Back to job search
Fisher Investments Japan logo
Fisher Investments JapanVerified Job Source

Information Security Program Manager

  • Sydney, NS
  • Hybrid
  • Posted Sep 3, 2026
  • 1 position

Opens an external site

Employment type
Full-time
Experience level
Lead · 10+ years
Apply by
Sep 3, 2027
Posting language
English
Working hours
40 hours per week

Job summary

The Regional Business Information Security Officer will serve as the primary cybersecurity partner for APAC operations, translating global security strategies into regional practices. They will provide cyber risk guidance, support regulatory alignment, and act as a security advisor for business and technology initiatives.

Job details

Overview As Fisher Investments continues to grow globally, cybersecurity must remain aligned with our goals, regulatory obligations, and operational priorities. That's where our Information Security Business Engagement team comes in. Our mission is to bridge the gap between cybersecurity and the business, helping leaders make informed, risk-based decisions while supporting secure business growth. If you're passionate about building relationships, influencing stakeholders, and translating cyber risk into business value, we'd like to talk with you. The Opportunity: As Regional Business Information Security Officer (BISO) - APAC you will serve as a Program Manager and the primary cybersecurity-business partner across Australia, Japan, Singapore, and other Asia-Pacific operations. You will report to the Information Security Vice President and work closely with regional leadership, Technology, Legal, Compliance, Privacy, Risk, and Information Security teams to translate global security strategy into regional execution. You will provide cyber risk guidance, support regulatory alignment, and help drive cybersecurity maturity throughout APAC. The Day-to-Day: Serve as the regional cybersecurity advisor and trusted partner to APAC business and technology leadership. Translate global Information Security strategy, policies, and priorities into regionally relevant business and operational practices. Represent regional business considerations and cybersecurity needs within global Information Security initiatives. Support regional cybersecurity governance, regulatory alignment, and stakeholder engagement. Partner with Legal, Compliance, Privacy, Risk, and Technology teams to understand and address regulatory and cybersecurity requirements. Support audits, regulatory reviews, assessments, and governance activities impacting APAC entities. Provide regional cyber risk oversight and business engagement support. Maintain visibility into regional cyber risks, remediation efforts, emerging threats, and control gaps. Review and communicate cybersecurity risks and trends to business leadership and Global Information Security teams. Act as a security advisor for business initiatives and technology transformation efforts. Support secure adoption of new technologies, cloud services, third-party relationships, and Artificial Intelligence initiatives. Connect business stakeholders with Information Security subject matter experts and resources. Support regional cyber incident readiness and security culture initiatives. Participate in tabletop exercises, readiness planning, and resilience activities. Coordinate stakeholder engagement during cybersecurity incidents while partnering with operational response teams. Support Information Security awareness and training efforts across APAC business units. Develop executive reporting, cybersecurity metrics, and regional security insights. Communicate cyber risk, security trends, and business impacts in a manner relevant to executive leadership. Contribute to regional and global cybersecurity reporting and dashboard initiatives. Your Qualifications: 8+ years of experience in Information Security, Cyber Risk, Technology Risk, Governance, Risk & Compliance (GRC), or related disciplines. Experience working across multiple countries, regions, or business units within a regulated environment. Strong understanding of cybersecurity governance, cyber risk management, and security control frameworks. Experience translating technical cybersecurity topics into clear business-focused recommendations. Experience engaging senior business leaders, regulators, auditors, and cross-functional stakeholders. Working knowledge of cybersecurity and technology-related regulatory requirements within APAC jurisdictions. Why Fisher Investments Australia: At Fisher Investments, we work for a bigger purpose: bettering the investment universe by ALWAYS putting clients' interests first. We provide clients something different through unmatched service, continuous education and unique perspectives on investing. The next stage of our growth will be driven by the expansion of our Private Client Group into Australia. You will be at the frontier of this expansion. You will join our Global workforce and an inclusive culture where diverse perspectives are valued. You will be trained, developed, offered exceptional benefits and given an opportunity to build a lifelong career. If this sounds appealing, apply now to join us in our mission to Better the Investment Universe. Benefits: 100% paid premiums for our top-tier supplemental healthcare plan (includes medical, dental, vision) for employees and their qualified dependents Super contributions at the applicable superannuation guarantee percentage specified in superannuation legislation up to the maximum superannuation contribution base 20 days of annual leave, in addition to 10 paid holidays Employee Assistance Program and other emotional wellbeing services $10,000* fertility, hormonal health and family-forming benefit A collaborative working environment that practises ongoing training, educational support and employee appreciation events This is an in-office role. Based on your role, tenure, and performance eligibility you may have the opportunity to participate in our hybrid work from home program. This program is subject to change. *Employees residing outside of the US will be eligible for the $10,000 equivalent in their local currency. FISHER INVESTMENTS AUSTRALIA IS AN EQUAL OPPORTUNITY EMPLOYER Fisher Investments Australia® is a trademark of Fisher Investments Australasia Pty Ltd (ABN 86 159 670 667, AFSL 433312).

What you’ll do

The Regional Business Information Security Officer will serve as the primary cybersecurity partner for APAC operations, translating global security strategies into regional practices. They will provide cyber risk guidance, support regulatory alignment, and act as a security advisor for business and technology initiatives.

Requirements

Candidates must have 8+ years of experience in Information Security, Cyber Risk, or GRC, with a strong understanding of cybersecurity governance and control frameworks. The role requires experience working in regulated environments and the ability to communicate complex technical topics to senior business leaders.

Benefits

• Supplemental healthcare plan • Superannuation contributions • Annual leave • Paid holidays • Employee assistance program • Fertility and family-forming benefit • Ongoing training • Educational support

Listed skills

  • Executive Reporting · Preferred

Other relevant skills

Identified from the job description. Confirm important requirements above.

  • Information security
  • Cyber risk management
  • Governance, risk and compliance
  • Stakeholder engagement
  • Regulatory alignment
  • Cybersecurity strategy
  • Risk assessment
  • Incident readiness
  • Technology risk
  • Executive reporting
  • Cybersecurity metrics
  • Business partnership
  • Cloud security
  • Third-party risk management
  • Artificial intelligence security
  • Cyber Governance
  • Cloud Services
  • Resilience
  • Cyber Risk
  • Planning
  • Artificial Intelligence
  • Auditing
  • Dashboard
  • Management
  • Business Valuation
  • Investments
  • Regulatory Compliance
  • Security Controls
  • Cyber Security
  • Employee Assistance Programs
  • Governance
  • Governance Risk Management And Compliance
  • Leadership
  • Legislation
  • Operations
  • Program Management
  • Regulatory Requirements
  • Risk Governance
  • Security Awareness
  • Stakeholder Engagement
  • Security Strategies

Job areas

  • Security & Safety
  • Technology
  • Management & Leadership
  • Finance & Accounting
  • Consulting
  • Information Security Program Manager
  • Cyber Security Manager / Administrator
  • Database and Network Professionals Not Elsewhere Classified
  • Information Security Engineers
  • Computer Occupations, All Other