
Enterprise Risk and Assurance Manager
- Docklands, VIC
- Permanent
- Full-time
- Lead initiatives to embed enterprise risk frameworks aligned to Pepperstone’s risk appetite and delegation framework
- Champion the integration of the GRC platform and contribute to system optimisation efforts.
- Drive improvements in risk reporting, analytics, and visualisation to support decision-making.
- Support the operationalisation of risk appetite statements and guide risk owners in embedding controls into business processes.
- Lead the delivery of assurance activities including RCSA (risk control self-assessments), walkthroughs across Lines 1 and 2 and control testing
- Adopt data insights to identify control gaps and improvement opportunities, collaborating with control owners to implement enhancements.
- Guide stakeholders on effective control design and foster a culture of continuous improvement
- Assist in scoping the annual audit plans in line with enterprise risks and business priorities across licenses and entities
- Support coordination of internal and external audit engagements, ensuring timely information flow between business units and auditors
- Track audit actions and drive remediation plans with stakeholders
- Lead the update of Business Impact Analyses (BIA) and the implementation of business continuity testing
- Support documentation and training programs to ensure readiness across global functions
- Collaborate with business units/teams to assess disaster recovery capabilities and test outcomes
- Lead cross-functional business process incident reviews, ensuring swift resolution and clear post-incident analysis
- Foster a lessons-learned culture, supporting teams in identifying root causes and building preventative measures.
- Maintain oversight of the issue register and contribute to reporting on emerging risks and systemic themes
- Contribute to the preparation of board and committee reports, particularly the Audit and Risk Committee.
- Draft meeting minutes for committee approval and regulatory engagements
- Track actions and activities arising from committee meetings to ensure progress and delivery of outcomes
- Degree-qualified in Business, Finance, Risk, IT, or a related discipline
- Professional certifications such as CRISC, CISA, or equivalent are desirable
- 6–10 years of experience across enterprise risk, operational risk, or internal audit, preferably within financial services
- Exposure to GRC platforms and experience supporting system rollouts or enhancements
- Strong understanding of ICT and cyber risks, and associated control environments
- Experience in coordinating business continuity and operational resilience programs
- Collaborative mindset with demonstrated ability to influence across departments and regions
- Structured thinker with strong written and verbal communication skills
- Highly adaptable and able to manage multiple priorities in a fast-paced environment
- Commercially savvy with a solutions-oriented approach
- Curious, proactive, and committed to continuous learning and improvement
- Strong integrity and alignment with Pepperstone’s values
- Experience working in financial markets or the retail OTC derivatives industry (desirable)
- Experience working across geographies and time zones (desirable)
- Competitive salary structure including company bonus scheme
- Genuinely collaborative and friendly culture
- Flexible and hybrid working
- Remote working option - work from anywhere for up to 6 weeks per year, in addition to hybrid working as standard
- Ongoing personal development & learning opportunities
- 15 weeks paid primary carers parental leave & 4 weeks paid secondary carers leave
- 3 paid volunteering days per year & Workplace Giving Program
- Frequent events and celebrations including a standard weekly social
- Beautifully renovated large office at Collins Square - 727 Collins Street, Melbourne
- Best in class end of trip facilities including bicycle parking, change rooms & showers
- A full stocked kitchen, onsite coffee machines with locally sourced coffee beans (this is Melbourne after all) and curated specialty teas