DEFEND

Business Risk and Assurance Manager

DEFEND

Auckland, New Zealand · Full Time

Be the first to apply

Experience
Any
Salary
Openings
1
Posted
2 तासपूर्वी
Work mode
In office
Resume
Required to apply

Where you'll work

Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.

Job description

About DEFEND

DEFEND is dedicated to enhancing cyber resilience by offering strategic, engineered solutions and expert advisory services. Their mission is to empower organizations in protecting digital assets through advanced technology and exemplary practices.

Role Overview

The Business Risk and Assurance Manager is tasked with overseeing the Governance, Risk & Compliance (GRC) framework within DEFEND to ensure accountability and transparency to customers, employees, and the community.

Key Responsibilities

  • Ensure the establishment of strong security and privacy controls meeting all regulatory and privacy standards.
  • Preserve existing company certifications such as ISO and SOC 2.
  • Continuously develop and maintain enterprise risk and compliance frameworks and policies.
  • Manage and coordinate risk management activities across the enterprise.
  • Conduct risk assessments covering customers, software projects, privacy concerns, and vendors/suppliers as needed.
  • Embed risk management practices into business processes.
  • Enhance and uphold data governance throughout DEFEND.
  • Regularly review and update company policies and procedures, at minimum on an annual basis.
  • Assist with the formulation and implementation of the cybersecurity roadmap.
  • Respond promptly to internal cybersecurity and privacy incidents.
  • Generate periodic reports for the Executive Leadership Team, the Board, and steering committees.
  • Support organizational adoption of policies and risk controls.
  • Deliver annual cybersecurity and privacy training to all personnel.

Candidate Profile

  • Proven expertise in applying industry standards and regulations including ISO, NIST, GDPR, and COSO.
  • In-depth understanding and practical experience with risk management frameworks and procedures.
  • Familiarity with corporate governance functions and processes.
  • Strong leadership and communication abilities to effectively articulate risks, compliance needs, and recommendations to stakeholders and team members.
  • Project management skills to handle GRC projects, prioritize assignments, and meet deadlines successfully.
  • Ability to collaborate across departments and establish relationships with both internal and external partners.
  • Preferably experienced in conducting and managing audits such as ISO and SOC 2 evaluations.

Benefits and Culture

DEFEND is committed to creating a cyber resilient world, having earned rapid growth and multiple accolades including Microsoft’s Global Partner of the Year for 2025. The company invests in employee development, fostering a collaborative and inclusive environment that encourages innovative thinking.

  • Additional 3.5% Kiwisaver contributions beyond base salary.
  • Southern Cross Health Insurance coverage.
  • Discounts on mobile and broadband for employees and their families.
  • Flexible hybrid working options.
  • Financial support for home office setup.
  • Access to Employee Assistance Programs supporting various wellbeing requirements.

Diversity & Inclusion

DEFEND values diverse perspectives and experiences and encourages candidates from underrepresented groups to apply even if they don’t meet every qualification. The company strives to ensure a supportive environment where all employees can flourish.

How they work

Communication Teamwork & Collaboration Attention to Detail Leadership

Leave it if you'd like a reply — we won't use it for anything else.

Click to browse, drag & drop, or paste a screenshot

PNG, JPG, GIF, MP4, WebM, MOV · Max 20MB each · Up to 5 files

🤖
Online · instant AI help