Risk and Compliance Manager
Melbourne, Victoria, Australia (Hybrid) · Full Time
Be the first to apply
- Experience
- Any
- Salary
- —
- Openings
- 1
- Posted
- 4 days ago
Where you'll work
Job description
About the company
HomeMade, Mable, Leap In! and Mable Direct sit within the Attain Healthtech Group. Although the businesses operate in different areas, they are united by a shared mission to create lasting positive change across the care and support sector, use technology to improve outcomes, and help customers achieve better results.
This role sits within the Mable team. Mable is a leading Australian healthtech platform connecting thousands of people with disability and older Australians to independent support workers on terms that suit them. Since 2014, the platform has facilitated more than 25 million hours of support and has been recognised among Australia’s top growth and technology businesses.
Role overview
The Risk and Compliance Manager will help Attain Group manage regulatory, consumer, and safeguarding risks across its businesses, including Mable. The position is responsible for strengthening compliance with key legal and regulatory obligations, improving risk controls, and supporting the safe delivery of platform services used by vulnerable consumers.
This is a practical, hands-on role that calls for sound judgement, strong regulatory understanding, and technical literacy. The successful person will need to balance safety, fairness, and commercial needs in a fast-moving and complex environment.
Key responsibilities
- Track, assess, and maintain compliance with relevant laws and standards, including the Australian Consumer Law, NDIS Act and Rules, Aged Care Act and Quality Standards, Privacy Act, and the Australian Privacy Principles.
- Help build, roll out, and continuously improve the organisation’s risk and compliance framework.
- Spot, evaluate, and manage operational, regulatory, privacy, and consumer-related risks, while keeping risk registers, reports, and governance records up to date.
- Support the handling, review, and escalation of incidents and breaches, including NDIS reportable incidents, SIRS matters, safeguarding concerns, and privacy breaches.
- Work on responses to actual or suspected data breaches, including checking reporting duties and supporting compliance actions.
- Collaborate with internal teams to embed risk and compliance requirements into business workflows, systems, and platform design.
- Deal with regulators, auditors, and other external parties when needed.
- Offer practical advice on risk and compliance issues and contribute to training, resources, and initiatives that improve safeguarding and consumer protection outcomes.
Requirements
- A bachelor’s degree in law, business, commerce, risk, compliance, or a similar field.
- Proven background in risk, compliance, governance, or regulatory roles, preferably in a regulated or customer-facing setting.
- Working knowledge of Australian regulatory requirements relevant to digital platforms, care services, privacy, or consumer protection.
- Strong judgement and problem-solving ability, with the confidence to weigh risk and make practical decisions.
- Comfort with identifying, escalating, and challenging risks when necessary.
- Experience in NDIS, aged care, health, or other regulated industries is an advantage.
- Exposure to incident handling, safeguarding, privacy breach response, or platform-based business models is beneficial.
- A solid ethical compass, a safeguarding mindset, and a strong commitment to protecting consumers.
- A pragmatic, solutions-oriented approach and ease with ambiguity.
- Clear communication skills and the ability to work effectively with a wide range of stakeholders.
- Strong attention to detail without losing sight of broader business and risk priorities.
Values and culture
The organisation is driven by purpose and guided by a shared set of values. It aims to stay switched on by listening and learning, be bold in solving challenges, work as one through collaboration and diversity, and remain impactful by moving quickly to create meaningful change.
As part of the wider Attain Healthtech group, the team also follows the values of breaking new ground, making it matter, and owning the outcome.
Benefits
- Opportunities to learn from industry experts, experienced leaders, and hands-on work.
- Paid parental leave: 14 weeks for primary carers and 6 weeks for secondary carers, plus superannuation.
- A flexible hybrid work setup that blends office time with remote work.
- An extra paid Flexi Leave day each quarter to use as you choose.
- The option to take a floating public holiday for a meaningful day with family and friends.
- Access to a reward and recognition program to celebrate performance and achievements.
Inclusion
The company values diversity and welcomes applicants regardless of family responsibilities, ethnicity, faith, sexual orientation, or gender identity. Aboriginal and Torres Strait Islander people are encouraged to apply. Candidates who do not meet every requirement are still encouraged to put themselves forward.
Location and work style
The role is based in Melbourne, Victoria, Australia and follows a hybrid working model.