Who Are We
Hansen Technologies (ASX: HSN) is a global software and services provider, serving energy, water/utilities, and telecommunications industries. With customers in 80+ countries, we foster collaboration across 26 global offices. From 5G advancements to renewable energy transitions, we empower customers to overcome challenges, innovate, and drive new business models.
At Hansen, we are also embedding AI enablement across our operations. From automating workflows and enhancing service delivery, to driving innovation in customer solutions, AI is shaping the next chapter of how we support our clients. With a focus on operational excellence and innovation, Hansen is using AI not just as a tool, but as a strategic enabler to deliver smarter, faster, and more resilient solutions for the future.
This is full-time onsite role based in our Bethlehem office.
Why This Role Matters
At Hansen, we're looking for a hands-on, high-impact security GRC professional to help us scale and mature our governance, risk, and compliance practices globally. You’ll design, implement, and evolve security governance initiatives, drive data protection efforts, own business continuity readiness, and be a visible force for change across the organisation. This is a rare opportunity to blend autonomy, innovation, and execution in a role that touches every corner of the business.
We’re looking for a builder, a strategic problem-solver, and a passionate security evangelist who thrives on making security integral to how we work.
What You’ll Do
Risk Management: Lead and conduct cybersecurity risk assessments aligned with Hansen’s risk framework, identifying key findings and treatment actions. Ensure all risks related to security controls are documented, tracked, and remediated with accountability. Communicate risk status and third-party assessment outcomes to relevant stakeholders.
Governance & Compliance: Develop, maintain, and enforce security policies and standards aligned with ISO 27001, SOC, NIST, and regulatory requirements. Support internal and external audits, certifications, and compliance monitoring, ensuring controls operate effectively and remediation is followed up.
Information Security Management System (ISMS): Operate and continuously improve the ISMS, maintaining governance documentation, risk registers, and management reporting to meet audit and regulatory expectations.
Data Protection & Identity Management: Implement and monitor data protection controls, conduct regular user access reviews to ensure least privilege, and validate that security mechanisms are correctly configured and effective.
Security Awareness: Lead security awareness programs and campaigns to build a strong security culture across the organisation, engaging stakeholders and measuring impact.
Incident Response & Resilience Readiness: Maintain and test the incident response plan through simulations and exercises. Own the Business Continuity and Disaster Recovery (BCP/DR) planning, coordinating regular testing and improvements to ensure organisational resilience.
Stakeholder & Third-Party Risk Management: Engage with internal teams, external auditors, regulators, and third-party vendors to manage cybersecurity risks, provide assurance, and oversee third-party security performance.
Governance & Reporting: Support and optimise GRC toolsets for risk tracking, control monitoring, and reporting. Produce clear and actionable management information for leadership and regulatory submissions.
What You Bring
Strong background in hands-on security governance, risk management, and compliance delivery.
Proven experience implementing and managing technical and administrative data protection controls.
Working knowledge of key frameworks (ISO 27001, NIST, GDPR, SOC2, ITGC, etc.).
Experience leading BCP/DR programs and running real or simulated incident response scenarios.
Exceptional communication skills - you can translate control language into business impact and vice versa.
Past experience driving security awareness programs and influencing behaviour across departments.
Demonstrated ability to self-start, self-direct, and innovate in ambiguous environments.
You’re someone who (may) have:
Experience in a similar role working in the technology industry.
Conducted Incident Response Tests and developed scenarios
Configured data protection or data loss prevention controls in corporate IT environments.
Why Join Us?
At Hansen, you’ll be part of a diverse, inclusive, and collaborative global team. Our culture is built around values such as People and Family, Treat It Like It’s Your Own, Focused and Committed, and One United Team. We look for people who are curious, respectful, engaged, and keen to work across geographies with talented teams.
If you are passionate about talent sourcing, candidate engagement, and supporting a high-quality recruitment process, we’d love to hear from you.
Contact Us
If you possess the desired skills and enthusiasm, please “Apply Now” via the link or visit our career page.
We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, colour, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.
Visit our website at hansencx.com for more information.
Data Privacy Notice
By applying to this role, you consent to Hansen collecting, processing, and storing the information you provide for recruitment purposes. You also agree that your details may be securely retained in our talent database for future opportunities and reference in accordance with applicable data protection regulations.
Skills Required
- Strong background in hands-on security governance, risk management, and compliance delivery
- Experience implementing and managing technical and administrative data protection controls
- Working knowledge of ISO 27001, NIST, GDPR, SOC 2, and ITGC frameworks
- Experience leading business continuity and disaster recovery programs
- Experience running real or simulated incident response scenarios
- Exceptional communication skills with the ability to translate security controls into business impact
- Experience driving security awareness programs and influencing behavior across departments
- Ability to self-start, self-direct, and innovate in ambiguous environments
- Experience in a similar role within the technology industry
- Experience conducting incident response tests and developing scenarios
- Experience configuring data protection or data loss prevention controls in corporate IT environments
What We Do
Hansen Technologies (ASX:HSN) is a global software and services provider to the energy, water/utilities and telecommunications industries. The company currently serves more than 600 customers in over 80 countries, supported by a collaborative and diverse team that embraces the hybrid way of working. For connection and collaboration, we have more than 36 offices and development centres located around the world. Within the communications industry, 5G represents the next new frontier for our customers – that unchartered territory to create opportunities and capitalise on new business models and resulting revenue streams. In the energy sector, we are in the midst of a transition. The move to renewables and self-generated energy changes the traditional commercial model. Today, our customers are no longer in the era of supplying basic commodity services - they are in era of providing new energy services and related experiences. We help our customers traverse these challenges and opportunities and realise the next new monetisable experiences. And that is why our mission is to provide industry-specific software products and expertise that enables our customers to easily capitalise on the commercial opportunities of the evolving energy, utilities and communications markets. We make this possible by providing highly reliable, mission-critical software and specific industry expertise to help our customers more easily innovate and sell new services and market offerings, comply with changing market regulation, and power new business models in areas such as emerging sustainable energy supply, IoT, and new next-generation connected services. We aim to achieve this through long term collaboration with our customers and partners and through a global workforce of skilled professionals that embrace challenges and are committed to positive outcomes for our company, employees, customers, and the planet

.png)

.png)





