GRC Technical Consultant
GRC Technical Consultant
Overview
FinXL IT Professional Services is a leading IT consultancy that partners with clients to bridge the gap between business needs and technology capabilities. Since 2003, we've been delivering high-value ICT services across financial services, telecommunications, government, and enterprise sectors.
We are seeking an experienced Cyber Security and Risk Consultant to support a large and complex customer environment. The successful candidate will be comfortable working autonomously, building trusted stakeholder relationships, and delivering high-quality governance, risk, and compliance outcomes.
Key Responsibilities
- Provide expert advice on cyber security governance, risk, and compliance across a complex customer
environment. - Develop and maintain risk assessments, security advisories, and governance documentation aligned to relevant regulatory and policy frameworks.
- Support customers in navigating emerging technology risks, including AI and large language model adoption, through the development of frameworks, standards, and safe-use guidance.
- Represent the business in vendor and stakeholder meetings, maintaining strong and professional relationships.
- Monitor and share emerging threats, legislative changes, and industry developments with both the customer and internal teams.
- Maintain and modernise risk advice templates and documentation to support consistent, high-quality delivery.
- Proactively identify and escalate risks that may impact the customer engagement, contractual commitments, or broader partnership.
- Meet all contracted deliverables, stakeholder engagement requirements, and agreed on-site attendance expectations.
Skills & Experience
- Strong background in cyber security governance, risk, and compliance (GRC) - this is a must-have for this
role. - Experience operating within large or complex organisations, ideally including government, regulated
industries, healthcare, or critical infrastructure environments. - Solid understanding of relevant Australian regulatory and policy frameworks, with the ability to apply these
practically in a customer context. - Experience developing or contributing to security policies, frameworks, and standards - including in
emerging technology areas. - Proven ability to build trusted relationships with senior stakeholders and operate credibly at all levels of a
customer organisation. - Strong written communication skills, with the ability to produce clear, well-structured, and high-quality
deliverables. - Self-sufficient and comfortable working as an embedded resource with a high degree of autonomy.
- Familiarity with Security Operations Centre environments is desirable.
Please note this role is Brisbane based, offering a hybrid working arrangement, with a requirement for regular on-site presence at the client's site.
If this opportunity sounds like a challenge you have been looking for please apply online today! Please note only shortlisted individuals will be contacted. (M12)