Cybersecurity Safeguards and Governance Specialist

nib Group

About this role

As a key Line 2 cybersecurity governance expert, you'll shape and maintain the standards and frameworks that define "what good looks like" across our technology environment, with specialist focus on data and AI security, identity and cloud security.

You'll guide capability maturity, influence cybersecurity strategy, monitor emerging tech risks, and ensure our governance frameworks are practical, current and adopted across the group. You'll work closely with peers across the risk and governance landscape, providing authoritative guidance to Line 1 teams and escalating key issues where needed.

Sitting within nib's second line of defence, you'll define the rules - acting as a trusted adviser to ensure our security requirements align with industry best practice and regulatory expectations.

Key areas of contribution include:

  • Maintain clear, practical and up to date cybersecurity standards, frameworks & guidance, including linkages into the ISMS.
  • Provide expert governance advice on data and AI security risks across platforms and programs.
  • Monitor and communicate emerging technology risks to guide capability maturity uplift and strategic planning.
  • Help define meaningful cybersecurity and tech risk metrics that show control alignment and standards adherence.
  • Document and escalate framework gaps, standards positions and risk findings through governance channels.
  • Work with Line 1 teams and security partners to build strong safeguards, uplift maturity and embed positive risk culture.

About you

You bring a genuine love of technology and a curiosity that drives you to dig beneath the surface - understanding not just what the risks are, but how and why things work the way they do. That intellectual curiosity underpins your strong understanding of current and emerging technologies and the cybersecurity risks that come with them, along with hands on experience assessing risk and recommending fit- for-purpose security technologies and services.

Your background includes working closely with stakeholders to develop, define and mature security frameworks and standards, helping to drive a culture of security and IT risk awareness across large and distributed organisations. You also understand that the best way to protect a system is to first understand how it can be broken - and that attacker's mindset informs the rigour you bring to every standard, framework and safeguard you develop.

You have deep knowledge of cloud, identity, data and AI security governance and associated best practice standards, complemented by a solid grasp of core security concepts such as vulnerability scanning, intrusion detection, incident response, access control, MFA, device mobility, data protection, and network and application security. Your pragmatic, risk-based approach - informed by a habit of thinking critically about how controls actually function in practice - ensures security safeguards are both effective and adaptable in fast-changing technology environments.

You also bring working knowledge of PCI DSS requirements, along with a strong understanding of leading information security standards and frameworks such as ISO 27001, ISO42001, ETSI EN 304 223, NIST CSF, the ASD Essential 8 and the SANS Critical Security Controls - enabling you to align governance guidance with recognised best practice.

Furthermore, we're seeking:

  • Have / are working towards information security industry certification(s). Beneficial qualifications and professional certifications may include:
  • ISC2 certifications
  • CRISC
  • SANS / GIAC / OCSP certifications
  • Experience working with stakeholders to maintain or implement new risk processes in a collaborative enterprise setting
  • A working understanding and familiarity with current cyber security controls and concepts
  • A working understanding of data and AI risk and relevant, commensurate safeguards to manage AI risks
  • A working understanding of contemporary cloud technologies, including the shared responsibility model (desired)

We know some people only apply when they meet every requirement. We're always on the lookout for curious, tech-passionate individuals who will add to the culture - so if this role resonates with you and you have relevant experience, we'd love to hear from you!

Who we are

nib is a leader in private health insurance, disability support and health services, reshaping the industry through bold innovation, strategic disruption and trusted partnerships. We deliver great value health insurance and support services to protect, connect and empower you to access healthcare when and where you need.

We have a mission and vision of people enjoying better health. Through our success, we aspire to more prosperous and sustainable communities, helping members and travellers make more informed healthcare decisions and generally live healthier lives.

Diversity, equity and inclusion

We embrace a flexible working environment and welcome candidates who reflect the diversity of the communities in which we operate. We're committed to an environment where everyone has the autonomy and freedom to be their authentic selves, every day. We encourage Aboriginal and Torres Strait Islander peoples, people living with disability, veterans, LGBTQIA+ as well as culturally diverse community members to apply for open roles.

nib Group is committed to creating an accessible recruitment process and employment experience. If you identify as a person living with disability and require adjustments to our online application, recruitment, selection and/or assessment process, or would like this advertisement in an alternative format, please contact us at [email protected].

Working at nib

Our hybrid working model offers flexibility to work from home or our purpose - built office Hubs, designed for focus, connection, and collaboration. We're committed to coming together with purpose.

Other benefits to support you at work (and play) include:

  • New starter benefit to help set up a functional home workspace
  • 50% discount on employee health insurance + 35% off travel insurance
  • The opportunity to give back to the community through paid leave for volunteering through nib foundation
  • Access to our nib Well Program and corporate fitness discounts
  • Access to employee share plans, short - term incentive program and life and salary continuance insurance benefits
  • 18 weeks paid parental leave for all new parents regardless of carer status, 5 days paid cultural leave for First Nations peoples and 4 weeks paid gender affirmation leave for trans, gender diverse and intersex employees

The fine print

All your information will be kept confidential according to EEO guidelines. Successful applicants will be required to complete a background check (including criminal history and bankruptcy check) prior to commencement of employment.

We acknowledge Aboriginal and Torres Strait Islander peoples as the Traditional Custodians of the lands where we live, learn and work.

How to apply

To apply for this job you need to authorize on our website. If you don't have an account yet, please register.