Employment HeroEH

Security GRC Manager

Employment Hero is the smarter way to manage HR, people, payroll and productivity. For small and medium businesses on the up.

Employment Hero

Employee count: 501-1000

Australia only

Who we are

Employment Hero is on a mission to make employment easier and more valuable for everyone. Our Employment Operating System brings hiring, HR, payroll and benefits into an all-in-one solution.

Since our inception in 2014, we’ve scaled to a $2 billion valuation and gained a presence in 6 countries globally - Australia, New Zealand, Singapore, Malaysia, the UK and Canada. We now service over 300,000 businesses and more than 2 million employees.

The EH Way

At Employment Hero, we’re proud of our unique DNA, which we call The EH Way.

  1. We are Mission First - everything we do (from what we work on, to how we allocate capital and where we focus) is driven by our Mission
  2. We are Remote First - we champion a remote environment with a preference for asynchronous communication and a high degree of autonomy
  3. We are AI First - we are committed to using AI to accelerate our mission; AI is not just a tool, it’s a fundamental part of how we operate, innovate, and scale
  4. We are Apolitical - we do not take a position on political or social topics, unless it relates to our Mission
  5. We Live by Our Values - we role model our values 100% of the time
  6. We Expect High Performance - we set a high standard and we’re not satisfied with being average

This role

As our Security GRC Manager, you’ll be leading the Global Security GRC Team and will be instrumental in shaping the information security management strategy for Employment Hero, making sure we are at the forefront of information security excellence.

Your key focus areas will be

  • Leadership and Team Management - Lead and manage a team of Security GRC professionals, providing guidance, mentorship, and support in their professional development.
  • Strategic Security Planning: Develop and drive the organisation's overarching information security and GRC strategy, ensuring alignment with business objectives and proactive mitigation of security risks.
  • Governance, Risk, and Compliance Oversight - Oversee the design, implementation, and continuous improvement of security governance processes, risk management frameworks, and compliance programs to ensure robust risk mitigation and regulatory compliance (eg. ISO 27001, SOC2, etc.)
  • Auditing and Compliance Reporting Lead internal and external security audits, ensuring the organisation meets compliance requirements and deadlines. Coordinate with auditors and facilitate the audit process, addressing gaps and driving remediation efforts based on audit findings. Ensure timely preparation and management of audit documentation and evidence.
  • Policy Development and Enforcement - Establish and maintain high-level information security policies, procedures, and standards. Ensure that they are effectively enforced and aligned with industry best practices and compliance requirements.
  • Stakeholder Collaboration - Serve as the primary liaison between internal stakeholders (IT, legal, compliance, product, engineering) to ensure effective implementation of security and risk initiatives and promote a culture of security across the organisation.
  • Risk Assessment and Reporting - Lead regular risk assessments, audits, and vulnerability assessments. Provide strategic recommendations to senior leadership based on findings and industry best practices.
  • Security Incident Management - Oversee and guide the response to security incidents, ensuring rapid remediation, effective communication, and root cause analysis.
  • Training and Awareness - Foster a security-conscious culture by developing and delivering security training programs, ensuring that employees at all levels understand their role in maintaining information security.
  • Continuous Improvement and Innovation - Stay current with emerging trends in information security, governance, and compliance. Recommend and implement continuous improvements to enhance security practices and safeguard the organisation’s data and assets.
  • Compliance Reporting and Audit Management - Ensure the company meets compliance requirements and audit deadlines. Prepare and manage compliance documentation, working with external auditors when necessary.

Who you are

To thrive at Employment Hero, you’ll need to embody The EH Way - operating with focus, agility, and an obsession with impact. For this role, you’ll also bring

  • A degree in information technology, information security, risk management, or equivalent work experience.
  • Industry certifications such as CISSP, CISM or CISA are highly desirable
  • Leadership & Communication Skills - Proven ability to lead and manage a team, with strong consultative, written, and verbal communication skills. Ability to influence stakeholders at all levels of the organization.
  • Demonstrated knowledge and understanding of contemporary frameworks and methodologies, such as ISO 27001, NIST 800-53, SOC2
  • Excellent written, oral, and influencing skills with the ability to work autonomously.
  • A strong focus on continuous improvement, with a proven ability to challenge the status quo constructively.
  • Broad knowledge of current Governance, Risk and Compliance (GRC) technological tools and methodologies.
  • Strong consultative skills, enabling effective communication of complex concepts to both technical and non-technical audiences.
  • Meticulous attention to detail.
  • A strong desire to learn and expand knowledge in the field of information security.

