Principal Security Governance and Privacy Specialist
Vor 2 Tagen
Principal Security Governance and Privacy Specialist The Principal Security Governance & Privacy Specialist is instrumental in developing, managing, and maintaining security policies, standards, and procedures. The role contributes to strategic security analysis and planning while ensuring compliance with security policies and proactively managing security risks. The role will integrate security governance into existing forums and addressing any gaps through strategic governance approaches and take a lead role on ensuring a cohesive security team operationally. The team APRA is embarking on an ambitious program of change incorporating cloud, data, digital and security initiatives. This has created the opportunity to join a small but growing Security team which sits within the Technology, Data and Security division. The Security team manages cyber, information and personnel security aligning with the Protective Security Policy Framework (PSPF).The team works in a highly collaborative manner with a wide range of stakeholders at all levels of the organisation to develop, communicate and implement the security strategy. Key stakeholders within the division include the CIO, CDO, CRO, Enterprise Architecture and IT Governance. Other key stakeholders across the organisation will include the Business Divisions, People and Culture, Procurement and Project Management Office. Key responsibilities Lead the development, management and maintenance of comprehensive security policies, standards, and procedures across personnel, physical and cyber/information security. Oversee and ensure compliance with security standards and regulatory requirements and work closely with colleagues to gather information for reporting and analysis. Integrate security governance into existing forums and develop governance approaches to address identified gaps. Proactively maintain and manage the security risk register and support the execution of security risk assessments. Support security risk management and reporting processes, including policy exceptions and exemptions. Lead knowledge management across the security team to ensure up-to-date procedures and capabilities. Work with management on proactive team capability planning including skills, RACIs and capability gaps, and team operational activities including cross-security team process improvement, resourcing management, budget and operational efficiencies. Support the CISO by contributing to regular executive-level reporting on security outcomes.Contribute to government reporting (e.g., PSPF, E8, response to government directives). Security Plan and Strategy Management: Contribute to strategic security analysis and planning to enhance the overall security framework, execution of security objectives and resolution of gaps. About you Proven experience in developing and managing security policies and standards. Experience in strategic security analysis and planning. Strong background in managing security compliance activities. Experience in maintaining security risk registers and conducting security risk assessments. Knowledge and application of security governance frameworks and integration strategies. Proficiency in security policy development and management. Strong analytical skills for conducting strategic security analysis. Expertise in security compliance and regulatory standards. Ability to manage and assess security risks effectively. Familiarity with security governance models and best practices. Knowledge of relevant government reporting requirements and frameworks. About APRA Australian Prudential Regulation Authority (APRA) was established in 1998 as an independent statutory authority that supervises almost 1,200 financial institutions that manage $8.6 trillion in assets for Australians across the banking, insurance and superannuation sectors.In overseeing the safety, competitiveness and stability of the financial system, we seek to recruit, develop and retain highly skilled professionals, who want to help shape financial services and protect the financial wellbeing of the Australian community. Our employee base of almost 900 come predominantly from the commercial financial services industry or other government agencies; as such, we have the feel of a small corporate organisation that can work flexibly and with agility. Why Work for APRA We recognise the skills, experience and commitment that our staff bring to their professional lives, and we seek to reward them accordingly. We also recognise that for our staff to be able to perform at their best, we need to ensure that they are able to bring their best selves to work. Our commitment to wellbeing is having engaged people supported by resilient leaders within a values-aligned culture. At APRA, we’re committed to providing an inclusive workplace where everyone belongs, feels valued and respected. We aspire to attract and foster diversity of background, thought, and experience, recognising that a broad range of perspectives, approaches and ideas makes us stronger, and better enables us to meet our obligation to protect the financial wellbeing of the Australian community. If you need any adjustments during the recruitment process, please inform at application stage so we can do our best to accommodate your requirements. Be careful - Don’t provide your bank or credit card details when applying for jobs. Don't transfer any money or complete suspicious online surveys. If you see something suspicious, report this job ad. #J-18808-Ljbffr
-
Senior Security Governance
Vor 2 Tagen
Council of the City of Sydney, Österreich APRA VollzeitA government agency in financial regulation is seeking a Principal Security Governance and Privacy Specialist to lead the development of security policies and compliance management. This crucial role involves strategic security analysis, overseeing security assessments, and integrating governance frameworks. The successful candidate will have substantial...
