02 Oct
|
Steadfast
|
Sydney
Steadfast Group is the largest general insurance broker network and the largest underwriting agency group in Australasia with growing operations internationally. We were founded on the belief that a network of brokers would be stronger together, and this idea has been the backbone of our culture ever since. We believe that none of us is as good as all of us.
We are leaders of the general insurance broking and underwriting industry, and we lead from the front.
About the Chance:
We are seeking an experienced Technology & Cyber Risk Specialist to join the team on a maternity leave cover. This role will play a key part in strengthening technology risk, cyber security governance, and third-party risk management capabilities across the organisation. Working closely with stakeholders across Technology, Risk, Legal, Procurement, and the broader business, you will help ensure risks are effectively identified, assessed, managed, and reported while supporting regulatory and compliance obligations.
Key Responsibilities:
- Conduct technology and cyber risk assessments and support the ongoing management of risk registers and treatment plans.
- Lead third-party and vendor risk reviews, ensuring appropriate security and compliance controls are in place.
- Oversee, review, and challenge third-party vendor security assessment outcomes, ensuring identified risks are appropriately understood, managed, and escalated. Vendor assessments themselves will be conducted by a dedicated team resource.
- Coordinate and complete security questionnaires, due diligence requests, and assurance responses when Steadfast is being assessed by clients, insurers, brokers, or other third parties, ensuring responses accurately reflect security controls and governance practices.
- Prepare risk reporting, dashboards, and insights for governance committees and senior stakeholders.
- Review and enhance technology risk and cyber security policies, standards, and processes.
- Provide risk and governance guidance to technology projects and business initiatives.
Skills and Qualifications:
- Experience in Technology Risk, Cyber Risk, Information Security Governance, GRC, Audit, or Operational Risk.
- Strong understanding of risk management frameworks, controls testing, risk assessment methodologies, and risk reporting.
- Knowledge of cyber security principles, third-party risk management, vendor assurance processes, and regulatory compliance requirements.
- Experience responding to security questionnaires, due diligence requests, or assurance reviews from clients, partners, regulators, or external stakeholders is highly regarded.
- Excellent stakeholder management skills with the ability to engage both technical and non-technical audiences.
- Relevant qualifications in Information Technology, Cyber Security, Risk, Audit, or a related field; industry certifications are advantageous.
About us
We are committed to providing a workplace where people feel they can bring their whole self to work. We aim to create a diverse work environment in which everyone is treated fairly and with respect and where everyone feels responsible for the reputation and performance of Steadfast.
We are strong supporters of Aboriginal and Torres Strait Islander peoples, businesses and communities through our Reconciliation Action Plan. We are also passionate about the environment, diversity, equity and inclusion, and love to give back to charities through the Steadfast Foundation.
We are proud of our Family Friendly Accreditation. We are major sponsors of Women in Insurance,
Young Insurance Professionals, Head over Heels, the Dive In festival and are active members of Champions of Change.
To apply
We are always on the lookout for great talent, if you are interested in a confidential conversation regarding career opportunities, please email ••••@steadfast.com.au
We believe that our people are our greatest asset. Our people are chosen for their personalities, their ethics and professional qualities without any exclusion, preferential treatment, or discrimination. We are proud to be an equal opportunities employer and do not discriminate by reason of age, gender, gender identity, race, sexual orientation, nationality, religion or disability or any other difference. We encourage applications from all individuals and will provide appropriate assistance for candidates with disabilities or special needs throughout the recruitment process upon request.
Recruitment Privacy Collection Notice:
Steadfast Group Limited and the Steadfast entity recruiting for this role (“we/us”) collect your personal information to assess your application, communicate with you, conduct police checks (for all hires) and other role-specific checks where relevant and lawful, and if successful, progress onboarding. If you do not provide requested information, we may not be able to progress your application.
If your application is unsuccessful, we may keep your details and contact you about future opportunities unless you opt out; you can opt out at any time by contacting ••••@steadfast.com.au.
We may share information with Steadfast related entities and service providers supporting recruitment (e.g., screening/verification providers, agencies, and technology providers). Information may be stored or processed in Australia, New Zealand, Singapore and the Philippines (which may change over time).
For more information, see:
Full notice:
📌 IT and Cyber Risk Lead - Maternity Leave Cover (Sydney)
🏢 Steadfast
📍 Sydney