Director, Security Assurance

vor 3 Wochen


Sydney, Österreich Tideri Jobbörse Vollzeit

How you can help make a better world of work?

Culture Amp is looking for a Director, Security Assurance & Customer Trust to lead the continuous improvement of the Culture Amp security framework and ISMS, security improvement program, security awareness program, customer trust program, and supplier security risk management capability.
The ideal person will also lead the customer trust team by ensuring the timely and accurate responses to customer enquiries relating to Culture Amp's security and privacy practices.

In part of this team of amazing humans,
You will:
Be able to prove to our business leaders and customers that we have taken a thoughtful and diligent approach to protect the valuable data in our possession, and that those data protection efforts cover the third parties that have access to your organization's (and our customers') data.
As such you will be responsible for the ongoing governance of security including embedding an overarching Security Framework that provides oversight of our policies, standards, and supporting procedures.
This includes the maintenance of the Information Security Management Systems (ISMS) and identifying our security maturity and continuous improvement activities.

As a key leader in the implementation of a strong security culture, you will track and monitor the implementation and management of security solutions, as it relates to the ISMS and security governance, as well as review the information security strategy & roadmap to ensure it aligns with our Security Framework and maturity targets.
You will manage Culture Amp's security supplier review process allowing us to make assurances regarding our third parties.
Owning both parts of a similar process (customer due diligence and Culture Amp due diligence you will find synergies and automation opportunities to help us do what we do faster, better, and to create customer and camper delight) to help us manage our security risks.

As the customer trust director, from a security point of view you will focus on increasing transparency, shifting from reactive to proactive communication, integrating trust management into go-to-market processes, and developing mechanisms to improve both security postures and trust management.
As such, you will oversee the timely response to our sales teams and customers regarding product and data security, and continuous improvement of customer trust practices.
Alongside your team, you will be happy to get your hands dirty, using our library of information to respond to our customers and taking the initiative to work with other departments within Culture Amp to find answers to any unknown questions.
Monthly metric reporting for the Executive team will help you to communicate the growth in customer support, the timely completion of questionnaires, and engagement in high touch customer engagements.

For the Culture Amp security education and awareness program, you will be required to provide a wide-reaching education campaign including regular phishing simulations, the maintenance of both induction and annual training modules in our LMS tool, how-to confluence articles, and an annual security awareness month program.
You and your team will help Campers understand their role in safeguarding information, technology, and services.
Monthly metrics will be compiled by you and presented to the Executive team to demonstrate the progress of the program.

Your role in the Camp
Lead Security Assurance and build a strong security culture Oversee the cyber education and awareness strategy and corresponding activities.
Be a trusted security advisor to our customer facing teams Build customer relationships and trust in every interaction with sales, customer success, and directly with our customers Direct the security customer trust processes and manage continuous improvement of the responsiveness to prospect and customer due diligence processes regarding security, data protection, and supporting privacy as well Own and manage CA's 3rd party / supplier security reviews and due diligence to secure our supply chain.
Ensuring alignment to sub-processors and also mapping the link between our providers to our customers and aligning security expectations to ensure we remain within customer and contractual obligations.
Advise on security clauses and ability to deliver when customers ask for variances in customer contracts.
Create and manage a list of acceptable security terms and areas of non-negotiation for security purposes with legal.
Keep a sound and up to date understanding of security and privacy controls, and their current state at Culture Amp.
Work closely with the Risk team, Legal, and business partners to identify supplier security risks and opportunities to mitigate or transfer security risks.
What you'll bring to Culture Amp
Effective communicator and highly transparent and collaborative A well balanced style that aligns with Culture Amp values and is able to present a professional and trusted partner to sales/prospects/customers Experience in security assurance from frameworks to policies and practical security management, including SOC2, ISO27001, GDPR, and prepared to develop to include emerging technologies like standards for AI.
Ability to work with risk and audit teams to define controls within a framework and identify key vs non key security controls and how they support the management of security risks Solid security literacy and previous experience in security roles relating to supplier risk management, security assurance, or responding to customer reviews of security capabilities Strong deductive reasoning and problem solving skills Good understanding of security and how to create collateral of value to customers, presented and written in an easily consumable fashion Laser focused on continuous improvement and how we can do things better and what might be of value to our customers over time External networks and ability to check in with peers outside of CA for support on best ways to tackle security challenges as they present themselves Preparedness to play and bit and experiment to see what works based on our culture and different ways our campers learn and take on responsibility in their domains.
You are
Easy to get along with, an influential individual, who is immediately credible and able to easily build relationships A lateral thinker with a keen eye for detail and you naturally analyze assumptions Comfortable in ambiguity Great at communicating with both technical and non-technical people Thorough & meticulous work well independently and with others as part of larger team and are able to collaborate on cross-functional teams willingness to learn and grow develops a deep understanding of the broader business context and uses it to prioritise areas of focus Articulate and able to easily create collateral that supports the Security framework, policies & standards, and customer asks.
#J-18808-Ljbffr



