Senior Governance, Risk, Compliance

vor 1 Monat


Sydney, Österreich SAS Vollzeit
Senior Governance, Risk, Compliance - Audit (GRC-A) Security Advisor

At SAS, where you start doesn’t have to be where you end; and there is ample opportunity for internal career mobility. Whether you’re looking to grow a new skill or experience a new role, there’s no time like the present to take the next step; and we’re here to support you in your journey.

We’re looking for a Governance, Risk, Compliance – Audit Security Advisor to join our team in Australia, specifically focused on Compliance in Government. The role will assess information security and cybersecurity risk, facilitate compliance with regulatory requirements and information security policies, execute assurance testing to required performance standards, and develop and report information security metrics. They are responsible for lowering information security and cybersecurity risk to SAS, partnering with other teams across the enterprise.

Your responsibilities may include:

  • While remaining updated of compliance and security regulations and standards within regulated markets for ex: IRAP, ISMAP, ISAE 3000, and/or ISO 27001), provide advisory services to the business, including recommendations for assurance and application of SAS security policies for SAS Cloud, on-premises projects, and country or regional offices.
  • Review SAS Cloud or on-premises security contract terms, respond to RFP and security questionnaires, and support information security-related discussions with customer security teams and auditors during negotiations and post-sale operational activities.
  • Facilitate and ensure continuous monitoring activities are operating effectively, identifying control gaps and deficiencies and reporting to management, as applicable.
  • Assist in the development System Security Plans, Plans of Actions and Milestones, Continuous Monitoring Plans, and Incident Response Plans in collaboration with other teams.
  • Conduct scheduled and ad hoc reviews of applicable SAS Cloud solution environments, including the support and management of external assessor activities related to certifications and customer contractual requirements.
  • Research and contribute to information security polices and standards, with the objective of continually maturing operations, while meeting regulatory and compliance obligations.
  • Participate in security investigations and compliance reviews, as required by contract or regulation.
  • Identify and recommend cost effective improvements to security practices while maintaining compliance to required standards and regulations.
  • Use the GRC tool to create and manage continuous monitoring indicators, build reporting dashboards, document electronic work papers, and manage audit documentation.
  • Identify risk issues and work in collaboration with other teams across the enterprise to remediate.

Other knowledge, skills, and abilities

  • Maintain an ability to be flexible with others, to display tact and diplomacy, and to maintain a high degree of confidentiality and integrity.
  • Strong time management skills (schedules, prioritization).
  • Excellent communication, analysis, and process flow skills.
  • Ability to be flexible, display tact and diplomacy, and maintain confidentiality and integrity.
  • Must have the ability to work with little supervision, escalating issues, as appropriate.
  • Perform other duties, as assigned.
  • Travel as business requirements dictate at management discretion.

Qualifications

  • Bachelor's degree in Business, IT, Computer Science, Project Management or related field
  • 5-8+ years of functional experience in project management, management consulting, IT, audit/compliance or related field.
  • Experience in a regulated (pharmaceutical, banking, insurance, government) industry (may be concurrent with the above functional experience).
  • Understanding of regulatory standards (ex: IRAP, PMDA, PCI,NIST 800-53).
  • Knowledge and experience with best practices/standards (ex: COBIT, GAMP5, ISO 27000 or 42000).
  • Must be an Australian citizen
  • Successful applicants will be required to complete a background check (including criminal history check) prior to commencement of employment.

Nice to Haves

  • Use and/or implementation of a GRC tool (ex: ServiceNow, Archer, Teammate, Thompson Reuters)
  • Management consulting experience
  • Experience with ServiceNow issue management ticketing system
  • Auditor or security certification (ex: CISA, IIA, CISSP) and/or training
  • SAS software implementation experience or IT hosting experience

Diverse and Inclusive

At SAS, it’s not about fitting into our culture – it’s about adding to it. We believe our people make the difference. Our diverse workforce brings together unique talents and inspires teams to create amazing software that reflects the diversity of our users and customers. Our commitment to diversity is a priority to our leadership, all the way up to the top; and it’s essential to who we are. To put it plainly: you are welcome here.

