead Auditor/Implementer are preferred.
  • Consulting experience is a plus.

Why choose us as your next destination?

We are super proud of our dedicated team of friendly, energetic & passionate professionals. Our people are key to the success of our business & everybody at WebBeds has their own unique role to play as we continue to drive the company forward.

Over 50 different languages are spoken by our workforce, but whether working from offices in Dubai or London or out in the field in Johannesburg or Buenos Aires, we all share the common goal to take pride in what we do & to deliver our partners with unbeatable service & support.

International highly skilled group of experts from all around the globe

Dynamic environment with the chance to grow, influence & impact change
Disruptive, fast-growing market leader within travel & endless possibilities
Culture built on collaboration empowerment and innovation

Find out more about the WebBeds business at - #LI-Hybrid


  • Senior GRC Analyst

    4 days ago


    Melbourne, Victoria, Australia Emmbr Full time $90,000 - $120,000 per year

    Newly created Sr GRC Analyst role, Melbourne CBD, HybridWork closely with CISO, broad exposure, growing environmentPathway to become a manager and lead a small teamOur client is seeking a Senior GRC Analyst to lead governance, risk, and compliance across the organisation. The role ensures policies and controls align with ISO 27001, ISM, and broader...


  • Melbourne, Victoria, Australia Information Security Consultants Full time $90,000 - $120,000 per year

    Cyber GRC Consulting & Compliance Location:Remote (with travel across Australia & New Zealand)Company:Information Security Consultants (ISC)Employment Type:Full-timeAbout ISCInformation Security Consultants (ISC) is a specialist cybersecurity consulting firm supporting organisations across Australia and New Zealand. We deliver tailored solutions in...


  • Melbourne, Victoria, Australia Intellihub Full time $120,000 - $180,000 per year

    Company DescriptionIntellihub is committed to simplifying the energy transition – as a leader in smart metering across ANZ and innovator of solar, battery, EV, virtual power plant and home electrification solutions.With strong leadership supporting you, a career at Intellihub is defined by flexibility, growth and a deeply fulfilling experience. We're...


  • Melbourne, Victoria, Australia Intellihub Group Full time $120,000 - $180,000 per year

    Company DescriptionIntellihub is committed to simplifying the energy transition – as a leader in smart metering across ANZ and innovator of solar, battery, EV, virtual power plant and home electrification solutions.With strong leadership supporting you, a career at Intellihub is defined by flexibility, growth and a deeply fulfilling experience. We're...


  • Melbourne, Victoria, Australia More Telecom Full time $60,000 - $90,000 per year

    THE COMPANY:More ) and Tangerine ) are two fast-growing challenger brands in the telecommunications space, offering nbn, mobile and fixed voice products to consumers and small businesses right across Australia. We're rapidly expanding and on the lookout for a Cyber Security GRC Associate.As the Cyber Security GRC Associate at More Telecom and Tangerine...


  • Melbourne, Victoria, Australia More Full time $60,000 - $120,000 per year

    The CompanyMore ) and Tangerine ) are two fast-growing challenger brands in the telecommunications space, offering nbn, mobile and fixed voice products to consumers and small businesses right across Australia. We're rapidly expanding and on the lookout for a Cyber Security GRC Associate.As the Cyber Security GRC Associate at More Telecom and Tangerine...


  • Melbourne, Victoria, Australia Robert Walters Full time $120,000 - $180,000 per year

    Our client is a leading organisation undertaking a significant transformation program to enhance its governance, risk, and compliance frameworks. As part of this initiative, they are uplifting their Protecht system to serve as the key enabling technology for their enhanced risk and compliance capabilities. They are seeking an experienced professional to lead...


  • Melbourne, Victoria, Australia Triskele Labs Full time $80,000 - $120,000 per year

    Triskele Labs are one of the leading providers of cybersecurity services in Australia. We assist clients to reduce their risk of a cyber compromise through the delivery of risk-considered controls.Triskele Labs are one of the last remaining boutiques in Australia. We are currently the largest CREST Registered Penetration Testing company in Melbourne and one...

  • Cyber GRC Analysts

    6 days ago


    Melbourne, Victoria, Australia Talent Full time $90,000 - $120,000 per year

    4 x Cyber GRC Analysts - NV1 Clearance - SCTY 5 - Flexible Location (Australia)We're looking forCyber Governance, Risk & Compliance Analyststo join Defence programs across Australia (work can be based anywhere in the country).You'll work with project teams, engineers and architects to analyse and document cyber security risks, develop Security Documentation...

  • GRC Analyst

    2 days ago


    Melbourne, Victoria, Australia Kinetic Full time $104,000 - $130,878 per year

    Data Analyst | Data MigrationMultiple 12 Month Fixed-Term ContractsAbout the RoleKinetic is on a major cyber security uplift journey. This is a greenfield role: you will help build Kinetic GRC capability from the ground up, establishing risk registers, compliance calendars, policies, and vendor risk frameworks where none currently exist.The role is hands-on...