Cyber Security & GRC Analyst

Michael Page Australia

City of Melbourne

Hybrid

AUD 90,000 - 120,000

Full time

4 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Permanent, full-time Melbourne role

Job summary

Michael Page Australia is assisting an FMCG organisation in Melbourne seeking a GRC Analyst to own governance, risk and compliance functions and support security audits. The role offers broad stakeholder exposure and hands-on ISMS work within ISO 27001, ISM and ASD Essential Eight.

The position requires 3–5 years in GRC, strong documentation and audit-ready evidence management, plus vendor risk and control reviews experience.

Qualifications

  • 3-5 years' experience in Cybersecurity Governance, Risk & Compliance (GRC).
  • Strong working knowledge of ISO 27001, ISM and ASD Essential Eight.
  • Experience maintaining ISMS frameworks and security documentation.
  • Proven experience supporting security audits and audit-ready evidence management.
  • Experience in vendor risk management, risk assessments and control reviews.
  • Strong stakeholder engagement and communication skills.
  • Tertiary qualifications and certifications such as CISSP, CISM or CRISC are advantageous.

Responsibilities

  • Execute and report on the organisation's multi-year cybersecurity uplift roadmap.
  • Maintain security policies, standards and controls aligned to ISO 27001, ISM and ASD Essential Eight.
  • Coordinate internal and external security audits, including evidence collection and remediation tracking.
  • Manage risk assessments, business impact assessments and third-party security reviews.
  • Maintain and improve the Information Security Management System (ISMS).
  • Monitor security compliance, identify control gaps and drive remediation activities.
  • Provide governance reporting and cybersecurity guidance to key stakeholders.

Skills

GRC governance
Stakeholder engagement
Audit support
ISO 27001 knowledge
ASD Essential Eight

Education

CISSP/CISM/CRISC advantageous

Job description

  • Own audit readiness for an ASX-listed organisation
  • Hands-on GRC role with broad stakeholder exposure
About Our Client

An organisation within the FMCG industry, located in Burnley.

Job Description
  • Execute and report on the organisation's multi-year cybersecurity uplift roadmap.
  • Maintain security policies, standards and controls aligned to ISO 27001, ISM and ASD Essential Eight.
  • Coordinate internal and external security audits, including evidence collection and remediation tracking.
  • Manage risk assessments, business impact assessments and third-party security reviews.
  • Maintain and improve the Information Security Management System (ISMS).
  • Monitor security compliance, identify control gaps and drive remediation activities.
  • Provide governance reporting and cybersecurity guidance to key stakeholders.
The Successful Applicant

A successful GRC Analyst should have:

  • 3-5 years' experience in Cybersecurity Governance, Risk & Compliance (GRC).
  • Strong working knowledge of ISO 27001, ISM and ASD Essential Eight.
  • Experience maintaining ISMS frameworks and security documentation.
  • Proven experience supporting security audits and audit-ready evidence management.
  • Experience in vendor risk management, risk assessments and control reviews.
  • Strong stakeholder engagement and communication skills.
  • Relevant tertiary qualifications and certifications such as CISSP, CISM or CRISC are advantageous.
What's on Offer
  • Exposure to enterprise cybersecurity governance and audit programmes.
  • Broad role combining strategic GRC activities with hands-on security support.
  • Permanent, full-time position based in Melbourne.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Security & GRC Analyst
Cyber Security & GRC Analyst

MPAU Technology • City of Melbourne

On-site
AUD 100,000 - 140,000
Senior Cyber GRC Specialist
Senior Cyber GRC Specialist

Emmbr • City of Melbourne

Hybrid
AUD 140,000 - 210,000
Cyber Security GRC Analyst
Cyber Security GRC Analyst

FourQuarters Recruitment • City of Melbourne

On-site
AUD 148,000 - 203,000
GRC & Cybersecurity Analyst - ISO 27001 & Audits
GRC & Cybersecurity Analyst - ISO 27001 & Audits

MPAU Technology • City of Melbourne

On-site
AUD 100,000 - 140,000
Cyber Security Consultant - GRC
Cyber Security Consultant - GRC

Teamified • Canberra

On-site
AUD 70,000 - 110,000
Cyber Security Analyst
Cyber Security Analyst

Blackroc • City of Brisbane

On-site
AUD 110,000 - 160,000
GRC & Cybersecurity Analyst — ISO 27001 & Audit Lead
GRC & Cybersecurity Analyst — ISO 27001 & Audit Lead

Michael Page Australia • City of Melbourne

Hybrid
AUD 90,000 - 120,000
Permanent, full-time Melbourne role
Cyber GRC Analyst
Cyber GRC Analyst

Client 1 • City of Brisbane

On-site
AUD 110,000 - 160,000
Private health insurance
Generous annual leave entitlements
Annual incentive programme
+5
Cyber Security Consultant - GRC
Cyber Security Consultant - GRC

Teamified • City of Brisbane

On-site
AUD 90,000 - 120,000
GRC Security Specialist
GRC Security Specialist

Emmbr • City of Melbourne

On-site
AUD 100,000 - 130,000