Governance, Risk and Compliance Analyst at Mission Australia
Sydney, New South Wales, Australia -
Full Time


Start Date

Immediate

Expiry Date

04 Jan, 27

Salary

65000.0

Posted On

06 Oct, 26

Experience

1 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Industry

Information Technology & Services

Description
  • 12-month Max Term Contract
  • Location: Sydney, NSW 2000 with Work from Home Options!
  • Salary Starting at $110,000 + Super + NFP Salary Packaging Benefits
  • Make a meaningful difference to the lives of Australians in need

Life at Mission Australia

When you join the team at Mission Australia, you become part of a community who are determined to end homelessness and ensure people in need can thrive. United by our Christian purpose and values, we advocate for a fairer Australia, to meet the growing needs of people across the country. Together we are building hope and possibility for all.


Find out more about us and our purpose.


Your opportunity

As a key member of our Information Security Governance, Risk & Compliance Team, you will help strengthen Mission Australia's cyber security, risk and compliance capabilities, with a primary focus on managing third-party and vendor security risk.


This is a great opportunity to play a key role in strengthening how we manage risk across our supplier ecosystem, supporting our broader Cyber Security Strategy and helping the organisation make informed, risk-based decisions.

You will work closely with business stakeholders, procurement, and technology teams to embed practical, scalable security practices across the organisation.


We are looking for someone who is not just process-driven, but also forward-thinking. You'll:

  • Use AI and automation tools to streamline assessments, reporting, and insights
  • Help improve how we use data to identify risks and trends
  • Contribute to continuous improvement across our GRC practices

Your key responsibilities will be:

Third-Party Security (Primary Focus)

  • Perform security assessments for vendors using a risk-based approach
  • Maintain and uplift our third-party risk register and processes
  • Support due diligence for new vendors and contract renewals
  • Monitor vendor compliance with security and privacy requirements
  • Contribute to the transition toward continuous vendor monitoring

Stakeholder Engagement & Influence

  • Partner with procurement, legal, and business teams
  • Provide practical guidance on managing vendor risk
  • Build awareness and capability across the organisation
  • Support clear and meaningful reporting to leadership

GRC Support Activities

  • Support risk management processes
  • Assist with compliance activities (including ISO and audits)
  • Contribute to control assurance and governance practices
  • Support the team with Awareness Training
  • Provide updates to support governance reporting

Requirements for success

  • Experience in GRC, cyber security, or risk/compliance (ideally 3+ years)
  • Exposure to third-party or vendor risk management (highly desirable)
  • Strong stakeholder engagement and communication skills
  • Ability to translate technical risks into clear business language
  • A proactive mindset with attention to detail

Desirable:

  • Experience supporting ISO 27001 or similar frameworks
  • Relevant certifications (e.g. CISA, CRISC, ISO 27001)

Responsibilities
Loading...