Compliance and Security Officer
- Full-time
- Office Location: Melbourne
- Department: Risk Management
Company Description
For more than 20 years, KordaMentha has supported businesses through some of their most complex matters and opportunities. Founder owned and led; we are an advisory firm that helps corporations, financiers, lawyers, private investors and government clients to grow, protect and recover value.
That’s what we do, but it’s how we do this that makes us who we are.
Proudly independent, strategically local, and with a bias for action to get things done, we focus on doing what is right by our clients, our people, and the wider community. Our track record shows that we help navigate the best path forward in challenging times, and do so across cities, regions and territories.
In the most stressful or demanding environments, we continue to drive change where it really counts.
Job Description
Due to growth within the firm, our Risk team are seeking a Compliance and Security Coordinator to lead and deliver compliance with ISO/IMS/ISMS across the firm.
Working as part of a collaborative and highly engaged function, the Risk team partners closely with a broad range of internal and external stakeholders to support strategic outcomes and business priorities. The team also oversees DISP‑aligned security governance, including personnel security, security awareness, incident management and protective security practices.
This role provides meaningful exposure to risk, compliance and security initiatives, offering opportunities to contribute to firmwide programs that directly support continuous improvement and long term business objectives.
Key Responsibilities:
- Lead and maintain firm‑wide compliance with ISO 9001, ISO 14001, ISO 45001 and ISO 27001, ensuring ongoing certification readiness and effective governance of the Integrated Management System (IMS) and Information Security Management System (ISMS).
- Develop, implement and maintain security governance practices in line with DISP and DSPF requirements, including preparation and submission of DISP documentation and audit support.
- Manage personnel security requirements, including AGSVA security clearances, onboarding and offboarding of cleared personnel, clearance registers, and security awareness and training.
- Maintain and enhance IMS and ISMS documentation, including policies, procedures, registers and records, ensuring accuracy and alignment with legislative and standards requirements.
- Coordinate external certification and surveillance audits, managing audit readiness, stakeholder engagement, logistics, corrective actions and ongoing certification requirements.
- Manage nonconformances, incidents, hazards and complaints, facilitating root cause analysis, corrective and preventive actions, trend analysis and continual improvement initiatives.
- Coordinate management review processes and provide meaningful compliance, risk and performance reporting and dashboards to leadership and governance forums.
- Deliver IMS and ISMS training, coaching and operational support to uplift capability, awareness and ownership across the business.
- Coordinate security incident, insider threat and business continuity activities, including incident reporting, liaison with authorities, annual BCP testing, and ongoing monitoring and improvement of security practices.
Qualifications
- Minimum of 3 years’ experience in a similar role, ideally within professional services, the public sector, or a compliance role in a comparably sized organisation.
- Relevant tertiary qualification highly regarded but not necessary.
- Professional certifications in compliance, risk management, or security (such as CPP, CISM, CISSP, or similar) are highly regarded.
- Strong understanding of regulatory frameworks and governance standards applicable to Australian organisations.
- Strong level of attention to detail.
- Ability to handle sensitive information with professionalism and discretion.
- Excellent communication and stakeholder engagement.
Due to security requirements involved with this role, we can only consider candidates who hold an Australian Citizenship.
Additional Information
Build your future- shape ours
We don’t just hire talent; we invest in it - with support that accelerates your success in every way
Why Join Us?
- Professional Development: Expert mentorship, tailored training via KordaMentha Business School, study support, and our Accelerate program for Analysts to Associate Directors — build your brand, expand your network, and gain strategic insights from senior leaders
- Flexibility: We champion work/life integration with options that fit your lifestyle.
- Career Growth: Merit-based promotions, secondments, and opportunities to work alongside senior leaders on impactful projects.
- Leave That Works for You: Buy extra leave and access volunteer, generous parental leave and career break options.
- Culture & Connection: Social events, cultural celebrations, and our bi-ennial black-tie ball.
- Family Support: Flexible parental leave, return-to-work support through our partner GracePapers, and resources for every stage of family life.
- Health & Wellbeing: Inclusive wellness initiatives and confidential and industry leading EAP for you and your family.
This isn’t just a job — it’s a place where your ambitions are nurtured, your wellbeing is valued, and your contributions celebrated. Ready to shape your future with us?
At KordaMentha, we believe there is strength in difference. Our entrepreneurial spirit expands the possibilities for action. We approach situations, challenges, and opportunities with optimism, curiosity, and diversity of thought. We seek novel solutions to problems and encourage unconventional and innovative approaches.
Our team's diverse skillsets, backgrounds and experiences fuel KordaMentha's different mindset. We encourage candidates from all backgrounds to apply, recognising that talent and potential extend beyond traditional qualifications. Our selection process values diverse perspectives and considers each applicant's unique strengths and capabilities.