  • Sydney, Österreich Unsw Vollzeit

    Cyber Security Controls Assurance ManagerUNSW is ranked 2nd in Australia and 27th in the world for Graduate Employability.This is a full-time continuing role as a Cyber Security Controls Assurance Manager.Excellent salary package including superannuationLocation: UNSW Kensington Campus (Hybrid Working Opportunities)About UNSW:UNSW isn't like other places...


  • Sydney, Österreich Https:Stemmjobs.ComSitemap.Xml Vollzeit

    Cyber Security Controls Assurance ManagerUniversity of New South WalesAustralia, NSWOct 16, 2024About University of New South Wales At UNSW, we take pride in the broad range and high quality of our teaching programs.Our teaching gains strength and currency from our research activities, strong industry links and our international nature.Employment Type: full...


  • Sydney, Österreich Tideri Jobbörse Vollzeit

    Cyber Security Controls Assurance Manager University of New South Wales Australia, NSW Oct 16, 2024 About University of New South Wales At UNSW, we take pride in the broad range and high quality of our teaching programs.Our teaching gains strength and currency from our research activities, strong industry links and our international nature.Employment Type:...


  • Sydney, Österreich Australian Electoral Commission Vollzeit

    Assistant Director, Indigo Governance & AssuranceYou will join a team of highly motivated and collaborative professionals that work in the Enterprise Transformation Group (ETG).The ETG is made up of two Divisions, the Chief Information Officer Division (CIOD) and the Enterprise Strategy and Transformation Division (ESTD), that have been established to drive...


  • Sydney, Österreich Acendre Vollzeit

    Director, Risk, Assurance and EvaluationFlexible (Any Location)Ongoing/Non-ongoing, Full TimeWho we areWe are Australia's national Vocational Education and Training (VET) regulator.What we doWe regulate providers that deliver VET qualifications and courses to students in Australia or offer Australian qualifications internationally, and providers that deliver...


  • Sydney, Österreich Acendre Vollzeit

    Director, Risk, Assurance and EvaluationFlexible (Any Location)Ongoing/Non-ongoing, Full TimeWho we areWe are Australia's national Vocational Education and Training (VET) regulator.What we doWe regulate providers that deliver VET qualifications and courses to students in Australia or offer Australian qualifications internationally, and providers that deliver...


  • Sydney, Österreich Acendre Vollzeit

    Director, Risk, Assurance and EvaluationFlexible (Any Location)Ongoing/Non-ongoing, Full TimeWho we areWe are Australia's national Vocational Education and Training (VET) regulator.What we doWe regulate providers that deliver VET qualifications and courses to students in Australia or offer Australian qualifications internationally, and providers that deliver...


  • Sydney, Österreich Tideri Jobbörse Vollzeit

    Director, Risk, Assurance and Evaluation Flexible (Any Location) Ongoing/Non-ongoing, Full Time Who we are We are Australia's national Vocational Education and Training (VET) regulator.What we do We regulate providers that deliver VET qualifications and courses to students in Australia or offer Australian qualifications internationally, and providers that...


  • Sydney, Österreich Tideri Jobbörse Vollzeit

    Director, Risk, Assurance and Evaluation Flexible (Any Location) Ongoing/Non-ongoing, Full Time Who we areWe are Australia's national Vocational Education and Training (VET) regulator.What we doWe regulate providers that deliver VET qualifications and courses to students in Australia or offer Australian qualifications internationally, and providers that...


