
Cyber Governance, Risk
1 week ago
New role to the firm - Enhance what we have and take the next step in your career- With a few years experience behind you, you will be looking to introduce what you've learnt in developing and implementing cyber governance frameworks and processes, ensuring that we meet our information security and compliance goals.- As a leading law firm, we actively seek people from diverse backgrounds to enrich our culture and performance.
Who are we?
A firm born in Asia, underpinned by world class capability.
With over 3000 lawyers in 29 global locations, we help our clients manage their risk and enable their growth. Our full-service offering combines un-matched top tier local capability complemented with an international platform.
We have deep roots in Australia spanning almost 200 years and acknowledge Aboriginal and Torres Strait Islander peoples as the traditional owners and custodians of these lands and waters.
Role Detail
With a 'continuous improvement lens' on our cyber governance and compliance obligations, this new role to the firm will help us continue to lead in managing our cyber risk internal and external compliance obligations. Freeing up the team to focus on their BAU, this role will give you the opportunity to enhance our cyber security culture through robust processes and reporting.
Based in the Sydney CBD office, with a balanced approach to WFH, you will play a key role in developing and implementing cyber governance frameworks and processes, ensuring that we meet our information security and compliance goals.
Reporting to the Information Security Manager, you will also create and maintain documentation to demonstrate our adherence to organisational and regulatory policies, standards and best practices. You will be integral with helping the firm manage third party vendor risk and meet its client information security compliance obligations.
Key responsibilities:
- Manage and oversee the organisation's third-party vendor management program, including the assessment and ongoing monitoring of our vendors' cyber security practices.- Collaborate with internal stakeholders to identify and evaluate potential cyber security risks associated with third-party vendors.- Develop and maintain strong relationships with vendors to ensure compliance with contractual obligations and cyber security requirements.- Working closely with our Risk and Compliance team, respond to client third-party security audits by coordinating and providing necessary documentation, evidence, and responses to address audit findings.- Conduct regular assessments of vendors' cyber security controls, policies, and practices to identify potential vulnerabilities and areas for improvement.- Assist with maintaining our internal cyber security compliance programs, ensuring alignment with industry best practices and frameworks such as ISO27001.- Supporting the maintenance and operation of our policies, procedures and standards, registers, guides and reporting.- Supporting and coordinating internal and external audit programs.- Monitor and assess cyber security risks and compliance issues, providing recommendations for remediation and improvement.- Provide cyber risk support for projects and business as usual initiatives.- Stay up to date with emerging cyber security threats, trends, and regulatory requirements, and provide guidance on their potential impact on the organisation.- Collaborate with cross-functional teams to develop and deliver cyber security awareness and training programs for employees.- Assisting the Head of Information Security and Information Security Manager with maintaining operational metrics on the effectiveness of the firm's Information Security program.
About You
Your natural curiosity will fit nicely, and your collaborative approach will be celebrated. As the SME in this area, you will be looked to for direction which requires confidence in your ability, backed by the experience from lessons learnt.
You will also bring:
- Solid knowledge of information security concepts and practices, such as risk assessment and assurance.- Strong knowledge of third-party vendor management principles, practices, and frameworks.- Proven experience in responding to client third-party security audits and addressing audit findings.- In-depth understanding of cyber security compliance frameworks, particularly ISO27001.- Familiarity with other relevant frameworks and regulations such as NIST, GDPR, or APRA CPS 234 is highly desirable.- Excellent analytical and problem-solving skills, with the ability to assess and mitigate cyber security risks effectively.- Strong communication and interpersonal skills, with the ability to collaborate with internal and external stakeholders at various levels.- Demonstrated ability to develop and implement cyber security compliance programs and policies.- Relevant certifications such as CISSP, CISM, CRISC, or ISO27001 Lead Auditor are highly desirable.- Proven ability to stay up to date with eme
-
Cyber Risk Governance Consultant
2 weeks ago
Sydney, New South Wales, Australia beBeeCyber Full time $100,000 - $150,000Key Role in Cyber Risk and Governance We are seeking an experienced risk governance consultant to join our team. This is a key role that involves collaborating with clients to assess and manage their cyber risks. Responsibilities:Conduct security risk assessments as part of client engagements.Understand and audit client security controls.Support the...
