Cyber Sec Governance
vor 6 Stunden
Employment Type: full time continuing role as a Cyber Security Governance and Compliance Manager Excellent salary package including superannuation Location: UNSW Kensington Campus (Hybrid Working Opportunities) About UNSW:
UNSW isn't like other places you've worked. Yes, we're a large organisation with a diverse and talented community, a community doing extraordinary things. Together, we are driven to be thoughtful, practical, and purposeful in all we do. Taking this combined approach is what makes our work matter. If you want a career where you can thrive, be challenged and do meaningful work, you're in the right place.
The Cyber Security Governance and Compliance Manager is responsible for leading the development, implementation, and continuous improvement of the University's cyber security governance framework. This role ensures the organisation remains compliant with internal and external cyber security policies, standards, and regulations. The Cyber Security Governance and Compliance Manager will provide strategic leadership in managing audits, certifications, and regulatory obligations, such as DISP, SOCI, and ISO 27001, whilst improving the maturity of cyber security governance practices across the University. Additionally, the Cyber Security Governance and Compliance Manager will act as a subject matter expert to senior stakeholders on cyber security compliance, risk management, and governance matters. Developing and overseeing key operational metrics for tracking the University's cyber security compliance posture, ensuring the organisation meets its compliance objectives. The Cyber Security Governance and Compliance Manager reports to the Head of Cyber Security Governance & Assurance and has several direct reports.
Accountabilities:
Lead the strategic oversight and continuous improvement of the cyber security policy framework, ensuring alignment with industry standards and regulatory requirements. Develop, implement and maintain cyber security policies, standards, and guidelines in response to emerging risks and changes in the threat landscape. Lead the quarterly Cyber Security Standards Review process, ensuring policies and standards remain current and relevant to organisational needs. Oversee the operationalisation and effectiveness of the policy compliance attestation process, ensuring compliance across the University. Manage security baselines and associated policies, ensuring their alignment with the organisation's security posture and strategic goals. Lead the development and implementation of cyber security compliance strategy and framework, ensuring ongoing compliance with DISP, SOCI, ISO 27001, and other regulatory requirements. Oversee bi-annual compliance assessments, ensuring that findings are reported, agreed, and remediated through strategic action plans. Provide leadership and support for the DISP accreditation and ISO 27001 certification processes, ensuring full compliance and successful certification. Manage the University's compliance with the Security of Critical Infrastructure Act (SOCI) and ensure that PCI-related obligations are continuously met. Ensure that all regulatory requirements are tracked, monitored, and integrated into the University's broader cyber security governance strategy. Oversee internal and external audit engagements, including NSW Audit Office audits, DISP, SOCI, and other compliance audits, ensuring that all requirements are met, and corrective actions are implemented. Lead the strategic coordination of cyber security insurance audits and renewals, ensuring all necessary documentation and compliance requirements are fulfilled. Establish and manage key operational metrics for monitoring cyber security audit and insurance processes, ensuring continuous improvement and accountability. Lead and mature the Cyber Security GRC (Governance, Risk, and Compliance) Communities of Practice, fostering collaboration and best practice sharing across faculties and divisions. Represent the cyber security function at key governance forums, such as the weekly Change Advisory Board (CAB) and monthly Business Partners (BP) forums, ensuring cyber security governance is integrated into decision-making processes. Lead the strategic maturity uplift of the Cyber Security Exemption Process, ensuring that all exemptions are justified, managed, and periodically reviewed for ongoing relevance. Provide strategic cyber security consulting and advisory services to the Cyber Security Enablement Program and other key initiatives across the University, ensuring alignment with governance and compliance standards. Oversee the management of the Security Service Catalogue, ensuring it is regularly updated and accessible. Oversee and manage the Asset register in Cyber Security GRC Platform, ensuring all new assets are properly assessed and approved within the cyber security governance framework. Align with and actively demonstrate the Code of Conduct and Values. Ensure hazards and risks psychosocial and physical are identified and controlled for tasks, projects, and activities that pose a health and safety risk within your area of responsibility. Who you are:
