Head of Cybersecurity GRC at Triskele Labs
Melbourne VIC 3000, Victoria, Australia -
Full Time


Start Date

Immediate

Expiry Date

16 Sep, 25

Salary

160000.0

Posted On

17 Jun, 25

Experience

0 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Strategic Thinking, Continuous Improvement, Domain Experience, Team Leadership, Forecasting, Executive Leadership, Team Development, Iso

Industry

Information Technology/IT

Description

At Triskele Labs, we believe cybersecurity should be built on practical experience, not just theory. We work with organisations to improve their cyber maturity through realistic, evidence-based advisory services that align with risk, regulation, and business priorities.
We are now seeking a Head of Cybersecurity GRC to lead and grow our Governance, Risk and Compliance team. This is a senior leadership role with end-to-end ownership of people, process, pipeline, and profit across our GRC services. It is ideal for someone who thrives on team leadership, service design, commercial performance, and delivering trusted advice at the executive and board level.
This role is hybrid, requiring at least two days per week in our Melbourne office. It will involve occasional on-site time with key clients and regular interaction with Triskele Labs’ broader leadership team.

REQUIREMENTS

We are looking for a proven leader with strong GRC domain experience, a passion for high-quality delivery, and the ability to grow and mentor a high-performing team. You will be commercially minded, comfortable managing business performance, and experienced in engaging directly with C-level stakeholders and boards.

You will be successful in this role if you have:

  • Significant experience in cybersecurity GRC, including team leadership and consulting delivery
  • Deep knowledge of frameworks such as ISO 27001, NIST CSF, and the Essential Eight, with the ability to translate them into practical outcomes
  • Prior experience managing a consulting P&L, including forecasting, utilisation, and performance tracking
  • Demonstrated ability to build and lead a team, implement scalable processes, and maintain a high standard of delivery
  • Strong commercial acumen and the ability to scope, price, and deliver services that meet client expectations
  • Exceptional stakeholder engagement skills, particularly with executive leadership and board members
  • A mindset focused on continuous improvement, client success, and team development
  • The ability to balance strategic thinking with hands-on support where required
Responsibilities

ABOUT THE ROLE

As the Head of Cybersecurity GRC, you will be responsible for leading the day-to-day operations and strategic direction of the GRC practice. You will manage a team of consultants across multiple levels, ensuring high quality, consistent delivery, while also owning commercial targets and forecasting.
This role is approximately 80 percent focused on management and leadership, with 20 percent delivery involvement in key or complex client engagements. You will be accountable for overseeing GRC projects, managing team utilisation, contributing to presales and proposals, driving service innovation, and representing the practice in client forums and internal leadership meetings.

KEY RESPONSIBILITIES

  • Lead and manage the GRC consulting team, including performance management, mentoring, career development, and capacity planning
  • Own the operational delivery of GRC services including ISO 27001, risk assessments, ISMS programs, cyber maturity reviews, board reporting and security governance frameworks
  • Develop and manage team processes and service delivery standards to ensure consistency, quality, and scalability
  • Maintain visibility of ongoing project work, stepping into client engagements where needed to support delivery or act as an escalation point
  • Attend and present at board meetings, risk committees, and senior stakeholder forums, translating cyber risk into business terms
  • Take ownership of forecasting, pipeline management, team utilisation, and P&L performance for the GRC practice
  • Scope and price engagements in collaboration with the sales team, ensuring a balance between client value and delivery feasibility
  • Support pre-sales activities including proposals, discovery sessions, and presentations to prospective clients
  • Contribute to service development and strategic planning as part of the Triskele Labs senior leadership group
  • Collaborate closely with leaders across Detection and Response, Offensive Security, and Incident Response to deliver integrated, high-value outcomes for clients
  • Sit on the Triskele Labs Leadership Team to own overall strategic direction of the GRC team

You will be successful in this role if you have:

  • Significant experience in cybersecurity GRC, including team leadership and consulting delivery
  • Deep knowledge of frameworks such as ISO 27001, NIST CSF, and the Essential Eight, with the ability to translate them into practical outcomes
  • Prior experience managing a consulting P&L, including forecasting, utilisation, and performance tracking
  • Demonstrated ability to build and lead a team, implement scalable processes, and maintain a high standard of delivery
  • Strong commercial acumen and the ability to scope, price, and deliver services that meet client expectations
  • Exceptional stakeholder engagement skills, particularly with executive leadership and board members
  • A mindset focused on continuous improvement, client success, and team development
  • The ability to balance strategic thinking with hands-on support where require
Loading...