Resumes may be considered in the order they are received. SAS employees performing certain job functions may require access to technology or software subject to export or import regulations. To comply with these regulations, SAS may obtain nationality or citizenship information from applicants for employment. SAS collects this information solely for trade law compliance purposes and does not use it to discriminate unfairly in the hiring process.

SAS only sends emails from verified “sas.com” email addresses and never asks for sensitive, personal information or money. If you have any doubts about the authenticity of any type of communication from, or on behalf of SAS, please contact Recruitingsupport@sas.com.

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.

#J-18808-Ljbffr
  • Compliance Lead

    vor 3 Wochen


    Sydney, Österreich Compliance & Risk Management Recruitment Vollzeit

    Compliance & Risk Management Recruitment This role is both strategy & execution and is inviting you to be a part of a dynamic and complex business that takes a long-term and sustainable approach to the way they operate. If you are looking for the next step in your career, where you have ownership and can add value, this job will do it. It is a genuine...


  • Sydney, Österreich eFinancialCareers Ltd. Vollzeit

    Senior Risk Manager, Business Risks & Governance Senior Risk Manager, Business Risks & Governance Munich Re Sydney, Australia Posted 1 day ago Permanent Competitive Senior Risk Manager, Business Risks & Governance Senior Risk Manager, Business Risks & Governance Company Munich Re Location Sydney , AustraliaThe Chief Risk Office is responsible...


  • Sydney, Österreich Munich Re Vollzeit

    Senior Risk Manager, Business Risks & Governance The Chief Risk Office is responsible for the risk management and compliance frameworks, together with the Legal and Secretarial function for several entities in Australia and New Zealand. The Risk Management team designs risk management and compliance processes and systems and works with the business...


  • Sydney, Österreich Continuity Central Vollzeit

    The latest business continuity jobs from around the worldIt is free of charge to post job listings: simply email the job description along with the job title, location and details of how to apply to editor@continuitycentral.com Governance Advisor – Risk, Compliance & Business Continuity Details Published: 21 July 2023 Location: Australia,...


  • Sydney, Österreich ING Bank N.V. Vollzeit

    When you come to work at ING, you’re joining a modern and progressive team where individuality isn’t just accepted, it’s encouraged. You’ll be surrounded by people who are friendly, inclusive and respectful, who want you to reach your potential. It’s one of the many reasons we’re proud to be an Employer of Choice for Gender Equality.As our Cloud...


  • Sydney, Österreich Amazon Vollzeit

    DESCRIPTIONAmazon is the most customer-centric company on Earth. We need exceptionally talented, customer-centric, bright, and driven people. We are looking for an organized self-starter to join the Transportation Risk and Compliance (TRC) team at Amazon. This position will be based out of the Sydney office, and requires the ability to travel...


  • Sydney, Österreich Amazon Vollzeit

    DESCRIPTIONAmazon is the most customer-centric company on Earth. We need exceptionally talented, customer-centric, bright, and driven people. We are looking for an organized self-starter to join the Transportation Risk and Compliance (TRC) team at Amazon. This position will be based out of the Sydney office, and requires the ability to travel...


  • Sydney, Österreich Amazon Vollzeit

    Description Amazon is the most customer-centric company on Earth. We need exceptionally talented, customer-centric, bright, and driven people. We are looking for an organized self-starter to join the Transportation Risk and Compliance (TRC) team at Amazon. This position will be based out of the Sydney office, and requires the ability to travel...


  • Sydney, Österreich Amazon Vollzeit

    Description Amazon is the most customer-centric company on Earth. We need exceptionally talented, customer-centric, bright, and driven people. We are looking for an organized self-starter to join the Transportation Risk and Compliance (TRC) team at Amazon. This position will be based out of the Sydney office, and requires the ability to travel...


  • Sydney, Österreich Sigma Resourcing Pty Ltd Vollzeit

    Risk Manager- Head of Risk & Compliance . 6 months contractRate: $1,200 to $1600/day + superSydney CBD- HybridPURPOSEThis role is responsible for the second line risk and compliance assurance activities which provide monitoring and evidence-based assurance on the design and operating effectiveness of the enterprise risk, compliance and governance frameworks...


