Information Security & Data Governance Manager

at  Movember

Melbourne, Victoria, Australia -

Start DateExpiry DateSalaryPosted OnExperienceSkillsTelecommuteSponsor Visa
Immediate31 Aug, 2024Not Specified01 Jun, 2024N/AGood communication skillsNoNo
Add to Wishlist Apply All Jobs
Required Visa Status:
CitizenGC
US CitizenStudent Visa
H1BCPT
OPTH4 Spouse of H1B
GC Green Card
Employment Type:
Full TimePart Time
PermanentIndependent - 1099
Contract – W2C2H Independent
C2H W2Contract – Corp 2 Corp
Contract to Hire – Corp 2 Corp

Description:

ABOUT MOVEMBER

Movember is the leading Men’s Health Organisation and Charity changing the face of men’s health globally, tackling mental health and suicide prevention, prostate cancer, and testicular cancer. In our mission to stop men dying too young, we’re seeking an experienced Global Director, Information Security & Data Governance to join our Movember Tech Team based in Australia.

Responsibilities:

ABOUT THE ROLE

The Information Security & Data Governance Manager is a hands-on role within our tech team with leadership responsibilities for implementing and running our Enterprise Information Security Management Program. This will involve identifying, evaluating, and reporting on legal & regulatory, IT and cybersecurity risks, while supporting and advancing Movember’s strategic programs of work.

SOME RESPONSIBILITIES WILL BE:

  • Owns the information security processes across Movember including ISO27001 accreditation activities.
  • Provides regular reporting on the status of the information security program to senior business leaders.
  • Chairs & facilities an information security governance group with nominated technology and business stakeholders.
  • Operates internal audit processes to verify the effectiveness of controls.
  • Develops, socialises and coordinates approval and implementation of new or updated security policies.
  • Works with the vendors to ensure that information security requirements are included in contracts.
  • Directs the creation of targeted information security awareness training programs for internal staff.
  • Provides clear risk mitigating directives for projects with components in IT, including the mandatory application of controls.
  • Develops and enhances an up-to-date information security management framework based on the following: International Organization for Standardization (ISO) 270001 and National Institute of Standards and Technology (NIST) Cybersecurity Framework.
  • Creates a risk-based process for the assessment and mitigation of any information security risk in the ecosystem consisting of supply chain partners, vendors, consumers and any other third parties.
  • Defines and facilitates the processes for information security risk and for legal and regulatory assessments, including the reporting and oversight of treatment efforts to address negative findings.
  • Ensures that security is embedded in the project delivery process by providing the appropriate information security policies, practices and guidelines.
  • Coordinates the development of implementation of incident response plans and procedures to ensure that business-critical services are recovered in the event of a security event; provides direction, support and in-house consulting in these areas.

FOR THIS ROLE, YOU’LL NEED:

  • Demonstrated experience and success in roles managing risk management, information security, and IT security.
  • Knowledge of common information security management frameworks, such as ISO/IEC 27001, ITIL, COBIT as well as those from NIST, including 800-53 and Cybersecurity Framework
  • Sound knowledge of business management and a working knowledge of information security risk management and cybersecurity technologies
  • Up-to-date knowledge of methodologies and trends in both business and IT
  • Project management skills: financial/budget management, scheduling and resource management

DOES THIS ROLE SOUND UP YOUR ALLEY?

If so, we’d love to hear from you. Click ‘Apply’ to send through your application


REQUIREMENT SUMMARY

Min:N/AMax:5.0 year(s)

Information Technology/IT

IT Software - Network Administration / Security

Software Engineering

Graduate

Proficient

1

Melbourne VIC, Australia