  • Sydney, Österreich Endeavour Energy (NSW) Vollzeit

    There's never been a better time to be in energy.And there's never been a more exciting time to be at Endeavour Energy.More than 2.7 million people across New South Wales rely on us every day for the supply of safe and reliable power to their homes and businesses.We employ more than 1,700 people across our catchment, making us one of the largest employers in...


  • Sydney, Österreich National Disability Insurance Agency Vollzeit

    Currently, there are around 4.3 million Australians with a disability.The National Disability Insurance Agency (NDIA) implements the National Disability Insurance Scheme (NDIS), which is one of the biggest social reforms in the country since Medicare.As an Agency, we support more than 600,000 participants with a significant and permanent disability, and the...


  • Sydney, Österreich Tideri Jobbörse Vollzeit

    Full time Currently, there are around 4.3 million Australians with a disability.The National Disability Insurance Agency (NDIA) implements the National Disability Insurance Scheme (NDIS), which is one of the biggest social reforms in the country since Medicare.As an Agency, we support more than 600,000 participants with a significant and permanent...


  • Sydney, Österreich Tideri Jobbörse Vollzeit

    Lead Cyber Security and Risk InitiativesAs the Director of Cyber Security and Risk, you will be responsible for leading cybersecurity initiatives across Serco Asia Pacific, ensuring alignment with global standards such as NIST, DISP, ISM, and IRAP.Key Responsibilities:Develop and implement robust security strategies aligned with NIST, ISM, and IRAP...


  • Sydney, Österreich National Disability Insurance Agency Vollzeit

    Full timeCurrently, there are around 4.3 million Australians with a disability.The National Disability Insurance Agency (NDIA) implements the National Disability Insurance Scheme (NDIS), which is one of the biggest social reforms in the country since Medicare.As an Agency, we support more than 600,000 participants with a significant and permanent disability,...


  • Sydney, Österreich Tideri Jobbörse Vollzeit

    Currently, there are around 4.3 million Australians with a disability.The National Disability Insurance Agency (NDIA) implements the National Disability Insurance Scheme (NDIS), which is one of the biggest social reforms in the country since Medicare.As an Agency, we support more than 600,000 participants with a significant and permanent disability, and the...


  • Sydney, Österreich Dp World Vollzeit

    Director - Cyber Security - Oceania - APACDP World DP World is a world leader in logistics management services.We ensure the future viability of global international trade & prosperity of communities around the world.Director – Cyber Security – Oceania - APAC The Director - Cyber Security is responsible for leading and overseeing all aspects of the...


  • Sydney, Österreich Tideri Jobbörse Vollzeit

    Director - Cyber Security - Oceania - APAC DP World DP World is a world leader in logistics management services.We ensure the future viability of global international trade & prosperity of communities around the world.Director – Cyber Security – Oceania - APAC The Director - Cyber Security is responsible for leading and overseeing all aspects of the...


  • Sydney, Österreich Dp World Vollzeit

    Director - Cyber Security - Oceania - APACDP WorldDP World is a world leader in logistics management services.We ensure the future viability of global international trade & prosperity of communities around the world.Director – Cyber Security – Oceania - APACThe Director - Cyber Security is responsible for leading and overseeing all aspects of the...


  • Sydney, Österreich Australian Financial Security Authority (AFSA) Vollzeit

    Director Regulatory Operations, various opportunities The Australian Financial Security Authority (AFSA) is seeking skilled professionals to fill various Director (EL2) vacancies within our Regulatory Operations Group (ROG).Director, Estates Administration - responsible for overseeing the management and administration of estates, ensuring adherence to legal...


  • Sydney, Österreich University Of New South Wales Vollzeit

    At UNSW, we take pride in the broad range and high quality of our teaching programs.Our teaching gains strength and currency from our research activities, strong industry links and our international nature; UNSW has strong regional... Employment Type: fixed term role until Dec 2025 as a Cyber Security Assurance Analyst within Cyber Security, UNSW IT Starting...