As Manager, Risk Assurance (Technology, Data & AI), you'll play a key role in delivering HCF's Line 2 Risk Assurance program, providing independent assurance that technology, data and AI risks are effectively identified, managed and controlled across the organisation.
This is an opportunity to join a newly established Risk Assurance function and help shape a growing capability at HCF. As the team continues to evolve, you'll contribute to the development of assurance frameworks, methodologies and practices that strengthen risk management and support HCF's regulatory obligations.
You'll lead assurance reviews across technology, data and AI risks, assessing control effectiveness, governance practices and compliance with regulatory requirements. Through practical, risk-based recommendations and trusted stakeholder partnerships, you'll help drive stronger risk outcomes while providing independent challenge and valuable business insight.
About You
You're an experienced risk assurance, controls assurance or internal audit professional with expertise across technology, data and AI risks within a regulated environment.
You have a strong understanding of governance, controls and regulatory requirements, and can confidently assess risks, identify opportunities for improvement and provide practical recommendations that make a meaningful impact. You're skilled at building relationships, influencing senior stakeholders and balancing independent challenge with a collaborative approach.
You'll also be motivated by the opportunity to help build and mature a growing assurance function. You enjoy working in evolving environments, contributing new ideas and helping shape frameworks, practices and ways of working that will support the long-term success of the team.
To be successful, you'll have:
- Experience in risk assurance, controls assurance or internal audit within financial services, health insurance or a similarly regulated industry
- Strong knowledge of technology, data and AI risk management, governance and controls
- Experience assessing regulatory compliance requirements, including APRA standards such as CPS 230 and broader ASIC/FAR obligations
- The ability to lead end-to-end assurance reviews, including planning, testing, reporting and remediation oversight
- Excellent stakeholder engagement, communication and influencing skills
- A degree in Information Technology, Risk Management, Business, Accounting or a related discipline
- Professional certifications such as CA, CPA, CIA or CISA
Experience gained within a Big 4 or leading chartered firm, along with qualifications in AI governance, data governance or cyber security, will be highly regarded.