Information Security Governance, Risk and Compliance Specialist

2 days ago


Sydney, New South Wales, Australia SG Fleet AU Full time $80,000 - $120,000 per year

Who We Are
We are a financial services company that specialises in fleet management, vehicle leasing and salary packaging, with a presence across Australia, the UK and NZ. A total portfolio under management of $2.5 Billion and over 1200 employees.

OUR CULTURE
When adding a new member to the SG Fleet Group family, we look for people who embody our values, allowing us to provide an unparalleled customer experience. You will have the opportunity to thrive in a positive and fun atmosphere where everyone is valued and recognised for their efforts, whilst being a part of an amazing team.

SOME OF OUR PERKS INCLUDE

  • Recharge and relax with up to four extra days of leave each year. We call them Wellness days
  • We offer industry-leading 20 weeks of paid parental leave
  • Save plenty with vehicle salary packaging
  • Monetary service milestone awards
  • Recruitment referral bonus
  • Discounted mobility products and services
  • Flexible work arrangements
  • Career progression opportunities
  • Education support towards your growth, including an individual learning budget per year, free access to LinkedIn Learning and more
  • Two paid volunteer days each year to give back to causes that matter to you
  • Health and wellbeing support including

*AS A INFORMATION SECURITY GOVERNANCE, RISK AND COMPLIANCE SPECIALIST*
The major responsibilities of this position include but are not limited to:

  • Implement, maintain and mature information security policies and procedures in accordance with ISO27001 and NIST standards.
  • Assist with information security awareness training initiatives across the group.
  • Assist in the maintenance and continual improvement of the Information Security Management System (ISMS), including the monitoring and reporting on the effectiveness of security controls and compliance efforts.
  • Conduct vendor and solution risk assessments or gap analyses to identify areas of improvement in our security posture, including supply chains.
  • Collaborate with cross-functional teams to ensure compliance with security standards and regulatory requirements, as well as provide guidance on the implementation of security controls (technical and non-technical) and best practices.
  • Assist with any internal compliance and privacy audits and prepare for external audits, including ISO27001.
  • Review penetration tests and vulnerability results and assist with the prioritization of resolution efforts based on technical and non-technical risk factors. Track the remediation of identified vulnerabilities, ensuring timely and effective resolution.
  • Assist with data governance activities including classification and archival.
  • Stay up to date with the latest developments in security standards and regulatory requirements.

*Essential*

  • Proven experience in GRC roles with a focus on ISO27001 or standards.
  • Strong understanding of information security risk management principles and methodologies, particularly in supply chains.
  • Information security technical concepts regarding confidentiality, integrity and availability.
  • Excellent analytical, problem-solving, and communication skills.
  • Ability to work independently to achieve goals.
  • Ability to negotiate security tasks with different teams.
  • Detail-oriented with a commitment to maintaining high standards of quality and accuracy.

WHAT'S NEXT
We'd love to hear from you if you're ready to take on your next challenge at a company that embodies diversity and belonging while also offering work-life balance and career development.

We are a proud equal opportunity employer, and welcome everyone to our team. Resumes may be sent and interviews may take place prior to closure date for applications. To give yourself the best chance of selection, please do not leave your application to the application 'close' date. As a pre-requisite to employment, the successful applicant will be required to complete a pre-employment screening.

Aboriginal and Torres Strait Islander candidates are encouraged to apply.



  • Sydney, New South Wales, Australia Eunexus Pty Ltd Full time

    About EunexusEunexus is a high-security cloud services provider delivering private, secured, and fully managed hosting environments for clients with advanced compliance needs. Our proprietary Eunexus Cloud platform is designed for organisations that require dedicated, compliant, and scalable infrastructure supported by Australian-based teams.The RoleWe are...


  • Sydney, New South Wales, Australia Amazon Web Services (AWS) Full time $120,000 - $180,000 per year

    DescriptionAmazon Web Services (AWS) is the leading cloud service provider, providing virtualised infrastructure, storage, networking, messaging, and many other services to customers all over the world. AWS runs a globally distributed environment, operating at massive levels of scale. Businesses, from start-ups to enterprises to large government customers,...


  • Sydney, New South Wales, Australia Cover-More Full time $120,000 - $150,000 per year

    Permanent - Full TimeNorth Sydney, New South WalesZurich Cover-More helps people travel safely across the globe every day. We are there at every step of a traveler's journey, to keep them safe and help them out if something goes wrong. We are committed to providing reliable, fast, flexible and bespoke services for our customers as well as the many well-known...


  • Sydney, New South Wales, Australia Rabobank Full time

    Job TitleInformation Security ManagerJob DescriptionRabobank is the world's leading specialist in food & agribusiness banking.  One of our key strengths lies in our people who have a deep understanding of agriculture & are committed to adding long-term value for clients.  Our commitment to our employees & clients is at the heart of everything we...


  • Sydney, New South Wales, Australia Fujitsu Full time $120,000 - $150,000 per year

    About the job Expression of Interest_ Governance, Risk and Compliance (GRC)We Are FujitsuWe use technology to make happier lives. We are a global leader in technology and business solutions that transform organizations and the world around us. We have a long heritage of bringing innovation and expertise, continuously working to contribute to the growth of...


  • Sydney, New South Wales, Australia Viasat, Inc. Full time $80,000 - $120,000 per year

    About usOne team. Global challenges. Infinite opportunities. At Viasat, we're on a mission to deliver connections with the capacity to change the world. For more than 35 years, Viasat has helped shape how consumers, businesses, governments and militaries around the globe communicate. We're looking for people who think big, act fearlessly, and create an...


  • Sydney, New South Wales, Australia Experis Australia Full time

    A great opportunity for a Principal Cyber Security Specialist.Location:ACT, QLD and NSWJob type:ContractOrganisation:Federal GovernmentDuties and ResponsibilitiesLeading and conducting risk assessments of agency's internal systems and assessing risk from external connections.Undertaking compliance activities in relation to cyber security standards within the...


  • Sydney, New South Wales, Australia Kyndryl Full time $120,000 - $180,000 per year

    Who We AreAt Kyndryl, we design, build, manage and modernize the mission-critical technology systems that the world depends on every day. So why work at Kyndryl? We are always moving forward – always pushing ourselves to go further in our efforts to build a more equitable, inclusive world for our employees, our customers and our communities.The RoleAs a ...


  • Sydney, New South Wales, Australia myCareer - NSW Government Full time $149,739 - $173,174

    Principal Security Policy and Governance, Ongoing opportunity based in Sydney CBD + hybrid/flexible working options available The Department of Customer Service (DCS) is looking for a Principal SecurityPolicy and Governance to design, develop, implement, andmaintain department-wide security and governance policies, frameworks, andstandards- in line with...


  • Sydney, New South Wales, Australia NSW Government Full time $120,000 - $180,000 per year

    Principal Security Policy and Governance, Ongoing opportunity based in Sydney CBD + hybrid/flexible working options availableThe Department of Customer Service (DCS) is looking for a Principal Security Policy and Governance to design, develop, implement, and maintain department-wide security and governance policies, frameworks, and standards- in line with...