KBR logo

Cyber Security Compliance Manager, APAC

KBR

Hybrid
Sydney, NSW
Full-time
Manager
Salary not listedPosted 5h ago

Real job — pulled straight from KBR’s careers page · Verified August 12, 2026 · No reposts.

Job description

KBR is hiring a Cyber Security Compliance Manager, APAC — a full-time, based in Sydney, NSW role. Apply directly on KBR's careers page below.

APAC Cyber Security Compliance Manager

Location: Sydney, New South Wales, Australia, Melbourne, Victoria, Australia, Brisbane, Queensland, Australia

Time Type: Full time

Job Description

Title:

APAC Cyber Security Compliance Manager

Shape and strengthen cybersecurity across the APAC region

KBR is seeking an experienced and strategic APAC Cybersecurity Compliance Manager to join our global Chief Information Security Officer (CISO) organisation. In this critical leadership role, you will be responsible for driving and implementing cybersecurity and compliance initiatives across KBR's APAC operations, ensuring the confidentiality, integrity, and availability of information assets while supporting business objectives across the region.

Working closely with the global CISO team, business leaders, and key stakeholders, you will provide security leadership, manage risk, promote compliance, and help build a strong security culture across our APAC operations.

About the Role

As the APAC Cybersecurity Compliance Manager, you will lead the development and execution of regional cybersecurity strategies aligned with KBR's global security framework, regulatory obligations, and industry best practices. You will play a pivotal role in strengthening governance, managing cybersecurity risk, supporting audits and assessments, and ensuring security outcomes are embedded into business operations.

Key Responsibilities

Information Security Strategy & Governance

  • Develop and implement APAC cybersecurity strategies aligned with corporate policies, regional regulations, and business objectives.
  • Establish and maintain security policies, standards, and procedures.
  • Partner with business leaders to integrate cybersecurity considerations into decision-making and operational processes.
  • Provide regional leadership on information security governance and compliance initiatives.

Risk Management & Compliance

  • Conduct regular security risk assessments across APAC operations.
  • Identify vulnerabilities, threats, and emerging risks.
  • Develop and implement mitigation strategies and security controls.
  • Monitor compliance with applicable laws, regulations, customer requirements, and contractual obligations.

Incident Response & Continuous Improvement

  • Support regional cybersecurity incident response activities.
  • Conduct post-incident reviews and lessons-learned exercises.
  • Drive continuous improvement initiatives to strengthen security resilience and reduce future risk.

Security Awareness & Training

  • Develop and deliver security awareness and education programs for employees, contractors, and third-party partners.
  • Foster a culture of security awareness across the organisation.
  • Communicate emerging threats, risks, and best practices to stakeholders.

Third-Party Risk Management

  • Assess cybersecurity risks associated with vendors, suppliers, and business partners.
  • Perform security due diligence activities.
  • Collaborate with Procurement and Legal teams to ensure appropriate security obligations are embedded within contracts and agreements.

Reporting, Metrics & Assurance

  • Develop security performance metrics and reporting frameworks.
  • Provide regular updates to the CISO organisation and business leadership on security posture, compliance activities, risks, and incidents.
  • Identify trends and opportunities for improvement through security reporting and analysis.

Security Audits & Assessments

  • Coordinate and support internal and external security audits.
  • Manage remediation activities arising from audit findings.
  • Ensure ongoing compliance with regulatory, contractual, and organisational security requirements.

About You

You are a seasoned cybersecurity professional with strong leadership capabilities and a passion for enabling secure business operations. You bring a strategic mindset, excellent stakeholder engagement skills, and a deep understanding of cybersecurity governance, risk, and compliance.

Essential Requirements

  • Bachelor's degree in Computer Science, Information Systems, Cybersecurity, or a related discipline.
  • Ability to obtain an Australian Government Security Clearance.
  • Significant experience in information security management, cybersecurity compliance, risk assessment, and incident response.
  • Strong understanding of cybersecurity governance frameworks, controls, and regulatory requirements.
  • Experience engaging with senior stakeholders and influencing business outcomes.
  • Excellent analytical, problem-solving, communication, and interpersonal skills.
  • Demonstrated ability to lead initiatives and promote a strong security culture.

Technical Knowledge

  • Strong knowledge of information security principles, technologies, and best practices.
  • Experience working with recognised security frameworks and standards, including:
    • ISO 27001
    • NIST Cybersecurity Framework
    • Australian Essential Eight Maturity Model
    • Australian Information Security Manual (ISM)
    • Defence Industry Security Program (DISP)
  • Understanding of emerging cyber threats, attack vectors, and security trends.

Desirable Qualifications

  • CISSP (Certified Information Systems Security Professional)
  • CISM (Certified Information Security Manager)
  • Other relevant cybersecurity certifications

Why Join KBR?

At KBR, you'll have the opportunity to work on complex and meaningful projects while helping protect critical business operations across the APAC region. You'll be part of a global cybersecurity team, influence strategic security outcomes, and contribute to a culture that values innovation, collaboration, and continuous improvement.

Benefits include:

  • Industry leading salaries reviewed annually.
  • Flexible work arrangements (start/finish times, WFH, Flex time)
  • Salary packaging and novated leases
  • Paid professional membership fees
  • Life/Health insurance discounts
  • Employee stock purchase plans
  • Personal career development plans
  • Growth and promotion opportunities

Apply today and help shape the future of cybersecurity across KBR's APAC operations

#LI-DNP #LI-DNI #S-DNI 

Get Cyber Security Compliance Manager, APAC jobs like this

New roles from thousands of companies land hourly, straight from their careers pages. Get the freshest matches by email so you never miss one.

Email me new jobs
Accenture logo

Crowdstrike Technical Consultant

London
✓ From careers page· 51m ago
Accenture logo

Technical Consulting Manager, Crowdstrike

London
✓ From careers page· 52m ago
Accenture logo

Crowdstrike Technical Consulting Manager

London
✓ From careers page· 52m ago
Accenture logo

Database Administrator

Santiago
✓ From careers page· 1h ago

Frequently asked questions

What skills are required for Cyber Security Compliance Manager, APAC at KBR?

The required skills for Cyber Security Compliance Manager, APAC at KBR include: ISO 27001, CISSP, CISM.

What is the seniority level for Cyber Security Compliance Manager, APAC at KBR?

Cyber Security Compliance Manager, APAC at KBR is a Manager level position.

How do I apply for Cyber Security Compliance Manager, APAC at KBR?

You can view the full description and apply for Cyber Security Compliance Manager, APAC at KBR on EchoJobs: https://echojobs.io/job/kbr-apac-cyber-security-compliance-manager-wzi0t.