Governance, Risk, Compliance

4 days ago


Sydney, New South Wales, Australia Sas Full time

:
At SAS, where you start doesn't have to be where you end; and there is ample opportunity for internal career mobility. Whether you're looking to grow a new skill or experience a new role, there's no time like the present to take the next step; and we're here to support you in your journey.

We're looking for a Governance, Risk, Compliance - Audit Security Advisor to join our team in Australia, specifically focused on Compliance in Government. The role will assess information security and cybersecurity risk, facilitate compliance with regulatory requirements and information security policies, execute assurance testing to required performance standards, and develop and report information security metrics. They are responsible for lowering information security and cybersecurity risk to SAS, partnering with other teams across the enterprise.

**Your responsibilities may include**:

- Review SAS Cloud or on-premises security contract terms, respond to RFP and security questionnaires, and support information security-related discussions with customer security teams and auditors during negotiations and post-sale operational activities.
- Facilitate and ensure continuous monitoring activities are operating effectively, identifying control gaps and deficiencies and reporting to management, as applicable.
- Assist in the development System Security Plans, Plans of Actions and Milestones, Continuous Monitoring Plans, and Incident Response Plans in collaboration with other teams.
- Conduct scheduled and ad hoc reviews of applicable SAS Cloud solution environments, including the support and management of external assessor activities related to certifications and customer contractual requirements.
- Research and contribute to information security polices and standards, with the objective of continually maturing operations, while meeting regulatory and compliance obligations.
- Participate in security investigations and compliance reviews, as required by contract or regulation.
- Identify and recommend cost effective improvements to security practices while maintaining compliance to required standards and regulations.
- Use the GRC tool to create and manage continuous monitoring indicators, build reporting dashboards, document electronic work papers, and manage audit documentation.
- Identify risk issues and work in collaboration with other teams across the enterprise to remediate.

**Other knowledge, skills, and abilities**
- Maintain an ability to be flexible with others, to display tact and diplomacy, and to maintain a high degree of confidentiality and integrity.
- Strong time management skills (schedules, prioritization).
- Excellent communication, analysis, and process flow skills.
- Ability to be flexible, display tact and diplomacy, and maintain confidentiality and integrity.
- Must have the ability to work with little supervision, escalating issues, as appropriate.
- Perform other duties, as assigned.
- Travel as business requirements dictate at management discretion.

**Qualifications**
- Bachelor's degree in Business, IT, Computer Science, Project Management or related field
- 5-8+ years of functional experience in project management, management consulting, IT, audit/compliance or related field.
- Experience in a regulated (pharmaceutical, banking, insurance, government) industry (may be concurrent with the above functional experience).
- Understanding of regulatory standards (ex: IRAP, PMDA, PCI, NIST 800-53).
- Knowledge and experience with best practices/standards (ex: COBIT, GAMP5, ISO 27000 or 42000).
- Must be an Australian citizen
- Successful applicants will be required to complete a background check (including criminal history check) prior to commencement of employment.

**Nice to Haves**
- Use and/or implementation of a GRC tool (ex: ServiceNow, Archer, Teammate, Thompson Reuters)
- Management consulting experience
- Experience with ServiceNow issue management ticketing system
- Auditor or security certification (ex: CISA, IIA, CISSP) and/or training
- SAS software implementation experience or IT hosting experience

**Diverse and Inclusive**

At SAS, it's not about fitting into our culture - it's about adding to it. We believe our people make the difference. Our diverse workforce brings together unique talents and inspires teams to create amazing software that reflects the diversity of our users and customers. Our commitment to diversity is a priority to our leadership, all the way up to the top; and it's essential to who we are. To put it plainly: you are welcome here.#SAS

LI-IL1



  • Sydney, New South Wales, Australia beBee RISK Full time $160,000 - $190,000

    Job Title: Enterprise Risk Governance Specialist Job DescriptionWe are seeking an experienced risk practitioner to join our team as a key member responsible for the overall governance and management framework for third parties at an enterprise level. This includes setting policies and standards, ensuring effective governance, oversight and control is in...


  • Sydney, New South Wales, Australia beBeecompliance Full time $140,000 - $180,000

    Job Title: Governance, Risk and Compliance SpecialistA leading organization is seeking a seasoned Governance, Risk and Compliance (GRC) professional to join their team. As a GRC Specialist, you will be responsible for developing and implementing effective GRC frameworks that align with industry best practices.The successful candidate will have a strong...


  • Sydney, New South Wales, Australia beBeeRisk Full time $150,000 - $200,000

    About the RoleThis is an exciting opportunity to join our team as a Governance Risk and Compliance Specialist. As a key member of our organization, you will play a vital role in ensuring that we maintain the highest standards of governance, risk management, and compliance.Key ResponsibilitiesYou will work closely with our Front Office teams to identify,...


  • Sydney, New South Wales, Australia beBeeCompliance Full time $120,000 - $180,000

    Job DescriptionThe Compliance and Risk Management Department at Dimensional is responsible for developing and overseeing the firm's compliance internal controls, policies, and procedures, as well as risk management frameworks. Our global structure follows the sun, with compliance personnel established at each office to ensure compliance coverage around the...


  • Sydney, New South Wales, Australia Bebeecompliance Full time

    Job DescriptionThe Compliance and Risk Management Department at Dimensional is responsible for developing and overseeing the firm's compliance internal controls, policies, and procedures, as well as risk management frameworks. Our global structure follows the sun, with compliance personnel established at each office to ensure compliance coverage around the...


  • Sydney, New South Wales, Australia beBeeGovernance Full time $90,000 - $120,000

    Senior Governance Risk Compliance LawyerWe are seeking a senior governance risk compliance lawyer to join our General Counsel and Risk Department. The role will involve overseeing Dentons' responses to claims and complaints, managing business acceptance processes including conflicts clearance, and managing a team of 5.


  • Sydney, New South Wales, Australia beBeeGovernance Full time $180,000 - $250,000

    Job Title: Senior Governance Risk Compliance LawyerJob Description:We are seeking a senior governance risk compliance lawyer to join our General Counsel and Risk Department. As a key member of the legal team, you will provide high-quality legal advice and support to ensure effective governance and risk management.The ideal candidate will have extensive...


  • Sydney, New South Wales, Australia Terra Firma Full time

    Terra Firma is a leading Australian owned IT Business & Project Services Consulting company, providing professional consulting services to enterprise clients in Energy, Telecommunications, Government, Not for Profit and Financial Services industries.Our core values are Pride and Passion, Collegiality and Adding Value. This is truly embedded into our everyday...


  • Sydney, New South Wales, Australia beBeeGrowth Full time $180,000 - $220,000

    Key Job Responsibilities:Detailed TasksDevelop business solutions and strategies for governance, risk and compliance initiatives.Lead complex projects through their lifecycle; collaborate with others to identify, sell and deliver consulting services dealing with GRC and/or strategic transformation.Build strong relationships with stakeholders and...

  • Senior Risk Manager

    1 week ago


    Sydney, New South Wales, Australia beBeeRegulatory Full time $180,000 - $240,000

    Job OverviewWe are seeking a highly skilled professional to join our Operational Resilience, Governance and Structure team within Risk Management.You will work with various business groups to advise on regulatory requirements, review proposed new business and transactions for compliance, and support risk matters related to intragroup transactions,...