5 дней назад
Senior Cyber GRC Analyst (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Cyber GRC Analyst (Cybersecurity): Leading cyber governance, risk and compliance across products, platforms and technology initiatives with an accent on risk assessment, control assurance, regulatory compliance and secure-by-design practices. Focus on coordinating audits, translating cyber and privacy requirements into practical guidance, automating assurance activities, and delivering risk insights to technology leadership and the board.
Location: Richmond, Melbourne VIC, Australia; permanent hybrid role
Company
develops property technology that helps people find and finance homes.
What you will do
- Lead cyber security risk assessments across products, platforms and key initiatives.
- Design, implement and improve cyber GRC frameworks, policies, standards and supporting processes.
- Coordinate control testing, audits and attestations, track remediation, and automate assurance activities where possible.
- Advise technology and product teams on secure-by-design practices, risk-based decision-making and security controls.
- Monitor cyber, privacy and technology standards, contracts and regulations, translating changes into practical requirements.
- Prepare risk and compliance reporting, support supplier security assessments, and contribute to incident preparedness and post-incident reviews.
Requirements
- Significant experience in cyber security governance, risk and compliance, technology risk or a related field.
- Experience working with product and engineering teams to embed security and risk management into delivery practices.
- Proficiency with GRC and security tooling, including risk registers, control libraries, workflow tools and vulnerability or issue management platforms.
- Understanding of cloud and product engineering environments, including AWS, CI/CD, microservices and common security controls.
- Experience supporting security audits, certifications or regulatory reviews such as ISO 27001, SOC 2 or PCI-DSS.
- Relevant tertiary qualification in Information Security, IT, Risk or a related discipline, or equivalent practical experience.
Culture & Benefits
- Hybrid and flexible approach to working.
- Flexible leave options, including birthday leave and the option to purchase additional leave.
- Flexible parental leave for primary and secondary carers.
- Volunteering leave, community grants, matched payroll giving and charitable community programs.
- Hackdays supporting experimentation and new ideas.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
10 дней назад
Security Engineer (Cybersecurity)
6 дней назад
Transformation Programs Advisor - ANZ (Cybersecurity)
12 дней назад
Information Risk Manager (Cybersecurity)
12 дней назад
Professional Services Consultant (Cybersecurity)
6 дней назад
Information Risk Manager (Financial Services)
10 дней назад