Reports to: Head of IT & Data
Direct Reports: 1
Department: IT
Join a high-growth Australian insurer that is challenging the big players and putting customers at the centre of everything it does.
This is a rare chance to own the cyber security posture of a growing, regulated business, without the layers of a large institution. You will report to the Head of IT & Data, lead a Cyber Security Specialist, and have a genuine voice in business and technology decisions.
The role
- Own and drive the cyber security strategy, governance framework and compliance obligations, including CPS 234, Essential Eight and NIST
- Lead AI governance and security, developing the controls, policies and standards that keep AI use secure, compliant and responsible
- Oversee security operations, vulnerability management and incident response, and lead the response to significant incidents
- Manage the cyber risk register, third-party and supplier assurance, penetration testing and audit activity
- Lead security workstreams across technology projects and report clearly to senior stakeholders and governance forums
- 7 to 10 years in cyber security, information security or technology risk
- Hands-on experience managing CPS 234 obligations and regulator or auditor interactions
- Solid technical grounding across Azure cloud, network, endpoint and application security, plus tools such as SIEM, EDR and vulnerability management platforms
- Experience leading incidents, audits, remediation and risk assessments
- The ability to explain complex cyber risk in plain business terms, and to lead and develop others
Culture
- A high-performance, values-led business with a strong focus on integrity and doing the right thing for customers
- A small, collaborative technology team where you work closely with business leaders, risk, compliance and legal
- [CONFIRM: any further team, working style or autonomy detail to add]
- A hands-on leadership role with real ownership and visibility
- The chance to shape AI governance at an early stage