-
Cyber Risk Governance Professional
1 week ago
Sydney, New South Wales, Australia beBeeCyber Full time $170,000 - $210,000Job DescriptionAs a senior cyber GRC specialist, you will play a pivotal role in enhancing the organization's cyber resilience by supporting security governance, risk, and compliance across various environments.The primary focus will be on assessing, aligning, and testing security controls to meet regulatory obligations and industry best practices.This...
-
Cyber Governance, Risk And Compliance Lead
2 weeks ago
Sydney, New South Wales, Australia Domain Group Full time**Cyber Governance, Risk and Compliance Lead - Sydney Office - Permanent Full Time**A great opportunity for a **Cyber Security Governance, Risk and Compliance****(GRC) Lead**, in partnership with the Cyber Security GRC Manager, the Lead will be responsible for the delivery of the Cyber Security Governance, Risk and Compliance initiatives.You will work...
-
Cyber Governance, Risk, and Compliance
16 hours ago
Sydney, New South Wales, Australia AI Talent Full time $70,000 - $120,000 per yearAbout the RoleWe are seeking an experienced Cyber Governance, Risk, and Compliance (GRC) Specialist to lead the implementation and continuous improvement of our organisation's cybersecurity governance framework. This position is pivotal in ensuring that our systems, data, and infrastructure adhere to internal policies and external regulatory obligations,...
-
Cyber Risk Manager
2 weeks ago
Sydney, New South Wales, Australia beBeeGovernance Full time $100,000 - $185,000Cyber Governance Role OverviewThis is an exciting opportunity to support the delivery of our Cyber Security Governance, Risk, and Compliance program.Manage cyber risk across teams and coordinate assurance activities to implement security frameworks.Ethically leverage AI tools to enhance decision-making and operational efficiency in a collaborative...
-
Cyber Governance Analyst
2 weeks ago
Sydney, New South Wales, Australia Stockland Full time $90,000 - $120,000 per yearCompany description: At Stockland we are a community delivering outcomes that benefit the community at large. We work collaboratively and inclusively, building strong working relationships. Our portfolio is diverse and so are the opportunities for professional and career development. We are committed to providing our people with broad experiences to build a...
-
Cyber Risk Professional
6 days ago
Sydney, New South Wales, Australia beBeeCyberRisk Full time $113,574 - $125,720About Cyber Risk ManagementWe are seeking a skilled professional to play a pivotal role in identifying and mitigating cyber risks. This is an opportunity to join our Chief Information Security Office (CISO) team, where you will be responsible for conducting analysis of cyber risks using risk registers and incident data.As a key member of our team, you will...
-
Director of Cyber Governance
2 weeks ago
Sydney, New South Wales, Australia beBeeCybersecurity Full time $120,000 - $180,000Job Title: Chief Cyber Risk OfficerCyber Security Leadership OpportunityThe Chief Cyber Risk Officer will play a pivotal role in shaping our organisation's risk culture, influencing major transformation projects, and providing strategic oversight of cyber security.Provide expert advice and support in designing policies, frameworks, and interpreting...
-
Cyber Sec Governance
1 week ago
Sydney, New South Wales, Australia University Of New South Wales Full time**Job no**: 528006**Work type**: full time**Location**: Sydney, NSW**Categories**: Information Technology, Cyber- Employment Type: full time continuing role as a Cyber Security Governance and Compliance Manager- Excellent salary package including superannuation- Location: UNSW Kensington Campus (Hybrid Working Opportunities)**About UNSW**:UNSW isn't like...
-
Cyber Governance Lead
2 weeks ago
Sydney, New South Wales, Australia beBeeCyber Full time $120,000 - $140,000Senior Cyber Governance SpecialistThis role involves operating at the intersection of cyber strategy, governance, risk, and technical execution. The selected candidate will work with a fast-growing organisation to find solutions that ensure optimal performance.Key Responsibilities:Conduct assessments using NIST CSF, ISO 27001, and other frameworks to...