Isms Grc Specialist

2 weeks ago


Sydney, New South Wales, Australia Cover-More Full time

**Description**:
Zurich Cover-More helps people travel safely across the globe every day. We are there at every step of a traveller's journey, to keep them safe and help them out if something goes wrong. We are committed to providing reliable, fast, flexible and bespoke services for our customers as well as the many well-known brands we partner with
We're looking for an experienced ISMS GRC Specialist to join our IT Governance & Transformation team in North Sydney.
The role supports uplift in the risk and control environment by monitoring risk treatment progress, challenging control adequacy, and preparing IT governance reporting. It complements the work of the Cyber Security team by focusing on control assurance and oversight.
**Salary**: Competitive salary plus super plus annual bonus incentive and more
So, what's the job?
Reporting to the Head of IT Governance & Transformation. You will provide crucial certification and audit support.
- You'll support the maintenance and continuous improvement of the ISMS in alignment with ISO 27001
- You'll coordinate with control owners across regions to support audit readiness, including evidence collection and documentation tracking
- You'll conduct light-touch internal assessments to monitor control effectiveness and support remediation tracking
- You'll maintain core ISMS documentation, including risk registers, and audit artefacts, ensuring they remain current and aligned to framework requirements
- You'll prepare risk and compliance reporting, including KRI data, for governance forums and senior stakeholders
- You'll conduct IT risk assessments, monitor controls, and support remediation and compliance efforts
- You'll work collaboratively with the Cyber Security team, who remain accountable for ISO 27001 certification, audit leadership, and technical assurance

And what are we looking for?
- You'll have proven experience in technology risk, IT audit, or compliance roles within complex, regulated environments
- You'll have a strong understanding of IT governance, risk management practices, and compliance frameworks (e.g., ICIF, ISO 27001, NIST, COBIT)
- You'll have demonstrated experience in risk profiling, audit response, and control management
- You'll be skilled in regulatory change management and familiar with GRC tools and enterprise risk systems
- You'll bring strong communication and stakeholder engagement skills, including presenting to senior management
- You'll be proficient in Microsoft Office (Excel, PowerPoint, Visio, Word) with a detail-oriented, organised, and solution-focused approach

So, why choose us?
We value optimism, caring, togetherness, reliability and determination.
**We have more than 2600 employees worldwide**: we're a global group of digital specialists, actuaries, marketers, doctors, nurses, case managers, claims specialists, finance experts and customer service professionals. We share a global mission to look after travellers, at every step of their journey.
Job flexibility. We understand the importance of making sure that work fits into your life, not the other way around. Our hybrid work week policy ensures our employees maintain work-life balance with the flexibility of 5 days in the office per fortnight.
Career growth. We want you to continue to learn, develop and bring your ideas to the table. We want to hear what you think, and we want you to work with the business - not for the business
Take the time you need, for you and your community. We encourage you to take the time you need, when you need it. We offer regular annual and personal leave benefits along with anniversary leave, volunteer leave and a comprehensive paid parental leave scheme.
Travel and work with us. We'll help you keep travelling in your career, oh and quite literally with free travel insurance. We also offer great discounts through our extensive travel partnerships so start planning for your next trip today
Diversity and inclusion. We respect who you are and thoroughly embrace diversity. So whatever walk of life you wander, just be you and come as you are.
APPLY TODAY AND LET'S GO GREAT PLACES TOGETHER
To learn more about working at Zurich Cover-More, check out our careers and benefits page



  • Sydney, New South Wales, Australia Amazon Web Services Australia Pty Ltd Full time

    2+ years experience working in areas related to security assurance, such as cybersecurity, auditing, security architecture, regulatory affairs or public sector agencies involved in cybersecurity management.- Experience working with governance, risk and compliance programs that directly involve interaction with regulatory bodies.- Proficient with government...

  • GRC Sr Analyst

    2 weeks ago


    Sydney, New South Wales, Australia Sonic Healthcare Full time $90,000 - $120,000 per year

    Company DescriptionSonic Healthcare is an internationally renowned healthcare provider, headquartered in Sydney, specializing in pathology, radiology, and primary care medical centers. The company is an ASX Top 50 company and operates in Australia, the USA, Germany, Belgium, Switzerland, the United Kingdom, Ireland, and New Zealand. Sonic Healthcare's core...


  • Sydney, New South Wales, Australia beBeeGrc Full time $90,000 - $120,000

    At Zurich Cover-More, we help people travel safely across the globe every day.Our team in Sydney is looking for an experienced ISMS GRC Specialist to support risk management by monitoring treatment progress, challenging control adequacy, and preparing IT governance reporting.The ideal candidate will have a strong understanding of technology risk, IT audit,...


  • Sydney, New South Wales, Australia Northrop Grumman Australia Full time

    Join to apply for theCybersecurity GRC Leadrole atNorthrop Grumman Australia3 days ago Be among the first 25 applicantsJoin to apply for theCybersecurity GRC Leadrole atNorthrop Grumman AustraliaGet AI-powered advice on this job and more exclusive features.Direct message the job poster from Northrop Grumman AustraliaAs the Triton Cybersecurity GRC Lead,...


  • Sydney, New South Wales, Australia Cybertify Full time $104,000 - $130,878 per year

    About CybertifyCybertify is Australia's premier compliance-first cybersecurity consulting firm, proudly Australian owned, fully independent, and sovereign in every respect. We specialise in protecting and enabling organisations in the country's most heavily regulated sectors: financial services, superannuation, legal, aged care, healthcare, banking,...


  • Sydney, New South Wales, Australia Ampol Full time

    OverviewSenior Cyber GRC Specialist role at Ampol.Ampol is Australia's only owned fuel brand, with a focus on delivering value through technology and data-driven transformation.About the roleThe Cyber, Risk & Governance teams protect Ampol Group's reputation and social license to operate by enhancing cyber resilience.The Senior GRC Analyst will support cyber...


  • Sydney, New South Wales, Australia Adobe Full time

    Our CompanyChanging the world through digital experiences is what Adobe's all about. We give everyone—from emerging artists to global brands—everything they need to design and deliver exceptional digital experiences We're passionate about empowering people to create beautiful and powerful images, videos, and apps, and transform how companies interact...

  • GRC Leader

    1 week ago


    Sydney, New South Wales, Australia beBeeGovernance Full time $80,000 - $120,000

    Hatch seeks a Governance Risk And Compliance Specialist to lead GRC initiatives and collaborate with cross-functional teams.This role is ideal for someone with developed knowledge and skills, typically within 2-5 years of experience in risk management, policy development, and compliance.The key responsibilities include:Risk Management: Develop and implement...


  • Sydney, New South Wales, Australia Buscojobs Full time

    About the Company & Culture : We're partnering with one of Australia's fastest-growing boutique cyber security consultancies.They're not a product reseller, nor sales-driven.Their focus is on pragmatic, no-agenda advisory—they listen first, which is why clients trust them and return.The culture is built on authenticity, technical depth, and meaningful...


  • Sydney, New South Wales, Australia Buscojobs Full time

    About the Company & Culture : We're partnering with one of Australia's fastest-growing boutique cyber security consultancies.They're not a product reseller, nor sales-driven.Their focus is on pragmatic, no-agenda advisory—they listen first, which is why clients trust them and return.The culture is built on authenticity, technical depth, and meaningful...