ASX

Senior Manager Technology Risk Strategy

ASX

Sydney, New South Wales, Australia · Full Time

Be the first to apply

Experience
Any
Salary
Openings
1
Posted
1 week ago
Work mode
In office
Eligibility
Applicants must have permanent unrestricted work authorization in Australia.
Resume
Required to apply

Where you'll work

Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.

Job description

About ASX

Join ASX, a global securities exchange committed to powering a stronger economic future by enabling a fair, dynamic marketplace. Renowned as a trusted market operator and an innovative data hub, ASX values diversity and fosters an inclusive workplace culture through employee-led networks supporting LGBTIQ+ inclusion, gender equality, accessibility, wellbeing, and cultural celebrations.

Role Purpose

This position leads the Line 1 responsibility for Technology Risk Strategy at ASX, translating enterprise risk frameworks into an aligned and practical technology risk taxonomy, control mechanisms, and risk assessment methodologies to support scalable risk management, assurance, and regulatory compliance.

Team Environment

You will work within the Technology Risk, Business Management & Strategy team supporting ASX Technology division across risk, governance, and operational planning. The team empowers Technology leaders to effectively manage risk, meet regulatory expectations, and uphold governance and performance standards.

Key Responsibilities

  • Lead the development and ownership of the Line 1 technology risk strategy and control enablement, ensuring enterprise risk and compliance frameworks are effectively operationalized within the Technology division, addressing both technology and cyber risks.
  • Design, enhance, and oversee the technology and cyber risk framework ecosystem, including taxonomies, metrics, policies, control frameworks, and assessment methods, maintaining alignment to internal and external standards and industry best practices.
  • Identify and develop new risk and control methodologies to address gaps, establish target-state practices, implementation plans, guidance, and transition pathways aligned with enterprise risks to elevate risk maturity.
  • Manage and maintain the IT General Controls (ITGC) library, facilitate updates, coordinate control deployment, and support assurance activities.
  • Advance integrated IT system-level risk reporting toward data-driven insights, incorporating considerations of risk maturity.
  • Provide authoritative Line 1 input on enterprise frameworks such as risk and compliance and criticality tiering to ensure technology and cyber risk viewpoints are accurately represented and operationally grounded.
  • Develop and promote guidance, playbooks, and educational resources to embed risk awareness and control practices within daily technology operations and delivery.
  • Continuously improve the technology risk ecosystem via simplification, standardisation, automation, and clear ownership structures.
  • Lead, mentor, and guide a team of risk practitioners managing competing priorities and heightened risk exposures, fostering autonomy, reducing single points of failure, and raising risk maturity through practical standardisation and simplification.

Candidate Profile

  • Extensive experience in technology risk or compliance functions (Lines 1, 2, or 3), demonstrating judgment and autonomy suitable for senior Line 1 leadership roles.
  • Proven track record in defining and executing Line 1 Technology Risk Strategy.
  • Ability to translate enterprise risk frameworks into feasible and consistent technology risk practices across complex environments.
  • Strong technical expertise in technology and cyber risk to effectively collaborate with engineers and cyber specialists, designing risk and control mechanisms grounded in operational realities.
  • Experience developing and maintaining risk and control assets such as taxonomies, libraries, and assessment tools ensuring ongoing coherence and scalability through changing environments.
  • Sound risk judgment at the system level with the capacity to balance trade-offs, integrate feedback, and adapt methodologies for consistent application and user-friendliness.
  • Leadership ability in uncertain, evolving contexts, including directing work, prioritizing activities, and delivering results without relying on predefined templates or structures.
  • People management skills demonstrated through direct or matrix leadership, including coaching and building capability, judgment, and autonomy among experienced professionals.

Preferred Qualifications

  • Prior experience in regulated, high-demand, or critical technology environments with elevated scrutiny of technology and cyber risk.
  • Risk certifications such as CISA, CISSP, or comparable credentials.
  • Knowledge of established frameworks like NIST, ITIL, COSO.
  • Familiarity with emerging risk domains including AI, large-scale cloud deployments, and continuous deployment processes.

Additional Information

ASX is an inclusive employer supporting flexible working arrangements, including part-time and hybrid options, even for roles advertised as full-time. Successful candidates will undergo background screening including reference and police checks as part of the onboarding process. Applicants must have unrestricted permanent work authorization in Australia. ASX is committed to hiring based on skills, qualifications, and cultural fit, and encourages applications even if not all criteria are met. Reasonable adjustments during hiring can be requested.

Level

Senior

How they work

Adaptability Leadership Strategic Thinking
🤖
Online · instant AI help
Broxer