Skip to main content

LeadRisk Assessor_Cybersecurity

On-siteContractSenior

Melbourne, Victoria, Australia · Posted 3 days ago

XPT Software Australia Pty Ltd | Contract

Melbourne,Sydney,Brisbane,perth, Australia | Posted on 08/13/2026

  • XPT SoftwareAustralia PTY Ltd, incorporated in 2016, is a Software Services company
  • XPT works with topclients across Australia in Banking, Insurance, Telecom,Retail, Energy, Mining and Manufacturingdomains.
  • We have 120+technocrats in Australia working at our clientlocations.
  • XPT SoftwareAustralia is part of group companies which has globalpresence across India & Europe.
  • We have served100+ clients globally, fulfilling their onsite-offshoreneeds.

Job Description

RoleSummary

Senior cyber security risk professional responsiblefor leading risk assessments, providing strategic risk guidance, andinfluencing business decisions through clear communication of cyber securityrisks and opportunities.

KeyAccountabilities

  • Lead cyber security riskassessments across projects, products, and technology initiatives.
  • Collaborate with project teamsto identify, assess, and address security gaps and control deficiencies.
  • Communicate complex technicalrisks in clear business terms, including to executive stakeholders through riskdecision-making processes.
  • Make informed risk-baseddecisions and manage stakeholder expectations effectively.
  • Lead the uplift of teamprocesses, documentation, and engagement models.

AdditionalResponsibilities

  • Collaborate with businessstakeholders, engineers, delivery teams, product vendors, partners, and cyberassurance teams to understand and communicate cyber risk.
  • Define and maintain reusableassets including standardised findings, templates, and process improvements.
  • Contribute to the creation andgovernance of security strategy, standards, frameworks, and policies.
  • Identify and communicatesecurity risks in a timely manner while incorporating insights from privacy,legal, engineering, and operational stakeholders.
  • Develop strategic relationshipsacross industry and technology vendors to anticipate emerging threats andopportunities.
  • Mentor and coach risk assessorsand secondees through guidance, feedback, and knowledge sharing.
  • Manage complex initiativeswhile simplifying outcomes to support effective delivery and execution.

Qualificationsand Experience

  • Minimum 15 years of experiencewithin Cyber Security.
  • At least 8 years of experiencein a Governance, Risk and Compliance (GRC) or Risk Management function.
  • Practical experience conductingtechnical risk assessments.
  • Knowledge of industryframeworks and standards including ISO 27001, PCI-DSS, NIST, and enterprisesecurity frameworks.
  • Strong stakeholder engagementand communication skills with the ability to translate technical risks intobusiness insights.
  • Experience working within largeand complex enterprise environments.
  • Previous experience in anon-cyber risk or GRC role.
  • Industry certifications such asCRISC, CISSP, CISM, or SABSA.
  • Experience working within Agileand DevOps environments.
#J-18808-Ljbffr
Locations
Melbourne, Victoria, Australia
Experience
15+ years

Categories

Skills

We use cookies

We use cookies to understand how this board is used and to improve it. Analytics run only if you accept. Cookie Policy