We are seeking an experienced and strategic Senior Manager – Technology & Cyber Risk to join our second line of defence (2LOD) function. Reporting to the General Manager, Technology Risk & Compliance, this role will lead and uplift risk frameworks across cyber, technology, and data environments, playing a key role in strengthening governance and ensuring regulatory compliance.
This is a senior leadership opportunity within the Chief Risk Office (CRO), partnering closely with IT and business stakeholders to deliver meaningful oversight and support the safe delivery of technology outcomes aligned with the organisation’s strategic priorities.
Location: Parramatta (with one day per week in our Sydney CBD office)
Key Responsibilities
- Lead the development and implementation of risk frameworks across IT, cyber, data, and cloud environments.
- Provide independent assurance, oversight, and subject matter expertise for the management of non-financial risks.
- Partner with 1st Line Technology teams to monitor and manage risks, issues, incidents, and remediation plans.
- Conduct independent reviews and assessments of technology platforms, infrastructure, and material third-party providers.
- Analyse vulnerability and penetration test findings, escalating material risks and ensuring timely resolution.
- Support the operation of GRC platforms and contribute to accurate and timely reporting for executive and board forums.
- Prepare risk insights and reporting to support decision-making at senior and executive levels.
- Drive the development of policies, standards, and key risk indicators aligned to business risk appetite.
- Build strong working relationships with senior leaders across technology and risk functions.
- Lead and coach a team of risk professionals, fostering capability development and high performance.
About You
To succeed in this role, you will demonstrate:
- 14+ years’ experience in technology, cyber, or operational risk, compliance, audit, or assurance.
- 10+ years' experience in large, complex, and regulated environments, ideally within financial or professional services.
- Deep knowledge of risk frameworks such as NIST, ISO 27001, COBIT, CIS, and related regulatory obligations (e.g. APRA CPS 234, 230, 235).
- Relevant certifications such as CISM, CRISC, CISA, CISSP, or ISO 27001 Lead Auditor (preferred).
- Strong stakeholder engagement and influencing skills at senior levels.
- Experience leading or supporting second line of defence functions or internal audit.
- Sound judgment, commercial awareness, and the ability to navigate complex risk and control issues.
- Proficiency in data analysis and reporting tools such as Power BI, Tableau, and Alteryx.
- Clear and confident communication skills, with the ability to tailor information to diverse audiences.
The MUFG Way
At MUFG, we are committed to being a responsible financial institution that fosters long-term growth and success. The MUFG Way defines our purpose, values, and vision:
- Our Purpose: To be a foundation of strength for our clients and communities, committed to building a better future.
- Our Values: Integrity and Responsibility, Professionalism and Teamwork, Inclusion and Diversity.
- Our Vision: To be the world's most trusted financial group, dedicated to customer success and sustainable growth.
By joining MUFG Pension & Market Services, you become part of an organisation that values integrity, collaboration, and innovation.
What’s it like to work here?
We’re proud to have built a culture and environment that supports diversity, inclusion, and flexible working. We are open and transparent, and we genuinely value the health and wellbeing of our people.
At MUFG Pension & Market Services, we support continuous learning and skill development, providing the tools and opportunities to grow your career. We also offer a range of employee benefits, including:
- Salary sacrificing via superannuation
- Paid parental leave
- Health insurance discounts
- Hybrid working model
- Volunteer and well-being leave
Through our two businesses MUFG Retirement Solutions and MUFG Corporate Markets, we partner with a diversified portfolio of global clients to provide robust, efficient and scalable services, purpose-built solutions and modern technology platforms that deliver world class outcomes and experiences.
A member of MUFG, a global financial group, we help manage regulatory complexity, improve data management and connect people with their assets, through exceptional user experience that leverages the expertise of our people combined with scalable technology, digital connectivity and data insights.