PwC

Technology and Cyber Risk Business Partner | Senior Manager | Risk & Ethics

PwC  •  Sydney, AU (Onsite)  •  3 hours ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

Line of Service

Internal Firm Services

Industry/Sector

Not Applicable

Specialism

Data Quality Assurance

Management Level

Senior Manager

Job Description & Summary

Trusted risk advice is built through sound judgement, practical insight and constructive challenge. As the Risk Business Partner for Technology and Cyber at PwC, you’ll be the dedicated Line 2 risk adviser to the firm’s Technology and Cyber team, helping leaders understand, own and actively manage technology, cyber, data and emerging technology risks. You’ll combine enterprise risk business partnering expertise with a practical understanding of technology controls, translating enterprise priorities into consistent execution and decision-ready insights.

Why PwC?

At PwC Australia, your skills meet purpose. We tackle big challenges across industries like finance, technology, energy, and health, giving you the chance to make a real impact. Here, your growth is our priority. You’ll work with leading teams, explore new technologies, and unlock your full potential.

Join a global community of more than 370,000 people who value bold ideas, collaboration, and lasting change. Together, we’re building trust and shaping the future.

What you’ll do:

  • Partner with Technology and Cyber leaders as their trusted Line 2 risk adviser, providing practical support, independent oversight and constructive challenge on risk profiles, control environments and risk management practices.
  • Support the first line to identify, assess, monitor and manage technology, cyber, data and AI-related risks, while maintaining clear accountability for first-line ownership.
  • Undertake hands-on risk work, including risk assessments, control reviews, deep dives, root cause analysis and reviews of issues, incidents, assurance outcomes, risk appetite metrics and guardrails.
  • Assess the design and operating effectiveness of key technology, cyber and data controls, identify gaps and provide pragmatic recommendations that strengthen the control environment.
  • Review risk and control implications for new or materially changed technology, products, services and third-party arrangements, including due diligence and risk acceptance considerations.
  • Provide Line 2 oversight of technology and cyber policies, frameworks, standards and procedures, and support their consistent application across the Technology and Cyber team.
  • Partner with relevant specialists on data security, AI and GenAI, business continuity, incident and cyber crisis readiness, regulatory compliance and third-party risk.
  • Support incident and post-incident reviews by assessing control breakdowns, root causes, lessons learnt and the adequacy of remediation plans.
  • Translate Enterprise Risk priorities into practical delivery, coordinating agreed activities, tracking progress and integrating risk insights into a coherent view for the Technology and Cyber portfolio.
  • Prepare clear, consistent and decision-focused insights for senior stakeholders and governance forums, including reporting on control effectiveness, issues, remediation, assurance and risk appetite.

What we’re looking for:

Core skills

  • Strong experience in Line 2 risk, technology risk, cyber risk, internal audit, business partnering, enterprise risk transformation or risk programme delivery in a complex, multi-stakeholder environment.
  • A practical understanding of technology controls and how they mitigate risks across areas such as identity and access management, change management, IT operations, vulnerability management, security monitoring, data protection, resilience and third-party technology services.
  • A deep understanding of risk management frameworks and practices, including risk assessment, controls, issues, incidents, assurance and risk appetite, together with experience operating within the Three Lines of Accountability.
  • The ability to assess control design and operating effectiveness, identify risk themes and translate technical findings into proportionate, actionable recommendations.
  • Proven ability to influence and constructively challenge senior stakeholders, strengthening risk ownership and accountability without relying on formal authority.
  • Strong written and verbal communication skills, with the ability to explain complex technology and cyber risk concepts clearly to technical and non-technical audiences.
  • The ability to synthesise risk, controls and assurance information into concise, decision-ready insights and executive-level reporting.

Desirable skills

  • Experience partnering directly with a Technology, Cyber, Data or digital function and working collaboratively with technical subject matter experts.
  • Knowledge of recognised technology and cybersecurity frameworks and standards, such as NIST Cybersecurity Framework, COBIT and ISO/IEC 27001.
  • Experience with data security, AI or GenAI risk, cyber incident or crisis management, third-party risk and technology-related regulatory or compliance requirements.
  • Experience supporting senior management or Board-level governance and working with GRC platforms, risk data or dashboards.
  • Experience in a professional services or partnership environment.
  • A relevant degree in information technology, computer science, cyber security, risk or a related field. Relevant certifications such as CRISC, CISM or CISSP are highly desirable.

Don't meet every requirement? We encourage you to apply. We value all forms of experience that may be transferrable and relevant.

What you’ll gain:

  • The opportunity to work at the intersection of enterprise risk, technology and cyber security and influence the firm’s technology and cyber risk agenda.
  • Work within an inclusive environment committed to Inclusion and Diversity and First Nations Prosperity, ensuring diverse perspectives are at the forefront of our work.
  • Flexibility means trusting you to choose when, where, and how you work, balancing what’s best for you, your team, and your clients to grow and thrive together.
  • Clear paths for career progression supported by continuous learning and leadership development.
  • Generous leave entitlements to support your work-life balance, including floating public holidays, birthday leave and the ability to purchase additional leave on top of your four weeks.
  • A world-class parental leave policy offering up to 26 weeks of leave for caregivers, supporting your family and personal life.
  • We know that perks are as important as your financial rewards. Explore all the benefits that PwC has to offer here.

Ready to grow here and go further? Join PwC Australia as a Risk Business Partner for Technology and Cyber and help strengthen the way the firm understands, owns and manages technology risk.

We’re committed to treating all our job applicants fairly and with respect, irrespective of their actual or assumed background, disability, neurodivergence, or any other protected characteristic and to maintaining a safe, respectful workplace for everyone. We want you to have every opportunity to thrive in our selection process. In the application form, you can let us know what adjustments you require during our recruitment process and/or any workplace accommodations you anticipate needing to help you perform your role.

No agencies please: We kindly request that recruitment agencies do not submit CVs in response to this advertisement. We are only accepting applications directly from individuals.

Education (if blank, degree and/or field of study not specified)

Degrees/Field of Study required:

Degrees/Field of Study preferred:

Certifications (if blank, certifications not specified)

Required Skills

Optional Skills

Accepting Feedback, Accepting Feedback, Active Listening, AI Fluency, AI-Human Collaboration, Analytical Thinking, Business Continuity, Business Process Improvement, Business Process Modeling, Business Risk, Business Risk Identification, Coaching and Feedback, Communication, Contract Negotiation, Contractual Risk Mitigation, Corporate Governance, Creativity, Crisis Management, Data Analysis and Interpretation, Digital Tooling, Embracing Change, Emotional Regulation, Empathy, Enterprise Risk Management (ERM), Governance Risk Compliance (GRC) {+ 33 more}

Desired Languages (If blank, desired languages not specified)

Travel Requirements

Not Specified

Available for Work Visa Sponsorship?

No

Government Clearance Required?

No

Job Posting End Date

October 23, 2026

PwC

About PwC

At PwC, we help clients drive their companies to the leading edge. We’re a tech-forward, people-empowered network with more than 370,000 people in 149 countries. Across audit and assurance, tax and legal, deals and consulting we help build, accelerate and sustain momentum. Find out more at www.pwc.com.

PwC: Audit and assurance, consulting and tax services

PwC refers to the PwC network and/or one or more of its member firms, each of which is a separate legal entity. Content on this page has been prepared for general information only and is not intended to be relied upon as accounting, tax or professional advice. Please reach out to your advisors for specific advice.

Industry
Consulting & Advisory
Company Size
10,000+ employees
Headquarters
, GB
Year Founded
Unknown
Website
pwc.com
Social Media