- Experience
- Any
- Salary
- —
- Openings
- 1
- Posted
- 1時間前
- Work mode
- In office
- Resume
- Required to apply
Where you'll work
Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.
Job description
About DEFEND
DEFEND is dedicated to enhancing cyber resilience by offering strategic, engineered solutions and expert advisory services. Their mission is to empower organizations in protecting digital assets through advanced technology and exemplary practices.
Role Overview
The Business Risk and Assurance Manager is tasked with overseeing the Governance, Risk & Compliance (GRC) framework within DEFEND to ensure accountability and transparency to customers, employees, and the community.
Key Responsibilities
- Ensure the establishment of strong security and privacy controls meeting all regulatory and privacy standards.
- Preserve existing company certifications such as ISO and SOC 2.
- Continuously develop and maintain enterprise risk and compliance frameworks and policies.
- Manage and coordinate risk management activities across the enterprise.
- Conduct risk assessments covering customers, software projects, privacy concerns, and vendors/suppliers as needed.
- Embed risk management practices into business processes.
- Enhance and uphold data governance throughout DEFEND.
- Regularly review and update company policies and procedures, at minimum on an annual basis.
- Assist with the formulation and implementation of the cybersecurity roadmap.
- Respond promptly to internal cybersecurity and privacy incidents.
- Generate periodic reports for the Executive Leadership Team, the Board, and steering committees.
- Support organizational adoption of policies and risk controls.
- Deliver annual cybersecurity and privacy training to all personnel.
Candidate Profile
- Proven expertise in applying industry standards and regulations including ISO, NIST, GDPR, and COSO.
- In-depth understanding and practical experience with risk management frameworks and procedures.
- Familiarity with corporate governance functions and processes.
- Strong leadership and communication abilities to effectively articulate risks, compliance needs, and recommendations to stakeholders and team members.
- Project management skills to handle GRC projects, prioritize assignments, and meet deadlines successfully.
- Ability to collaborate across departments and establish relationships with both internal and external partners.
- Preferably experienced in conducting and managing audits such as ISO and SOC 2 evaluations.
Benefits and Culture
DEFEND is committed to creating a cyber resilient world, having earned rapid growth and multiple accolades including Microsoft’s Global Partner of the Year for 2025. The company invests in employee development, fostering a collaborative and inclusive environment that encourages innovative thinking.
- Additional 3.5% Kiwisaver contributions beyond base salary.
- Southern Cross Health Insurance coverage.
- Discounts on mobile and broadband for employees and their families.
- Flexible hybrid working options.
- Financial support for home office setup.
- Access to Employee Assistance Programs supporting various wellbeing requirements.
Diversity & Inclusion
DEFEND values diverse perspectives and experiences and encourages candidates from underrepresented groups to apply even if they don’t meet every qualification. The company strives to ensure a supportive environment where all employees can flourish.