Governance Risk and Compliance Specialist

AU - VIC

Applications have closed

Airwallex

Grow your business faster with Airwallex - global business accounts, high speed transfers, multi-currency cards, online payments, embedded finance, and more.

View company page

Airwallex is the leading financial technology platform for modern businesses growing beyond borders. With one of the world’s most powerful payments and banking infrastructure, our technology empowers businesses of all sizes to accept payments, move money globally, and simplify their financial operations, all in one single platform. 
Established in 2015 in Melbourne, our purpose is to connect entrepreneurs, business builders, makers and creators with opportunities in every corner of the world. Today, Airwallex has a global footprint across Asia-Pacific, Europe, and North America.
Your role
As a Governance Risk and Compliance Specialist here at Airwallex, you will be a trusted member of the Information Security team and work closely with senior leadership regarding regulatory compliance, data privacy and other aspects of financial risk and governance.
Reporting directly to the Vice President of IT and INFOSEC, this role will see you being a critical part of Airwallex, helping to identify key information security risks to the organisation as well as designing proactive and preventative mitigation strategies through the development and management of information security policies and standards.
This is a dynamic and autonomous role that sees compliance as a problem to solve, rather than a function and requires experience in designing and implementing GRC related projects, including developing and managing policies and standards related to the security of our networks, systems and applications.

What you'll be doing

  • Implement risk assessment framework and program that aligns to regulatory requirements, ensuring documented and sustainable compliance which enables business outcomes.
  • Evaluate risks and co-develop security standards and policies to manage information security risks.
  • Develop guidelines, checklists, and other resources to help non-technical employees understand information security requirements.
  • Implement processes to automate and continuously monitor information security controls, exceptions, risks, and testing. Co-develop and maintain reporting metrics, dashboards, and evidence artefacts for the internal reporting and technology risk committee.
  • Partner with the Data Privacy team to establish roles and responsibilities for data protection and privacy.
  • Provide support to all stakeholders on internal and external audits, third party vendor and partner reviews, and regulator questionnaires.
  • Perform and investigate internal and external information security risk and exceptions assessments. Identify and document gaps in the risk register, tracking the risk, mitigations, owner, etcMaintain and advise other stakeholders and participants on the context, structure, and operations of technology risk committee meetings and reporting.
  • Review implementation of technical controls to ensure compliance with regulators and partners.
  • Implement traceability of policies to help stakeholders and employees understand the source and scope of requirements

What you'll bring

  • A passion for solving the complex challenges of high-growth startups.
  • Self motivation and drive to learn new skills, or dive deeper into existing skills.A high level security degree or certification such as a MSc in Cybersecurity or similar. CISSP, CISA, CISM, ISO 27001 is highly desired.
  • 3-4 years experience in Financial Services or Payments roles.
  • Strong familiarity with Information Security concepts, practices, and solutions.
  • Deep knowledge of relevant compliance, regulatory and control frameworks including PCI-DSS, ISO 27001, SOC2 and similar standards.
  • Experience in Risk Management including the design and implementation of processes to identify, manage and mitigate information security risks.
  • Working knowledge of and experience in the policy and regulatory environment of information security.
  • Technical experience in cybersecurity operations to understand, incorporate and communicate technical aspects into the role.
  • Understanding of cloud platform and application security.
  • Published articles, journals or blogs related to cybersecurity.
When you join Airwallex, You Choose "Bigger Growth Opportunities."In 2022 as a Global business, we achieved the following:- Series E stage, total funding of USD $900 Million, $5.5B valuation- Expanded into new markets- Forged partnerships with Shopify, Hubspot, Plaid, Trip Actions/Navan, Agoda, and Qantas- We launched our Scholarship Partnership with The University of Melbourne- Asia FinTech Awards: Team of the Year, Fintech of the Year- Xero Awards Australia: Financial Services App of the Year- Top 100 Women in Fintech: #40 Lucy Liu, Co-Founder of Airwallex - Over 37% of our Australian team were promoted last year
Life at Airwallex:💸We commit to industry-leading salaries and rewards  💲We share our business success through every employee receiving equity💻 Flexible working available, plus two epic working spaces in the heart of Melbourne and Sydney🥗On-site snacks, think fully stocked fridges, beers, ice-creams and catered social lunches🧘Access to our mental wellness platform to provide personalised, private support, including coaching and EAP sessions🎂 Enjoy a paid day off on your birthday to celebrate YOU👪Generous parental leave, baby bonding leave, and pregnancy loss leaves💵Paid community and volunteer leave 💸Generous Employee Referral Program rewards for referring top talent✈️ Explore the world - You have the opportunity to work from anywhere in the world for up to 3 months each year🦄 Accelerate your career - We've reached consistent unicorn status and our people are a huge part of this.  Airwallex is the place where you can grow to your full potential, with more than a third of our Australian team promoted last year
Airwallex is proud to be an equal opportunity employer. We value diversity and anyone seeking employment at Airwallex is considered based on merit, qualifications, competence and talent. We don’t regard colour, religion, race, national origin, sexual orientation, ancestry, citizenship, sex, marital or family status, disability, gender, or any other legally protected status. If you have a disability or special need that requires accommodation, please let us know.

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Tags: Application security Audits Banking CISA CISM CISSP Cloud Compliance FinTech Governance ISO 27001 Privacy Risk assessment Risk management SOC 2

Perks/benefits: Career development Flex hours Parental leave

Regions: Asia/Pacific Europe
Country: Australia
Job stats:  6  1  0
Category: Compliance Jobs

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.