Relevant tertiary qualification with extensive experience (7+ years) in cyber security governance, risk management, and compliance, or equivalent competence gained through any combination of education, training and experience. Strong knowledge and experience with compliance frameworks, including DISP, SOCI, ISO 27001, PCI-DSS, and other relevant regulatory requirements. Proven track record of managing cyber security audits and certifications, with experience coordinating both internal and external audit activities. Demonstrated leadership in developing and enforcing cyber security policies, standards, and regulatory requirements across complex organisations. Strong strategic and project management skills, with the ability to lead multiple governance and compliance initiatives simultaneously. Excellent communication, negotiation, and interpersonal skills, with a proven ability to influence and engage stakeholders at all levels of the organisation. Certifications such as CISM, CISSP, CRISC, ISO 27001 Lead Auditor, or related certifications are highly desirable. Strong analytical and problem-solving skills, with the ability to present complex governance and compliance information to diverse audiences. High level of motivation, resilience, and the ability to lead teams and work effectively within cross-functional environments. Experience with cyber security governance and risk management tools, such as Protecht GRC tool, CyberGRX, UpGuard, and Bitsight. An understanding of and commitment to UNSW's aims, objectives and values in action, together with relevant policies and guidelines. Knowledge of health & safety (psychosocial and physical) responsibilities and commitment to attending relevant health and safety training. To Apply : If this is of interest to you, please submit your CV, Cover Letter and responses to the Skills and Experience outlined above and in the position description .
Applications close: Sunday 27th of October 2024 at 11.30pm
Benefits and Culture
Flexible hybrid working Additional 3 days of leave over the Christmas Period Access to lifelong learning and career development Progressive HR practices Discounts and entitlements UNSW is committed to equity diversity and inclusion. Applications from women, people of culturally and linguistically diverse backgrounds, those living with disabilities, members of the LGBTIQ+ community; and people of Aboriginal and Torres Strait Islander descent, are encouraged. UNSW provides workplace adjustments for people with disability, and access to flexible work options for eligible staff.
#J-18808-Ljbffr
-
Cyber Sec Assurance Analyst
vor 4 Wochen
new south wales, Österreich Tideri Jobbörse VollzeitAt UNSW, we take pride in the broad range and high quality of our teaching programs.Our teaching gains strength and currency from our research activities, strong industry links and our international nature; UNSW has strong regional...Employment Type: fixed term role until Dec 2025 as a Cyber Security Assurance Analyst within Cyber Security, UNSW IT Starting...
-
Cyber Security Specialist
vor 1 Woche
new south wales, Österreich Pyramid Global Technologies VollzeitAbout the job Cyber security specialist Job Description for Cyber Security Specialist in Melbourne/Sydney A minimum of 10 years of experience in cyber security roles within major organizations, focusing on management of governance, risk, and compliance.Relevant industry certification(s) such as CISSP, CISM, CRISC, CISA, ISO/IEC 27001 Lead Implementer/Auditor...
-
Cyber Security Specialist
vor 4 Wochen
new south wales, Österreich West Recruitment Pty Ltd VollzeitEmail: Call: West Sector: TechnologyJob Summary- Flexible working- Excellent package and benefits- Leading gaming companyJob DescriptionWest Technology are currently partnering with a leading player in the gaming industry who are currently recruiting for an experienced Cyber Security Specialist to fortify their digital landscape.Key Responsibilities:...
-
Cyber Security Specialist
vor 1 Woche
new south wales, Österreich Pyramid Global Technologies VollzeitAbout the job Cyber Security Specialist Job Description: A minimum of 10 years of experience in cyber security roles within major organisations, focusing on management of governance, risk, and compliance.Relevant industry certification(s) such as CISSP, CISM, CRISC, CISA, ISO/IEC 27001 Lead Implementer/Auditor and/or relevant industry experience...
-
Manager, Group Cyber And Technology Risk
vor 4 Wochen
new south wales, Österreich Qantas VollzeitJob Description The Manager Group Cyber and Technology Risk & Assurance will be responsible for managing and delivering strategic risk management and cyber governance activities, across the Qantas Group.This includes managing the pipeline of risk, assurance and compliance activities, ensuring that mitigation actions are addressed according to priority,...
