Employment OS for your Business

Senior Risk & Compliance Analyst

FTGRC • Melbourne, Victoria 3000, Australia • Full-time

Role Type

Permanent • Full-time • Mid-level Senior

Description

Senior Risk & Compliance Analyst

Join a leading GRC Team in Melbourne

Are you a seasoned risk and compliance professional looking for your next challenge?

Cbus Property is seeking a Senior Risk & Compliance Analyst to join our Governance, Risk & Compliance (GRC) Team in Melbourne.

Reporting to the Senior Manager, Risk & Compliance, you will play a key role in supporting and enhancing Cbus Property’s GRC frameworks. You will partner with operational teams to uplift risk maturity, strengthen control effectiveness, and provide clear, timely insights to governance forums and enhance assurance outcomes. You will support the ongoing operation and improvement of our GRC system (Protecht) and help embed fit-for-purpose risk and compliance practices across the organisation.

Key Responsibilities

  • Partner with business units to identify, assess and manage key strategic, operational, financial and compliance risks, supporting uplift in risk maturity.
  • Facilitate risk workshops and prepare risk assessment outputs including risk statements, root causes, consequences, inherent and residual risk ratings, treatment plans and accountabilities.
  • Maintain and enhance risk and compliance artefacts (e.g., risk registers, controls library, compliance obligations register) ensuring accuracy, completeness and timely updates.
  • Prepare and deliver risk and compliance reporting for governance forums, including dashboards, insights on trends and emerging risks, and analysis of control effectiveness.
  • Monitor key risk indicators (KRIs) and risk appetite measures, including threshold setting, exception management and escalation.
  • Plan and execute assurance activities (control testing and thematic reviews), document results, agree remediation actions and track closure.
  • Support the operationalisation of relevant prudential and regulatory requirements (including CPS 230 where applicable) through practical guidance, frameworks and tools.
  • Administer and continuously improve the Protecht GRC system including user access, configuration support, data integrity checks, and report development.
  • Coordinate crisis management, business continuity and disaster recovery activities, including schedule, exercise planning, facilitation, debriefs and improvements tracking.
  • Develop and deliver training, communications and user guides to build capability across the organisation in risk, compliance and Protecht usage.
  • Contribute to governance and policy framework administration, including periodic reviews, stakeholder consultation and version control.

Skills & Experience

  • Tertiary qualification in Risk, Compliance, Law, Business, Finance or a related discipline.
  • 3-5 years’ experience in a risk and/or compliance role (ideally within a regulated, financial services, property, funds management or similarly complex environment).
  • Working knowledge of enterprise risk management concepts and frameworks (e.g., risk appetite, KRIs, control design and effectiveness, assurance and issue management).
  • Experience conducting control testing and assurance reviews and producing clear, evidence-based findings and remediation actions.
  • Demonstrated experience with GRC systems with Protecht experience highly desirable (administration, reporting and data quality).
  • Understanding of relevant legislative/regulatory obligations and compliance management practices; exposure to CPS 230 (or similar prudential standards) preferred.
  • Able to work under general direction, exercising sound judgement and autonomy to manage competing priorities and deliver outcomes with minimal guidance.
  • Exposure to technology and cybersecurity risk concepts and the ability to work with technical stakeholders to understand controls and risk treatment.
  • Strong analytical and report-writing skills, including the ability to translate complex information into concise insights for senior stakeholders and governance forums.
  • Confident stakeholder engagement and facilitation skills (e.g., leading workshops, influencing outcomes, and partnering with operational teams).
  • High attention to detail, and commitment to professional integrity and confidentiality.

About you

You’re a proactive and pragmatic risk and compliance professional who can translate requirements into practical guidance and outcomes. You bring strong stakeholder engagement and facilitation skills, communicate clearly in writing and verbally, and enjoy working in a hands-on role that blends risk partnering, assurance activity and continuous improvement.

What we offer

At Cbus Property we strive to create a thriving, high performing and inclusive workplace where very individual feels a deep sense of belonging and empowerment. We build capability, champion innovation and drive continuous improvement creating a people experience that inspires growth, connection and shared success.

We offer our employees a range of benefits including additional annual leave, a professional development program, workplace wellness program and premium office facilities.

Ready to make a difference?

Please submit your CV and cover letter via the “Apply Now” button by 5pm on Friday 1 May.

If you have any queries in regard to the role, please contact: careers@cbusproperty.com.au.

Cbus Property is committed to creating a diverse environment and is proud to be an equal opportunity employer.