Join a 2026 AFR BOSS Best Places to Work Gold Winner and 2026 Sustainability Champion recognised by the World Steel Association. Play a key role in shaping our performance across our InfraBuild business.
Reporting to the Chief Technology and Innovation Officer and based in Sydney, this role is to lead the cyber security, risk and governance agenda for one of Australia's largest industrial organisations. Partner directly with the Chief Technology & Innovation Officer and executive leadership team to shape cyber strategy, strengthen resilience and drive risk-informed decision making across a complex steel manufacturing and recycling business.
The Manager of IT Security, Risk and Compliance leads the development and delivery of an integrated security, governance, risk, and compliance framework aligned with relevant standards and regulations. This role also maintains a robust information security and risk management program to protect InfraBuild’s information assets.
What you will be doing:
- Lead the design, implementation, and ongoing improvement of the organisation’s information security framework and cyber security program in collaboration with internal teams and external partners (MSSP).
- Align IT security, risk, and compliance strategies with business objectives, ensuring measurable value delivery and acceptable risk levels across all business units.
- Assess current IT security, governance, risk, and compliance practices to identify gaps and recommend improvements aligned with industry best practices.
- Develop and implement security strategies, frameworks, and incident response plans to address both tactical and strategic risk exposures.
- Establish and enforce IT policies, standards, and procedures to ensure consistent compliance with enterprise, legal, and regulatory requirements.
- Partner with stakeholders, vendors, and third parties to conduct risk assessments, manage residual risk, and strengthen overall security posture.
- Provide expert advice to senior leadership, deliver security audits and performance reporting, and act as SME for vendor risk and security assessments.
You will be rewarded with:
- Brand new Sydney CBD corporate office
- Exposure to senior executives and complex national operations
- Long-term career development opportunities within a large national organisation
Why this role matters
InfraBuild is modernising its technology and cyber landscape across manufacturing, recycling, distribution and corporate operations. This role will lead security governance and risk across a complex footprint, helping shape the next phase of cyber maturity, regulatory readiness and operational resilience.
Key initiatives include:
- Strengthening cyber resilience across operational technology (OT) and IT environments
- Driving uplift of security controls and risk management capabilities
- Supporting technology transformation programs
- Embedding security into business and technology decision-making