Haystack
← Back to Jobs
Full time
Technology
XS

LeadRisk Assessor_Cybersecurity

XPT Software Australia Pty LtdBrisbane, Queensland🇦🇺AustraliaPosted 18 Aug 2026

Quick Overview

Work Type
On Site
Schedule
Full Time
Level
Mid Senior

Job Description

XPT Software Australia Pty Ltd Contract

Melbourne,Sydney,Brisbane,perth, Australia Posted on 08/13/2026

  • XPT SoftwareAustralia PTY Ltd, incorporated in 2016, is a Software Services company
  • XPT works with topclients across Australia in Banking, Insurance, Telecom,Retail, Energy, Mining and Manufacturingdomains.
  • We have 120+technocrats in Australia working at our clientlocations.
  • XPT SoftwareAustralia is part of group companies which has globalpresence across India & Europe.
  • We have served100+ clients globally, fulfilling their onsite-offshoreneeds.
Job Description RoleSummary

Senior cyber security risk professional responsiblefor leading risk assessments, providing strategic risk guidance, andinfluencing business decisions through clear communication of cyber securityrisks and opportunities.

KeyAccountabilities
  • Lead cyber security riskassessments across projects, products, and technology initiatives.
  • Collaborate with project teamsto identify, assess, and address security gaps and control deficiencies.
  • Communicate complex technicalrisks in clear business terms, including to executive stakeholders through riskdecision-making processes.
  • Make informed risk-baseddecisions and manage stakeholder expectations effectively.
  • Lead the uplift of teamprocesses, documentation, and engagement models.
AdditionalResponsibilities
  • Collaborate with businessstakeholders, engineers, delivery teams, product vendors, partners, and cyberassurance teams to understand and communicate cyber risk.
  • Define and maintain reusableassets including standardised findings, templates, and process improvements.
  • Contribute to the creation andgovernance of security strategy, standards, frameworks, and policies.
  • Identify and communicatesecurity risks in a timely manner while incorporating insights from privacy,legal, engineering, and operational stakeholders.
  • Develop strategic relationshipsacross industry and technology vendors to anticipate emerging threats andopportunities.
  • Mentor and coach risk assessorsand secondees through guidance, feedback, and knowledge sharing.
  • Manage complex initiativeswhile simplifying outcomes to support effective delivery and execution.
Qualificationsand Experience
  • Minimum 15 years of experiencewithin Cyber Security.
  • At least 8 years of experiencein a Governance, Risk and Compliance (GRC) or Risk Management function.
  • Practical experience conductingtechnical risk assessments.
  • Knowledge of industryframeworks and standards including ISO 27001, PCI-DSS, NIST, and enterprisesecurity frameworks.
  • Strong stakeholder engagementand communication skills with the ability to translate technical risks intobusiness insights.
  • Experience working within largeand complex enterprise environments.
  • Previous experience in anon-cyber risk or GRC role.
  • Industry certifications such asCRISC, CISSP, CISM, or SABSA.
  • Experience working within Agileand DevOps environments.

Similar jobs