  • Sydney, Österreich Amazon Vollzeit

    Senior Risk Manager, Transportation Risk and Compliance, Australia & Singapore Transportation Risk & Compliance (TRC)Job ID: 2653882 | Amazon Commercial Services Pty Ltd - F47Amazon is the most customer-centric company on Earth. We need exceptionally talented, customer-centric, bright, and driven people. We are looking for an organized self-starter to join...


  • Sydney, Österreich Amazon Vollzeit

    Senior Risk Manager, Transportation Risk and Compliance, Australia & Singapore Transportation Risk & Compliance (TRC)Job ID: 2653882 | Amazon Commercial Services Pty Ltd - F47Amazon is the most customer-centric company on Earth. We need exceptionally talented, customer-centric, bright, and driven people. We are looking for an organized self-starter to join...

  • IT Governance Manager

    vor 4 Wochen


    Sydney, Österreich Michael Page Australia Vollzeit

    About Our Client Our client is a company responsible for regulating financial institutions. Job DescriptionEstablish Cloud Governance Frameworks and required controls and strategies (especially within the Microsoft Azure environment)Provide governance, risk, and compliance insights to drive improvement across IT.Plan the implementation of processes and...


  • Sydney, Österreich Pinpoint Talent Vollzeit

    Our NSW State Government client is seeking Head of Risk and Compliance Assurance to join on an initial 6 month contract.Head of Risk & Compliance | Initial 6 month contract | Sydney CBD / WFH Hybrid | $1200 - 1600 p/d + super | NSW GovernmentPurpose of the Role:This role is responsible for the second line risk and compliance assurance activities which...


  • Sydney, Österreich Pinpoint Talent Vollzeit

    Our NSW State Government client is seeking Head of Risk and Compliance Assurance to join on an initial 6 month contract.Head of Risk & Compliance | Initial 6 month contract | Sydney CBD / WFH Hybrid | $1200 - 1600 p/d + super | NSW GovernmentPurpose of the Role:This role is responsible for the second line risk and compliance assurance activities which...


  • Sydney, Österreich CBUS Super Vollzeit

    Compliance & Risk (Banking & Financial Services) This role is part of the Investment Risk & Compliance team to drive an optimised and sustainable balance between risk, reward, and support of Investments and Investment Enablement in a way that the business objectives through developing and advocating for rigorous risk frameworks and ensuring robust...

  • Senior Risk

    vor 1 Monat


    Sydney, Österreich Allianz Popular SL. Vollzeit

    SENIOR RISK AND COMPLIANCE MANAGER, TRANSFORMATION - PERSONAL INJURY DIVISION | SYDNEY, NSW At Allianz, we’re proud to be one of the world’s leading insurance and asset management brands, with a workforce as diverse as the world around us. We care about our customers, which is why we hire the very best people to further our...

  • Senior Risk

    vor 3 Wochen


    Sydney, Österreich Allianz Popular SL. Vollzeit

    SENIOR RISK AND COMPLIANCE MANAGER, TRANSFORMATION - PERSONAL INJURY DIVISION | SYDNEY, NSW At Allianz, we’re proud to be one of the world’s leading insurance and asset management brands, with a workforce as diverse as the world around us. We care about our customers, which is why we hire the very best people to further our...


  • Sydney, Österreich ClearCompany Vollzeit

    About the role: The Senior Compliance Manager will play a key role in ensuring that Australia and New Zealand operate in accordance with regulatory, industry, legal, and company standards and requirements. You will identify and appropriately manage key compliance obligations and risks for Australia and New Zealand operations. You will also manage compliance...


  • Sydney, Österreich ClearCompany Vollzeit

    About the role: The Senior Compliance Manager will play a key role in ensuring that Australia and New Zealand operate in accordance with regulatory, industry, legal, and company standards and requirements. You will identify and appropriately manage key compliance obligations and risks for Australia and New Zealand operations. You will also manage compliance...