What we can offer

At Employment Hero, we don’t just talk about a better way to work - we live it. Joining Employment Hero means

  • You will work remotely, with the flexibility to own your time and impact
  • You will access cutting-edge tools to amplify your work, knowledge and outputs
  • You’ll surround yourself with ambitious, outcome-driven colleagues who challenge you to do the best work of your life
  • You’ll own ESOP (employee share options) in one of the world’s fastest-growing tech companies
  • You’ll also have access to a wide range of benefits that includes: a very generous paternity leave policy, subsidised egg freezing (so you can make the choice that’s right for you, on your terms), a WFH office expense budget, and outstanding learning & development opportunities

At Employment Hero, we are committed to safeguarding the privacy of your application data. To understand how we do so, you can read our Applicant Privacy Policy here: https://employmenthero.com/legals/applicant-policy/

Employment Hero celebrates diverse perspectives and experiences, we invite people of all backgrounds and identities to apply for this position.

About the job

Apply before

Posted on

Job type

Full Time

Experience level

Manager

Location requirements

Hiring timezones

Australia +/- 0 hours

About Employment Hero

Learn more about Employment Hero and their company culture.

View company profile

Employment Hero is an Australian tech unicorn - valued at over $1.25 billion. Our world-class software is the easiest way for small and medium-sized businesses to manage HR, payroll, employee engagement, and benefits. We’ve grown 100% year-on-year since our inception in 2014, and now service over 90,000 businesses and 850,000+ active users globally. We have exciting growth plans for 2023 and beyond, powered by our mission of making employment easier and more valuable for everyone.

Oh, and we don’t want to toot our own horn (actually yes, we do), but others think we’re pretty cool too – we’ve received many awards for reaching some seriously ambitious goals including:

  • Deloitte Technology Fast 50 2022, ranked #38 in Australia

  • Raised $181M achieving unicorn status February 2022

  • LinkedIn Top 25 Startups 2021, ranked #2 in Australia

  • The Australian Top 100 Innovators List 2021

  • Raised $140M Series E round led by Insight Partners July 2021

  • Raised $45M Series D round led by Seek 2021

  • Deloitte Technology Fast 50 2020, ranked #42 in Australia

  • LinkedIn Top 10 Startups 2020

  • Raised $22M Series C Round led by Seek July 2019

  • Raised $8 mill series B round led by Seek and OneVentures

  • Deloitte Technology Fast 50 2019, ranked #20 in Australia

Employee benefits

Learn about the employee benefits and perks provided at Employment Hero.

View benefits

Generous vacation

20 days vacation leave, plus 1 Leisure Rules day a year.

Wellness benefits

Self, health, wealth and happiness programs + Virtual yoga classes.

Learning and development budget

Budgets towards continuing your learning and other generous allowances.

Refer a friend bonus

Refer friends to open jobs and receive a cash bonus for every successful referral you make.

View Employment Hero's employee benefits
Claim this profileEmployment Hero logoEH

Employment Hero

Company size

501-1000 employees

Founded in

2014

Chief executive officer

Ben Thompson

View company profile

Similar remote jobs

Here are other jobs you might want to apply for.

View all remote jobs

39 remote jobs at Employment Hero

Explore the variety of open remote roles at Employment Hero, offering flexible work options across multiple disciplines and skill levels.

View all jobs at Employment Hero

Remote companies like Employment Hero

Find your next opportunity by exploring profiles of companies that are similar to Employment Hero. Compare culture, benefits, and job openings on Himalayas.

View all companies

Find your dream job

Sign up now and join over 85,000 remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan
Employment Hero hiring Security GRC Manager • Remote (Work from Home) | Himalayas