27 Aug
|
Hays
|
Melbourne
Are you a GRC expert and looking for your next challenge?Your new company
Join a well-established Australian organisation undergoing an exciting cyber security uplift journey. With a strong focus on governance, risk management, and compliance, this organisation is committed to strengthening its security posture and embedding best-practice cyber security frameworks across the business. You'll work alongside senior leadership and technology stakeholders while contributing to key security initiatives that support long-term organisational resilience.
Your new role
As the Security Governance, Risk & Compliance (GRC) Analyst, you will play a key role in supporting and enhancing the organisation's cyber security framework. Working closely with cyber security, technology, and business stakeholders, you will drive governance, risk, and compliance activities while ensuring alignment with industry standards and regulatory obligations. Key responsibilities include:
- Supporting the delivery of a multi-year cyber security uplift program.
- Developing and maintaining security policies, standards, and control documentation.
- Conducting risk assessments and maintaining security risk registers.
- Coordinating internal and external security audits.
- Monitoring compliance with security frameworks including ISO 27001, ISM, and Essential Eight.
- Managing remediation activities arising from audits, risk assessments, and security incidents.
- Supporting vendor risk assessments and third-party security reviews.
- Preparing cyber security reports and metrics for senior leadership and governance committees.
- Providing security guidance to business and technology teams.
What you'll need to succeed
- Experience in Cybersecurity Governance, Risk & Compliance roles.
- Strong knowledge of security frameworks such as ISO 27001, ISM, and Essential Eight.
- Experience supporting Information Security Management Systems (ISMS).
- Proven experience coordinating audits, compliance activities, and risk assessments.
- Strong understanding of security controls, vulnerability management, and remediation tracking.
- Excellent communication and stakeholder management skills, with the ability to translate technical concepts for business audiences.
- Experience working within regulated or governance-focused environments.
- Relevant tertiary qualifications in Information Technology, Cyber Security, or a related discipline.
- Industry certifications such as CISSP, CISM, or CRISC will be highly regarded
What you'll get in return
- Opportunity to contribute to enterprise-wide cyber security initiatives.
- Exposure to executive stakeholders and strategic security programs.
- Collaborative and supportive team setting.
- Career development opportunities within a growing cyber security function.
- Competitive remuneration package and flexible working arrangements.
What you need to do now
If you're interested in this role, click 'apply now' to forward an up-to-date copy of your CV, or call us now.
If this job isn't quite right for you, but you are looking for a new position, please contact us for a confidential discussion on your career.
Hays appreciates the importance of workforce diversity and inclusion. We are an equal opportunities employer and have policies, procedures and relationships in place to promote our understanding of all forms of diversity. #3014859
📌 Security GRC Analyst (Melbourne)
🏢 Hays
📍 Melbourne