-
Principal Advisor — Privacy, RTI
vor 2 Wochen
City of Brisbane, Österreich Queensland Government VollzeitA government authority in Brisbane is seeking a Principal Advisor for Information Privacy and RTI. This role involves maintaining compliance with privacy legislation, managing data breaches, and leading corporate governance initiatives. Candidates should possess strong skills in stakeholder engagement and report preparation. This full-time position offers a...
-
Principal Advisor, RTI
Vor 5 Tagen
City of Brisbane, Österreich Sport, Racing and Olympic and Paralympic Games VollzeitPrincipal Advisor, RTI & Privacy, Sport, Racing and Olympic and Paralympic Games Sport, Racing and Olympic and Paralympic Games – Brisbane QLD The Principal Advisor, Information Privacy and RTI, is part of the Corporate Services division, within the Governance, Performance and Risk (GPR) team which works closely with internal stakeholders, central...
-
Principal Advisor Privacy and Risk
vor 2 Wochen
City of Brisbane, Österreich Queensland Government VollzeitBe among the first 25 applicants. The Principal Advisor, Information Privacy and RTI, is part of the Corporate Services Division within the Governance, Performance and Risk (GPR) Team. This team works closely with internal stakeholders, central agencies, external statutory authorities and portfolio partners to deliver corporate governance and policy...
-
Principal Advisor Privacy and Risk
vor 2 Wochen
City of Brisbane, Österreich Queensland Government VollzeitPrincipal Advisor, Information Privacy and RTI The Principal Advisor, Information Privacy And RTI, Is Part Of The Corporate Services Division, Within The Governance, Performance And Risk (GPR) Team Which Works Closely With Internal Stakeholders, Central Agencies, External Statutory Authorities And Portfolio Partners To Deliver corporate governance and policy...
-
Privacy And Information Governance Officer
vor 1 Woche
City of Melbourne, Österreich Catholic Education Western Australia VollzeitPrivacy and Information Governance Officer Catholic Education Western Australia – Perth WA 1d ago , from Catholic Education Western Australia For over 150 years, our schools, colleges, early learning centres and out of school care programs, have been an integral part of education in Western Australia. Together we form the state's second-largest education...
-
Council of the City of Sydney, Österreich SG Fleet AU VollzeitInformation Security Governance, Risk and Compliance Specialist Join to apply for the Information Security Governance, Risk and Compliance Specialist role at SG Fleet AU We are a financial services company that specialises in fleet management, vehicle leasing and salary packaging, with a presence across Australia, the UK and NZ. A total portfolio under...
-
Principal Advisor, RTI
Vor 6 Tagen
City of Brisbane, Österreich Department of Sport, Racing and Olympic and Paralympic Games VollzeitDepartment of Sport, Racing and Olympic and Paralympic Games – Brisbane QLD The Principal Advisor role includes: maintaining the department's information privacy and Right to Information (RTI) framework to ensure compliance with relevant legislation providing authoritative and timely advice to departmental staff on information privacy and RTI matters...
-
Privacy and Information Governance Officer
vor 2 Wochen
City Of Stirling, Österreich Catholic Education Western Australia VollzeitPrivacy and Information Governance Officer Catholic Education in Western Australia (CEWA) is the second largest education provider in the State. We cater for more than 76,000 students in 162 schools. CEWA strives to create progressive environments that enhance learning. Our culture is underpinned by our Vision, Quality Catholic Education (QCE) Elements and...
-
Hybrid Information Governance Specialist: Privacy
vor 2 Wochen
City Of Stirling, Österreich Racing And Wagering Western Australia VollzeitA government trading enterprise in Western Australia is looking for an Information Governance Specialist. You will design and implement information management frameworks while supporting privacy compliance and guiding risk-based decision-making. This full-time role requires experience in information governance and the ability to work collaboratively across...