Senior Cyber GRC Analyst
reagroup · Richmond, Melbourne VIC · Australia · On-site
Posted Oct 1, 2026
Sign up free: we match you to jobs like this, tailor your application and fill the form. 2 free applications every day.
Join a collaborative team that enables REA to manage cyber risk confidently while supporting secure business growth
Lead cyber security risk assessments across products, platforms and key initiatives
Permanent role based in Melbourne
We're REA With bold and ambitious goals, REA Group is changing the way the world experiences property. No matter where you're at on your property journey, we're here to help with every step - whether that's finding or financing your next home. Our people are the key to our success. At the heart of everything we do, is a thriving culture centred around high performance and care. We are purpose driven and collaborative, which drives innovation and our ability to make a real impact. As such, we’re proud to have been named one of Australia’s Best Workplaces four times since 2021 — including third place in 2025 — plus Best Workplace for Women in 2023 and Best Workplace in Technology in 2024 and 2025. These listings are testament to every person who helps make REA a great place to work.
Where the team fits in
The Cyber Security GRC team provide advice and guidance across governance, risk and compliance, helping teams understand their security responsibilities, assess and treat risks, meet regulatory and contractual obligations, and embed secure-by-design practices into products, platforms and initiatives. We also support security assessments, third-party due diligence, compliance programs, reporting and continuous improvement across REA.
What the role is all about
The Senior Cyber GRC Analyst is a key role within the GRC team and strengthens REA's cyber resilience by leading the identification, assessment and treatment of technology and information security risks, ensuring our products and platforms comply with relevant security, privacy and regulatory requirements, and enabling informed, risk-based decisions that protect our customers, people and brand while supporting sustainable business growth.
Day to day of the job
Design, implement and continuously improve cyber GRC frameworks, policies, standards and supporting processes to fit REA's operating model
Work closely with other teams within REA Security to ensure they are effectively prioritising the building and operation of cyber security controls, in line with the organisation’s risk profile
Coordinate and oversee control assurance activities (e.g. control testing, audits, attestations) and track remediation through closure. Where possible, automate this assurance work
Ensure that external compliance obligations and audits are appropriately prepared for and managed
Provide specialist cyber GRC advice and coaching to technology and product teams to embed secure-by-design and risk-based thinking
Monitor changes in relevant cyber, privacy and technology standards, contracts and regulations and translate these into practical requirements and guidance for REA
Prepare and present concise, insightful risk and compliance reporting for…