Bring on wonderful careers.

We're on a mission to bring new and uplifting experiences to our guests, transforming flying from simply 'nice', to something wonderful.

Like any good mission, this one starts with our people.

Which is why we encourage our team to embody the fun, laid back, authentic spirit we've become famous for. Because when they're free to be themselves, they're better able to own their personal responsibilities and go the extra mile to help our guests.

Job Overview

  • Work type:

    Full Time

  • Location:

    Brisbane, Canberra, Melbourne, Sydney

  • Job type:


  • Applications close:

Manager Information Security Governance, Risk, and Compliance

Hello. We’re Virgin Australia. And we’re back (in a big way).

We’re the airline that’s always done things a little different. Our way. The Virgin way. For us, flying is so much more than simply taking off and landing (although we understand that is quite important). It’s about going the extra mile, in the air and on the ground, to create authentic experiences that put our guests firmly at the heart of everything we do.

Who we’re looking for:

The Information Security Governance, Risk and Compliance (GRC) Manager will report to the Head of Information Security and is responsible for the management and delivery of Information Security risk management and governance across VA. Leading the InfoSec GRC team you will help to grow a security conscious culture across the organisation, while ensuring that the  business operates in line with an appropriate risk management profile and meets our compliance obligations.

You will bring a sophisticated, risk-based, approach and have solid working knowledge of the information security best practice and its real-world application. You will be deeply familiar with industry compliance standards such as PCI-DSS, ISO 27001 and are ideally certified in CRISC or CISSP.

You will be passionate about technological trends/ developments in the areas of information security, risk management, web architectures, and cloud.

What you’ll be doing:

  • Proactively manage Information Security Risk and ensure that ongoing issues are identified and resolved, and/or projects are planned to correct underlying issues
  • Set clear expectations and ensure OKRs are in place for all team members, linked to organisational objectives
  • Supervise the IS Governance processes to ensure that VA’s enterprise-wide security program responds appropriately to the changing threat environment and external obligations
  • Oversee the activities of the Information Security GRC team, ensuring that capability and resource is applied effectively to manage VA’s Information Security Risk position.
  • Work with the broader Information Security Team to raise the maturity of VA’s Information Security Program.
  • Provide coaching, mentoring, development, and training opportunities across the business to cultivate a culture of security awareness.

You’ll be great in this role if you have:

  • Extensive experience in Information security management, working in a matrixed, complex environment. 
  • Experience in designing and implementing Information security programs, policies, and procedures, in enterprise environments
  • Strong experience managing external stakeholders including business partners, regulators, and government bodies
  • An understanding of IT Security principles including technologies touching data, physical, business process, system integration, eCommerce.
  • Airline or transport industry experience (beneficial).
  • Knowledge of Information Security frameworks and standards including ISO 27001, NIST, ASD Essential 8.
  • Professional security management certification, such as Certified in Risk and Information Systems Control (CRISC) or Certified Information Systems Security Professional (CISSP), or similar credentials.

What you’ll get from us:

We’re committed to looking after you, with some of the best benefits and conditions in the industry – including (but not limited to):

  • Heavily discounted air travel for you and your loved ones (including $1000 worth of travel credits per year)
  • Flexible working arrangements (including work hours and work from home)
  • Discounts on travel insurance, car hire, accommodation and experiences worldwide
  • Discounted Virgin Australia Lounge membership
  • Hospitality, retail, technology, beauty services and wellness discounts
  • Wellness support, including the betterme digital wellbeing platform
  • A comprehensive Employee Assistance Program, which offers confidential coaching and support from qualified professionals for all aspects of life – physical, mental, social and financial
  • Dress for Your Day – enjoy the freedom to wear whatever is appropriate for the type of work you do and the day you have ahead of you

Equality rules:

We’re all individuals. We love that. That’s why we encourage applications from Indigenous Australians, people with disability, those from diverse cultural backgrounds, our friends in the LGBTQI+ community, and anyone else who wants to join our family.


The safety and security of our people, guests and operations come first. Always. That’s why we’ve put together a comprehensive ‘Mandatory COVID-19 Vaccination Policy’. In a nutshell, to work with us, you’ll need to comply with our (and the airport’s) rules and regulations. And be fully vaxxed.

Ready to apply?

We’re ready to hear from you. Apply now.

Apply now Refer a friend

Back to search results