Powerco

Information Security Risk and Assurance Specialist

Powerco

New Plymouth, Taranaki, New Zealand · Full Time

Be the first to apply

Experience
Any
Salary
Openings
1
Posted
2 hours ago
Work mode
In office
Resume
Required to apply

Where you'll work

Job description

About Powerco

Powerco is responsible for delivering electricity and gas to over 1.1 million customers across some of the most scenic regions of New Zealand's North Island. Their commitment is to ensure safe, reliable, and efficient energy supply with rapid response to any interruptions to minimize impact on customers' daily lives.

Team Overview

The Information Security team aids Powerco in recognizing and managing risks tied to data, technology, and connected operational infrastructures. Operating across both IT and OT landscapes, the team collaborates closely with various business units to make informed, practical decisions that safeguard systems, people, customers, and essential services. This team combines cyber security expertise with risk and assurance skills, translating complex security concepts into clear business guidance while fostering mutual support, adaptability, and ongoing enhancement of security outcomes across people, processes, technologies, governance, and assurance frameworks.

Role Summary

The Information Security Risk and Assurance Specialist will play a key role in supporting Powerco's cyber risk, governance, compliance, and resilience initiatives. This role involves collaboration with teams throughout the organization to identify and manage cyber-related risks, evaluate control effectiveness, contribute to assurance efforts, oversee risk reporting, assist in policy creation, prepare for incidents, and drive continuous improvements across both IT and OT domains.

Main Responsibilities

  • Lead facilitation of cyber risk assessments and workshops encompassing business and operational environments.
  • Assist in developing, maintaining, and reporting on cyber risk registers and related risk treatment measures.
  • Support governance activities, compliance checks, internal audits, and assurance programmes.
  • Contribute to managing Powerco’s Information Security Management System and ongoing improvement efforts.
  • Help develop and update security policies, standards, and associated documentation.
  • Offer pragmatic, risk-based guidance on security controls and enhancement initiatives.
  • Support strategies for operational resilience, incident planning, response, and recovery.
  • Collaborate with internal departments and external partners to bolster security in IT and OT environments.
  • Promote security awareness, cyber education, and knowledge dissemination company-wide.

Candidate Profile

The ideal candidate is an inquisitive and well-organized professional capable of bridging business and technical areas, clearly articulating cyber security risks to diverse audiences. Experience in cyber security, risk, compliance, assurance, auditing, engineering, or related disciplines is valuable, especially familiarity with risk assessments or governance processes. Background in IT, Operational Technology, critical infrastructure, or regulated sectors is an advantage. A practical, collaborative, and risk-focused approach is essential.

Required Qualifications and Skills

  • Background or experience in cyber security, risk management, compliance, audit, engineering, or similar field.
  • Prior involvement in conducting or supporting risk assessments, reviews, audits, or assurance activities.
  • Familiarity with cyber security frameworks such as ISO 27001, NIST Cybersecurity Framework, AESCSF, IEC 62443, or equivalents.
  • Strong communication skills to effectively engage with both business and technical stakeholders.
  • Excellent interpersonal and collaborative work style.
  • Curiosity and continuous improvement mindset towards information security practices and outcomes.
  • Highly organized, detail-oriented, with a process-driven approach.
  • Practical risk perspective with ability to translate cyber security requirements into actionable business results.

Working at Powerco

Powerco offers a supportive work environment emphasizing collaboration, continuous development, and meaningful impact. Benefits include hybrid working options allowing a balance between personal and professional life, 4% KiwiSaver contributions, options to purchase additional leave, paid volunteer days, generous parental leave, and fully funded life and medical insurance for permanent staff. Career growth opportunities are abundant, with recognition as a top employer for career development, and a culture that promotes mutual support and celebration of achievements.

Application Information

If you have a passion for cyber security risk management, governance, assurance, and resilience, and are driven to help secure vital services for communities in New Zealand, Powerco encourages you to apply.

Applications close on 14 August 2026.

Powerco values diversity and inclusion, encouraging candidates from underrepresented and neurodiverse backgrounds to apply even if all criteria are not met. Accommodations and support are available to ensure equitable participation in recruitment. Contact can be made via phone or email for assistance.

Work styles they’re looking for

Communication Collaboration Attention to Detail Stakeholder Communication Organizational Skills

Leave it if you'd like a reply — we won't use it for anything else.

Click to browse, drag & drop, or paste a screenshot

PNG, JPG, GIF, MP4, WebM, MOV · Max 20MB each · Up to 5 files

🤖
Online · instant AI help