The Role
Experienced GRC Specialist needed to lead IT risk, audit, and quality assurance operations. You will manage risk registers, coordinate compliance audits, and drive practical process improvements across key IT functions using frameworks like ISO, Essential 8, and ITIL....
What You'll Do
Maintain and update the strategic IT risk register, running risk reviews and preparing reporting for executives and key stakeholders.
Coordinate internal and external audit cycles, pull together evidence, uncover root causes of compliance gaps, and recommend clear fixes.
Lead quality reviews across IT functions to make sure teams are meeting organisational standards and operating efficiently.
Translate complex compliance data into clear dashboards and performance reports.
Provide advice on security principles, ITIL practices, and compliance standards.
Direct line-manage a Level 5 IT Governance & Policy Officer and a Level 4 Content Officer.
What We're Looking For
Practical experience managing IT risk, compliance, internal/external audits, or quality programs in a complex environment. (GRC experience)
Familiarity with standard frameworks like ISO 27001/9000, Essential Eight, NIST, ITIL, or PDCA/Lean methods.
Ability to look at compliance issues laterally and implement open, standard-based solutions that actually work for the business.
Clear writing and reporting skills, with the ability to work comfortably across different teams and technical levels.
Requirements
Full Australian working rights.
Valid C-Class WA Driver’s Licence.
Current National Police Check (or willingness to obtain one under 6 months old).
Willingness to undertake occasional short-term travel within WA if required.
If you bring strong framework knowledge and enjoy turning audit findings into actual, practical process improvements, this is a great fit.