-
new south wales, Österreich Dp World VollzeitDirector - Cyber Security - Oceania - APAC DP World DP World is a world leader in logistics management services.We ensure the future viability of global international trade & prosperity of communities around the world.Director – Cyber Security – Oceania - APAC The Director - Cyber Security is responsible for leading and overseeing all aspects of the...
-
Senior Network Security Technician
vor 4 Wochen
new south wales, Österreich Paxus - Technology + Digital Talent VollzeitMinimum NV2 security Clearance of Baseline is required The Senior Network Security Technician will be responsible for various tasks, which include, but are not limited to:Leading the design, development, and implementation of Cyber solutions in line with best practices and security frameworks.Managing design and configuration activities related to firewalls,...
-
Application Security Engineer
vor 4 Wochen
new south wales, Österreich Protecht VollzeitProtechtWe offer enterprise risk management (ERM, GRC) software to help your organisation achieve its objectives. Contact us to learn more about our solutions.About usWe are Protecht - a fast growth Governance, Risk & Compliance (GRC) SaaS business. We provide world-class enterprise risk management, compliance, training, and advisory services to over 350...
-
Grc Specialist
vor 4 Wochen
new south wales, Österreich Tecala Group VollzeitSecurity (Information & Communication Technology) Full time Tecala is an award-winning national ICT managed services provider. We work hard to help our customers transform their businesses through the innovative use of technology and need more great people to join our vibrant and growing team.We pride ourselves on our reputation for quality and consistently...
-
Technical Program Manager-Threat Hunting
vor 4 Wochen
new south wales, Österreich Microsoft VollzeitTechnical Program Manager - Threat HuntingFull timeSubsidised health insurance + stock discountsThe mission of Microsoft Security Response Center (MSRC) is to enable Microsoft to build the most trusted devices and services, while keeping our company safe and our data protected. As part of the Microsoft Security organization, and a steward of Microsoft and...
-
Senior Consultant To Manager
vor 1 Tag
new south wales, Österreich Tideri Jobbörse VollzeitSenior Consultant to Manager - Finance & Corporate Advisory | Education Consulting Location: Melbourne, Brisbane Contract Type: Permanent MinterEllison is one of Australia's largest law firms, with nearly 200 years of business history.We're known for our legal and consulting expertise - and for our inclusive and authentic character.Our purpose is to create...
-
Manager, Enterprise Risk Management
vor 4 Wochen
new south wales, Österreich Resmed Inc VollzeitManager, Enterprise Risk Management Locations: Sydney, NSW, AustraliaTime Type: Full timePosted on: Posted YesterdayJob Requisition ID: JR_034805The Finance team's goal is to be a trusted and collaborative partner to all the businesses and functional teams that we work with, bringing business acumen, financial expertise and insights to aid decision-making...
-
Manager, Enterprise Risk Management
vor 1 Tag
new south wales, Österreich Tideri Jobbörse VollzeitManager, Enterprise Risk Management Locations: Sydney, NSW, Australia Time Type: Full time Posted on: Posted Yesterday Job Requisition ID: JR_034805 The Finance team's goal is to be a trusted and collaborative partner to all the businesses and functional teams that we work with, bringing business acumen, financial expertise and insights to aid...
-
Non Executive Director
vor 4 Wochen
new south wales, Österreich Tideri Jobbörse VollzeitGreenpeace Australia Pacific Limited (GPAP) is seeking to appoint 2 (two) new directors at the 2024 Annual General Meeting (AGM). GPAP's Board is dedicated to upholding GPAP's values, mission and purpose. These are critical as we work to project a compelling vision of an earth capable of nurturing life in all of its magnificent diversity and use our...
-
Transition Manager
vor 4 Wochen
south australia, Österreich Allectum VollzeitMust be an Australian citizen with a minimum AGSVA NV2 security clearance.If you're a Transition Manager or experienced Project Manager located in SA, we are hiring and would love to hear from you!Allectum are seeking a Transition Manager who has a NV2 clearance or above, PV is preferred.For this role, you will be passionate about managing complex projects...