Specialist - Security Compliance - Newcastle
The opportunity to collaborate with some of the brightest and best minds in Australia
- Be part of a great team culture with a team that loves to have fun
- Permanent role based in Norwest, with remote working flexibility
We are Woolworths Group
We are Woolworths Group. 200,000+ bright minds, passionate hearts and unique perspectives connected by a shared Purpose – ‘to create better experiences together for a better tomorrow.’ It’s that Purpose that fuels our ambition to explore new ideas, make brave commitments and innovate better ways to meet the food and everyday needs of more than 24 million customers every week.
If you’re excited to turn today’s blue sky thinking into a better tomorrow for future generations, you’ll find yourself supported and enriched in an dynamic, inclusive and empowering workplace that reflects the diverse communities we serve. With a culture of genuine care, a flexible approach to work and opportunities across the group to grow your career and make a meaningful impact, the possibilities for what we can achieve together are endless.
What you’ll do
The purpose of this role is to drive the uplift of security controls and services across the Woolworths Group. You will work with the Cyber and IT Risk teams to support the definition and implementation of a cyber compliance program of work to test and validate the compliance of the Woolworths technology environment to internal policies and standards and external regulatory requirements and best practices (including PCI-DSS, NIST, CIS).You will work with the relevant teams across Technology to improve the quality and effectiveness of security controls on existing systems and ensure that new solutions are being delivered in a compliant fashion.
- Support the team to define and implement a Cyber Compliance Framework.
- Coordinate regular review of internal security policies and standards with key stakeholders.
- Evaluate the effectiveness and compliance of operational services, processes and controls against internal security policies and standards and relevant external regulatory requirements. Coordinating both internal and external resources where required.
- Assess the exposures resulting from ineffective or missing control practices.
- Work with business, risk and technology stakeholders to uplift security controls and remediate findings. You will facilitate and participate in regular governance forums to ensure cyber security is appropriately considered across the organisation.
- Maintain ongoing visibility of all compliance obligations, findings and remediation through regular reporting (written and verbal).
- 3+ Years of Cyber Security or IT experience with a focus on governance, risk and compliance/control (GRC)
- Experience with PCI-DSS compliance, NIST and CIS desirable
- Broad knowledge, confidence and experience of controls testing and cyber security
- Strong understanding of information technology
- Understanding of security technologies and how they interact
- Experience with GRC tools
- Team discounts across our range of Woolworths Group brands you know and love and a robust rewards program that celebrates and incentivises purpose-driven work
- A range of programs to help you prioritise and manage your wellbeing, including 24/7 access to the Sonder app
Everyone belongs at Woolworths Group
Diversity, equity, inclusion, and belonging are key to realising our purpose of better together for a better tomorrow. We recognise the value our team’s diversity brings to our business, customers, and communities and that teams with diverse experiences and backgrounds enrich our group and are better able to innovate and solve problems.As one of the largest employers in Australia and New Zealand, we aim to create a truly inclusive workplace where everyone feels that they belong, can be their best selves, and reach their full potential.
We encourage all candidates to apply; please let us know in your application if we can support you with any adjustments in the hiring process.
You can learn more about working with us on LinkedIn or via www.wowcareers.com.au. #LI
Our Talent Acquisition Team and Hiring Leaders kindly request no unsolicited resumes or approaches from Recruitment Agencies. Woolworths Group is not responsible for any fees related to unsolicited resumes.