NextRaiseNextRaiseFind jobs
Sign inSign up free
Jobs / Cybersecurity Consultant in Australia
18 days ago
Apply with autofill
Apply with autofill
MetLife·BFSI·18 days ago
18 days ago

Information Security Manager

Sydney, AustraliaFull-timeHybridMid · 5-10 yearsCybersecurity Consultant

Sign up free to see how well your resume matches this role.

Boost your chances at MetLife

How you compare FREE

?
Your scoreYour score: not yet known
→
49
Top 10%Top 10%: 49 out of 100

Top 10% of NextRaise users matched against Cybersecurity Consultant roles in Australia.

Must-have skills for this role

  • iso 27001
  • irap
  • ism
  • risk management

PDF or DOCX · no account needed

Apply faster with autofill FREEThe NextRaise extension autofills your application in one click.careers.example.com/applyAutofillingFull namePriya SharmaEmailpriya.sharma@example.comPhone+49 30 1234567LocationBerlGet the extension

About this role

Job Title

Information Security Manager

Job Description Summary

We are seeking an experienced Client IT Security Manager to lead the ongoing management and enhancement of our Information Security Management System (ISMS) in alignment with ISO 27001, IRAP, and Australian Government security requirements. In this key role, you will oversee audits, risk management, compliance activities, and security governance across our client facing environments.

Job Description

Must be an Australian citizen due to account requirements. 

Sydney or Melbourne based

Key Responsibilities

ISO 27001 Responsibilities 

  • Own and maintain the Australia ISMS, including documentation and review schedules. 

  • Manage ISO 27001 audits and implement corrective actions. 

  • Lead biannual ISMS management reviews and annual internal audits. 

  • Oversee quarterly control monitoring and maintain compliance and risk registers. 

  • Coordinate local vendor risk assessments and ensure alignment with global standards. 

  • Support incident management, BCP planning, and ISMS testing. 

  • Conduct regular security and physical checks. 

  • Oversee data retention and deletion in line with regulations. 

  • Provide quarterly leadership reports and manage ISMS communications. 

  • Participate in global policy and standard review. 

IRAP Responsibilities 

  • Define assessment boundaries and scope based on Australian government services. 

  • Maintain compliance with Authority to Operate (ATO) requirements, assessing risks for any deviations. 

  • Review documentation and controls per the Australian Government Information Security Manual (ISM). 

  • Ensure alignment with ASD’s IRAP Common Assessment Framework. 

  • Develop and update required security artifacts (e.g., System Security Plan, Statement of Applicability, Security Risk Management Plan). 

  • Oversee technical configuration reviews, evidence collection, and IRAP assessment reporting. 

  • Document and address residual risks  

Additional Responsibilities 

  • Work with application owners on vulnerability remediation and reporting. 

  • Manage cyber security incident notification and communication between internal teams and clients. 

  • Support local IT and service line teams with compliance requirements, client tender submissions, and audit requests. 

  • Participate in client security audits and support document requests to meet auditor's timeline. 

Required Skills & Experience 

  • Strong knowledge of ISO 27001, IRAP, and Australian Government ISM. 

  • Experience in risk management, audit coordination, and compliance within multinational or regulated environments. 

  • Excellent communication, stakeholder management, and leadership. 

  • Skilled at managing multiple priorities and collaborating across teams. 

  • Preferred certifications: CISM, CISSP, ISO 27001 Lead Implementer/Auditor. 

  • Strong team-building and relationship skills, especially during change. 

  • Ability to align business goals with partners. 

  • Familiar with risk assessment, IT policies, standards, and training. 

  • Broad IT expertise (e.g., distributed computing, networks, financial applications, security, business recovery). 

  • 5–7+ years in IT Risk and/or IT Audit. 

If you’re ready to take ownership of a critical security function and work collaboratively across a global organisation, we’d love to hear from you.




 

 

 




As an equal opportunity employer, Cushman & Wakefield encourages Aboriginal and Torres Strait Islander and female candidates to apply. Cushman & Wakefield promotes safety at all times.

INCO: “Cushman & Wakefield”
BFSI

Company

MetLifeBFSI
Sydney, Australia

Company facts come from this company's own listings. We only show what the postings themselves carry.

Sourced from MetLife's careers site·first seen 2 Sept 2026·last verified 8 Sept 2026·How we source jobs

Similar jobs

  • Security Technician at Johnson ControlsJC Australia, Australia–match not yet calculated
  • Technology & Security Consultant at aecom2Fortitude Valley, Australia–match not yet calculated
  • Enterprise Security Manager at vanguardMelbourne, Australia–match not yet calculated
  • Team Lead, Security at Newmont AustraliaOrange, Australia–match not yet calculated
  • Manager, Security Engineering at snapchatSydney, Australia–match not yet calculated

Browse more jobs

  • Cybersecurity Consultant jobs in Australia
  • IT Consultant jobs in Australia
  • Business Analyst jobs in Australia
  • Digital Transformation Consultant jobs in Australia
  • Cybersecurity Consultant jobs in United States
  • Cybersecurity Consultant jobs in Germany