Senior Manager Cyber Risk

Posted Yesterday
Be an Early Applicant
Area, Viveiro, Lugo, Galicia
Senior level
Fintech • Financial Services
The Role
Lead the Cyber Risk team in providing risk management advice, enhancing cyber security capabilities, and collaborating with technical teams.
Summary Generated by Built In

Senior Manager Cyber Risk

Are you a seasoned professional in the realm of Cyber Risk, equipped with a keen understanding of the complexities surrounding security challenges? We are seeking a Senior Manager who excels in navigating the intricacies of cyber risk management, particularly in governance and control frameworks. In this Line 2 risk management role, your expertise will be instrumental in guiding technical teams and shaping approaches to mitigate cyber risks. If you possess a strong background in Cyber or technology risk and are eager to leverage your knowledge to influence and lead rather than engage in hands-on implementation, this opportunity is tailored for you.

See yourself in our team:

The Technology and Operations (Tech & Ops) Risk team is responsible for providing specialist Operational Risk and Compliance (OR&C) advice and assurance of decisions made across the Technology, Chief Operating Office, and Business Unit divisions.

Do work that matters:

The purpose of this role is to serve as a leader within the Cyber Risk team in the Tech & Ops Risk division, supporting the Group Security function. You will collaborate with the Executive Manager Cyber Risk to provide independent Line 2 advice and assurance regarding the implementation of the Risk Management Approach and the Operational Risk and Compliance Management Framework. Additionally, you will play an active role in enhancing risk capabilities across the Cyber Security functions.

Key responsibilities for this role include:

Technical:

  • Collaborate with and provide SME risk management advice to crews aligned to cyber domains that mainly cover: Application & Service Protection, Data Security, Cloud Security, Third Party Security, Identity & Access Management and Security Education.

  • Working as part of a team of professional SMEs to provide independent, pragmatic and value adding Operational Risk advice and assurance for technology and cyber risks across the Group.

  • Supporting the Executive Manager through monitoring and reporting on the three lines of accountability (3LoA) activities, including the Risk Management Approach, the Operational Risk Management Framework, and the Compliance Management Framework in support of CPS 220. This also involves overseeing key security risks, controls, issues, and incidents, as well as risks related to change and licensing obligations, while managing risk acceptance through data-driven BAU monitoring activities as well as periodic assurance reviews

  • Contributing to the oversight and monitoring of key technology and cyber risks, controls, issues, incidents, and risk-in-change.

  • Supporting the appropriate identification, escalation and reporting of all related technology and cyber risk and compliance matters to the relevant stakeholders, including the relevant NFRCs, your EM/GM and to the Technology and Operations CRO.

Leadership:

  • Work as part of a cross-skilled team that can support a range of inter-connected risk domains, speaking up and contributing to appropriate Line 2 oversight and challenge.

  • Provide ideas for Line 2 risk management and assurance activities, data analytics and stakeholder reporting; contribute to a culture of learning and collaboration.

  • Role model behaviours that are consistent with CBA values expectations and leadership principles; provide a safe workplace for all team members, customers and visitors.

  • Develop and maintain partnerships with stakeholders; become a trusted advisor using commercial acumen, practical recommendations; and assist the business to understand where prioritised focus on key risks and compliance matters is required.

We’re interested in hearing from people who have:

  • Extensive experience required in cyber security with sound knowledge of applicable industry standards, frameworks and regulations (e.g. CPS234, NIST CSF, Essential 8 etc.).

  • Preference for a recognised information security certification (e.g.  CISSP, CISM, CRISC etc.).

  • Sufficient technical acumen to engage with the cyber teams and have meaningful conversations about risk requirements or prioritisation.

  • Background in Operational Risk and Compliance with technology and cyber risk management specialties within the Financial Services industry highly regarded.

  • High quality written and verbal communication skills, report writing, evidence gathering and data analysis capabilities.

  • Stakeholder and influencing skills with the ability to proactively engage Line 1 teams and engender trust with pragmatic, commercially balanced risk advice.

  • A curious and humble mindset, understanding of external trends and changes, interest in continuous learning, to build risk management best practice.

Your Career:

If you live the values and demonstrate the people capabilities we can offer great opportunities. Whether you want to move across the organisation or up into a leadership role, the way you live the values and demonstrate the people capabilities are key. Use the capabilities required for this role as a guide to the critical skills and behaviours you need for your next move.

We support our people with the flexibility to balance where work is done with at least half their time each month connecting in office. We also have many other flexible working options available including changing start and finish times, part-time arrangements and job share to name a few. Talk to us about how these arrangements might work in the role you’re interested in.

If this sounds like the role for you then we would love to hear from you. Apply today!

If you're already part of the Commonwealth Bank Group (including Bankwest, x15ventures), you'll need to apply through Sidekick to submit a valid application. We’re keen to support you with the next step in your career.

We're aware of some accessibility issues on this site, particularly for screen reader users. We want to make finding your dream job as easy as possible, so if you require additional support please contact HR Direct on 1800 989 696.

Advertising End Date: 09/05/2025

Top Skills

Cps234
Essential 8
Nist Csf
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Sydney, New South Wales
52,000 Employees
On-site Workplace
Year Founded: 1911

What We Do

Australia’s leading provider of financial services including retail, premium, business and institutional banking, funds management, superannuation, insurance, investment and sharebroking products and services.

We are a business with more than 800,000 shareholders and over 52,000 employees. We offer a full range of financial services to help all Australians build and manage their finances.

Similar Jobs

Commonwealth Bank Logo Commonwealth Bank

Senior Manager Cyber Risk

Fintech • Financial Services
Area, Viveiro, Lugo, Galicia, ESP
52000 Employees

RSM US LLP Logo RSM US LLP

Senior Associate - SOC Reporting

Legal Tech • Other • Professional Services • Business Intelligence • Consulting
5 Locations
16030 Employees
71K-135K Annually
4 Locations
52655 Employees
2 Locations
52000 Employees

Similar Companies Hiring

Bectran, Inc Thumbnail
Software • Machine Learning • Information Technology • Fintech • Automation • Artificial Intelligence
Schaumburg, IL
51 Employees
Energy CX Thumbnail
Utilities • Professional Services • Greentech • Financial Services • Energy • Consulting • Business Intelligence
Chicago, IL
55 Employees
MassMutual India Thumbnail
Insurance • Information Technology • Fintech • Financial Services • Big Data
Hyderabad, Telangana

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account