One logo
One3 weeks ago

Cyber Risk & Compliance Manager

Remote · New Zealand

Type
Full Time
Level
Senior Level
Education
Bachelors Degree
Company size
Medium

Job Summary

Ko tō mahi – what you’ll do: Lead the Cyber Risk and Compliance team, oversee identification, assessment, and management of cyber security risks, maintain enterprise risk register, and report to senior stakeholders. Design, implement, and test security controls aligned to frameworks like NIST CSF. Ensure regulatory compliance (e.g., PCI DSS) with internal/external audits and remediation. Own and uplift cyber security policies, standards, and procedures; drive continuous improvement and maturity. Manage third-party cyber risk and lead security awareness/training initiatives. Collaborate with business units and governance forums to strengthen capability. Lead, coach, and develop a high-performing team with day-to-day people leadership. Ko tō rourou – what you’ll bring: extensive information security experience, leadership, knowledge of NIST CSF and ISO 27001, PCI DSS compliance experience, relevant tertiary qualification in information security, ISO 27001 Lead Auditor or equivalent, CISM/CISA desirable, ability to influence stakeholders and communicate complex concepts, customer-focused mindset. Ko mātou te rourou – what you’ll get: flexible work-from-home options and work-life balance, health insurance, lifestyle leave, employee discounts, Rainbow Tick certified and a diverse, inclusive environment.

Required Qualifications

  • Extensive experience in information security, with strong expertise in cyber risk, compliance, and audit
  • Demonstrated leadership capability with experience managing and developing high-performing teams
  • Strong knowledge of security frameworks and standards such as NIST CSF and ISO 27001
  • Experience managing regulatory compliance obligations, including standards such as PCI DSS
  • Relevant tertiary qualification in information security or a related field
  • Auditor qualifications such as ISO 27001 Lead Auditor (or equivalent)
  • Professional certifications such as CISM or CISA (desirable)
  • Ability to influence stakeholders, drive change, and communicate complex technical concepts clearly
  • A strong customer focus and commitment to embedding a customer-obsessed culture
Sorce

Apply with one swipe on Sorce. We auto-fill applications and apply on your behalf — no cover letters, no 40-minute forms.

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

One

Cyber Risk & Compliance Manager

Apply on Sorce