Careers Risk and Compliance Officer
Risk and Compliance Officer
Duress's customers buy trust: ISO 27001:2022, accredited monitoring (ASIAL A1 in Australia, NSI Gold in the UK), and privacy compliance across Australia, New Zealand and the UK. Those accreditations are the second-strongest trust signal we have after the operational numbers - and they only stay strong if someone owns them properly. That's this role.
What you'll do
- Run the ISO 27001:2022 program end to end - controls, evidence, internal audits, surveillance audits
- Own the monitoring-partner relationship: verify their accreditations (ASIAL A1 in AU) stay current and our public claims match
- Manage privacy obligations across three jurisdictions: Privacy Act, UK GDPR, NZ Privacy Act
- Answer customer security questionnaires and keep the public security pack current
- Make audit-readiness a habit rather than a quarterly scramble
What you bring
- Hands-on ISO 27001 experience (implementer or auditor side)
- Working knowledge of privacy law in at least one of our jurisdictions
- The ability to translate compliance into plain English for customers and engineers alike
Apply for this role
Email your CV and a few lines on why this role to careers@duress.com. No cover-letter theatre required.