Governance, Risk and Compliance (GRC) Consultant
We Are Fujitsu
We use technology to create happier lives. We are a global leader in technology and business solutions that transform organisations and the world around us. We have a long heritage of bringing innovation and expertise, continuously working to contribute to the growth of society and our customers.
About the Role
We are looking for a Governance, Risk, and Compliance (GRC) Consultant to join our team and partner with a highly skilled group to provide real‑time security advice and guidance that uplifts our clients' cyber posture.
You will help our clients :
- Develop and embed cyber security policy in alignment with industry frameworks and standards such as ISM, PSPF, Essential 8, NIST, ISO27001 / 27002, etc.
- Undertake compliance assessments in alignment with policy and industry standards.
- Quantify, understand, and manage security risks.
- Uplift the cyber security stance and protect their systems.
- Develop meaningful risk reporting.
- Assist the client with the security authorisation of their systems.
Location could be flexible across Wellington, Auckland, or Christchurch. This role offers hybrid working.
Responsibilities
With minimal oversight :
Authoring security policy, process improvement, and security documentation artifacts.Undertaking compliance assessments against whole‑of‑government and industry standards.Creating threat models that reflect the unique context of an organization and its in‑scope systems.Undertaking risk assessments.Assisting with the uplift of cyber security posture and awareness to protect their systems and data.Collaborating with internal teams to ensure the understanding of security risks and proposing fit‑for‑purpose mitigations.Supporting the automation of collection and collation services for cyber reporting across multiple sources.Leading or supporting the team to deliver outcomes within scope, on time, on budget, and to expected standards.Managing your own workload to ensure client and company timelines are met.Consistently using the quality assurance process to deliver client results.Other duties as required.Mandatory Skills
Cyber Security Frameworks & Compliance
Strong understanding of ISM, PSPF, Essential 8, NIST, ISO27001 / 27002, and other relevant standards.Experience conducting compliance assessments and security audits.Ability to develop and embed cyber security policies aligned with industry best practices.Risk Management & Threat Modelling
Expertise in assessing, quantifying, and managing security risks.Proficiency in threat modelling tailored to organisational security needs.Capability to provide meaningful risk reporting and recommendations.Security Documentation & Policy Development
Experience in authoring security policies, process improvement plans, and security documentation.Ability to create clear and actionable security guidelines for organisations.Cybersecurity Posture & Awareness
Proven ability to uplift an organisations security stance.Skilled in training and improving security awareness across teams.Strong understanding of security authorisation processes for systems.Experience in automating cyber reporting across multiple sources.Required skills
Ability to work independently and with minimal oversight.Strong communication skills to collaborate with teams and stakeholders.Critical thinking to assess security gaps and propose solutions.Why Fujitsu?
We put people first. We believe in the power of diversity to drive innovation and our AWEI Gold Employer status, and Rainbow Tick certification for LGBTI+ inclusion show that we value an inclusive culture.We offer tailored career paths across our global organisation to support your professional and personal growth.Our customers trust us. We have an excellent reputation across the region and globally.Best in class reward and recognition programmes, flexible work, volunteering leave, and more.We live our values of aspiration, trust, and empathy, all day, every day.Commitment to Diversity, Equity and Inclusion
As an inclusive employer, Fujitsu aims to recruit a diverse range of talents to help us achieve our purpose. In line with our diversity, equity and inclusion strategy, we highly welcome applications from women and gender‑diverse people; Aboriginal and Torres Strait Islander people; Māori and Pacific people; LGBTI+ people; people with a disability; culturally and linguistically diverse people; veterans, Australian Defence Force (ADF) and emergency responders. Transgender and gender‑diverse applicants can request a copy of our Frequently Asked Questions to assist with the recruitment journey.
If you don’t tick every box in this job description, please don’t rule yourself out. Research suggests that under‑represented groups tend to only apply if they meet every requirement. We focus on hiring people who value inclusion, collaboration, adaptability, courage, and integrity, rather than ticking boxes so if this resonates with you, then please apply. For more information, please email
Search Firm Representatives PLEASE READ
Fujitsu does not accept unsolicited assistance from search firms for employment opportunities. All CVs or resumes submitted by search firms to any employee at our company without a valid written agreement in place for this position will be considered the sole property of our company. No fee will be paid if a candidate is hired by Fujitsu due to an agency referral where no existing agreement is in place with the Fujitsu Talent Acquisition Team. Where agency agreements are in place, introductions must be through engagement by the Fujitsu Talent Acquisition Team.
#J-18808-Ljbffr