Employment OS for your Business

Senior Risk Specialist

Legal & Risk • Melbourne, Victoria 3000, Australia • Full-time
AI Job Summary
  • 5+ years in risk management, preferably in a regulated industry (telecommunications, financial services, technology, or 
  • Strong enterprise risk management knowledge, including facilitating risk assessments and maintaining risk registers.
  • Experience designing, implementing and embedding risk management practices, policies and procedures.

Role Type

Permanent • Full-time • Mid-level Senior

Description

More About More More and Tangerine are two fast-growing challenger brands in the telecommunications space. Offering nbn®, mobile and fixed voice products right across Australia. To continue to enhance our brands in the market, we are looking for our new Senior Risk Specialist.

Our values of Start with the customer, Simplicity for Speed, Community of Individuals and Collaborate to win underpin everything we do!

The opportunity

The Senior Risk Specialist plays a senior, hands‑on role in designing, implementing and embedding risk management practices across the More and Tangerine business (More Group). The role requires deep risk subject matter expertise, as well as strong influencing skills and execution capabilities.

 

The role partners closely with the Legal, Cyber, Technology teams, as well as senior leaders across the business, to ensure material risks are identified, assessed, mitigated and monitored in line with the organisation’s risk appetite, regulatory obligations and strategic objectives.

 

The role will be responsible for leading activities to establish the More Group’s new enterprise risk management platform by building out foundational risk data and ensuring insights from this platform are integrated into the More Group’s day-to-day business management and decision-making practices.

Responsibilities

Risk framework & governance

  • Support the ongoing development, maintenance and implementation of the enterprise Risk Management Framework, policies, and procedures.
  • Assist in embedding risk management into business planning, project delivery, and operational decision‑making.
  • Ensure risk practices align with recognised standards (e.g. ISO 31000) and regulatory expectations in the telecommunications sector.

 

Risk identification, assessment & monitoring

  • Facilitate risk identification and assessment activities across business units, including operational, regulatory, technology, cyber, privacy and third‑party risks.
  • Maintain and enhance the enterprise risk register, ensuring risks, controls and action plans are clearly articulated, current and evidence‑based.
  • Monitor control effectiveness and collaborate with business owners on remediation and improvement actions.

 

Assurance & reporting

  • Contribute to internal risk reporting for senior leadership and governance forums, including risk dashboards, thematic risk insights and emerging risk analysis.
  • Support internal reviews, audits and regulatory readiness activities relating to risk management practices.

 

Regulatory & industry risk

  • Support risk workstreams related to key regulatory regimes, including telecommunications regulatory obligations, Security of Critical Infrastructure risk management, and privacy, data protection and scam‑related risk controls
  •  

Stakeholder engagement & capability uplift

  • Act as a trusted risk advisor to senior stakeholders across the business.
  • Build risk capability across teams by supporting education, guidance and practical tools.
  • Promote a strong, pragmatic risk culture that enables informed decision‑making rather than risk avoidance.

Skills

Essential

  • 5+ years’ experience in risk management, preferably in a regulated industry (telecommunications, financial services, technology or utilities).
  • Strong working knowledge of enterprise risk management concepts and frameworks.
  • Demonstrated experience facilitating risk assessments and maintaining risk registers.
  • Ability to clearly communicate risk concepts to non‑risk specialists.
  • Strong analytical, written and verbal communication skills.
  • High attention to detail with a pragmatic, solutions‑focused mindset.

 

Desirable

  • Experience with telecommunications, cyber, privacy, SOCI or scam‑related risk frameworks.
  • Familiarity with internal audit, regulatory engagement or assurance activities.
  • Tertiary qualification in risk, law, commerce, accounting or a related discipline.
  • Relevant certifications (e.g. CRMA, CISA, ISO 31000) are beneficial but not mandatory.