DEFEND

GRC Manager - Cybersecurity

DEFEND

Auckland, New Zealand · Full Time

Be the first to apply

Experience
Any
Salary
—
Openings
1
Posted
2 days ago
Work mode
In office
Resume
Required to apply

Where you'll work

Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.

Job description

About DEFEND and Role Overview

DEFEND aims to enhance everyday life by fostering a cyber resilient world. We are seeking a Governance, Risk, and Compliance (GRC) Manager to oversee and advance our governance, risk, compliance, security, and privacy functions. This position offers a distinctive chance to impact organizational strategy by collaborating directly with senior leadership to uphold the highest levels of trust, resilience, and assurance in our operations.

Key Responsibilities

  • Lead and continually enhance DEFEND's governance, risk, compliance, security, and privacy management frameworks.
  • Ensure the maintenance of trust and assurance by successfully renewing ISO certifications, SOC 2 attestations, and fulfilling other security, privacy, and compliance responsibilities.
  • Integrate risk management into routine business decisions and collaborate with leaders across departments to embed risk awareness within daily activities.
  • Take charge of enterprise risk activities, including assessing risks related to customers, suppliers, projects, software, and privacy.
  • Bolster the company's security posture through policy creation, strengthening controls, promoting data governance, and leading security awareness programs.
  • Contribute to strategic cybersecurity goals by supporting the cybersecurity roadmap and advising on major security, privacy, and risk-related decisions.
  • Provide reliable executive-level reporting to the Executive Leadership Team (ELT), Board, and governance committees on matters of risk, compliance, privacy, and security.

Required Skills and Experience

  • Proven background in Governance, Risk and Compliance, information security, privacy, risk management, or closely related areas.
  • Comprehensive knowledge of frameworks and standards such as ISO 27001, SOC 2, NIST, COSO, GDPR, and applicable regulatory requirements.
  • Experience in designing, executing, and refining risk management and compliance programs.
  • Expertise in leading or coordinating external audits, certification processes, and assurance activities.
  • Sound understanding of corporate governance methods, risk management practices, and compliance responsibilities.
  • Excellent interpersonal and communication skills capable of influencing stakeholders from operational teams through to Executive and Board members.
  • Ability to convert complex compliance and risk requirements into actionable business strategies.
  • Strong organizational and project management skills with an aptitude for managing multiple priorities in a fast-moving environment.
  • A collaborative nature with the capability to develop trustworthy relationships across diverse stakeholders.
  • Valuable experience addressing incidents related to security, privacy, or compliance.
  • A proactive mindset committed to continuous improvement and fostering secure, resilient organizations.
  • A readiness to be hands-on, adapt to changing conditions, and support various functions within DEFEND as needed.

Benefits and Work Environment

At DEFEND, we are proud of our substantial growth and numerous accolades such as Microsoft’s Global Partner of the Year for 2025. Joining our team means acting towards our vision to create a cyber resilient world. We invest in our employees' professional growth and offer a supportive, inclusive culture that encourages innovation. Team members contribute broadly to cybersecurity initiatives ranging from culture and awareness to offensive and defensive security operations.

  • 3.5% employer Kiwisaver contribution in addition to base salary
  • Coverage under Southern Cross Health Insurance
  • Discounts on mobile and broadband services available to employees and their families
  • Flexible working arrangements with a hybrid model
  • Home office setup allowance
  • Access to Employee Assistance Program services addressing various wellbeing needs

Diversity and Inclusion Statement

DEFEND celebrates diverse perspectives and backgrounds, recognizing that individuals from underrepresented communities might hesitate to apply unless meeting every listed criterion. We encourage all qualified individuals to apply and share how they could enrich our team as the next DEFENDer.

Industry

Cybersecurity

How they work

Communication Teamwork & Collaboration Adaptability Relationship Building

Leave it if you'd like a reply — we won't use it for anything else.

Click to browse, drag & drop, or paste a screenshot

PNG, JPG, GIF, MP4, WebM, MOV · Max 20MB each · Up to 5 files

🤖
Online · instant AI help
Broxer