George Arronis Email and Phone Number
I am a highly experienced senior technology professional with strengths in technology management and cybersecurity. My career has focused on developing cybersecurity capability in large organisations to enhance resilience; technology compliance uplift, and risk management; and a track record of delivering complex initiatives across multi-business organisations.I am particularly interested in cybersecurity program and framework establishment, execution, and compliance uplift in regulated environments.I enjoy working with cross-functional leadership teams to deliver IT, cybersecurity, operational risk, and corporate compliance goals.My sector coverage includes technology, finance, public services outsourcing and retail (within private equity). I bring a consultative approach to attracting commitment from different stakeholders. I aim to make technology and cyber risk a shared agenda across a business.Specialities: Cybersecurity Programs | Technology Risk | Compliance (27001, ISM, PCIDSS, CPS234, Privacy) | Cyber Operations | Risk & Controls Enablement | Risk in Change | Operational Risk | Third Party Assurance | IT/Cyber Strategy & Functional Architecture | IT Project Management | IT Outsourcing | IT Contract Management & Negotiation | Vendor Management | Consulting & Bid Response
-
Head Of Cyber SecurityThe Arnott'S Group Jul 2023 - PresentNorth Strathfield, Nsw, Au -
Group Information Security ManagerGreenlit Brands Oct 2019 - Feb 2023North Ryde, Nsw, AuResponsible for equipping the Group's retail brands with the frameworks, processes, and techniques to safeguard their digital information assets.Group-wide establishment, management and delivery of a continuous information security strategic framework and policy.Partnered with IT, Digital, Legal, Marketing and other teams to mature the organisation's cybersecurity practices and embed cyber risk management as an ongoing consideration.Delivered cybersecurity initiatives across the Group, including a strategic data protection and compliance framework approach; security awareness training; the Group-wide PCI DSS assessment; the Group’s cyber insurance renewal program; and third-party data security due diligence processes.Collaborated with the Group’s largest retail business to define a cybersecurity strategy, plan and initiatives roadmap to support its security function. Performed detailed technology and cyber risk assessments and developed an IT controls library.As part of the Group's Australian divestment strategy: (i) Undertook the lead program management role in executing a complex IT de-coupling program across four business units; and (ii) Undertook the lead program coordination role in distributing the Group’s logistics capability across all the retail business units. -
Head Of Technology Risk- Es Controls Office (Cyber Security)Commonwealth Bank Oct 2018 - Oct 2019Sydney, Nsw, AuLine 1 team management across Risk & Controls Enablement and Risk in Change- Cyber Security.Worked across the Bank’s regulated entities to deliver a controls testing strategy aligned to CPS234.Planned, led and executed activities across functional areas of the Bank’s Operational Risk Management Framework.Contributed to the Bank’s response to APRA’s recommendation to focus on non-financial risk. -
Head Of It Security & Risk (Ciso)Serco Asia Pacific Jun 2011 - Oct 2018Hook, Hampshire, GbMember of the IT leadership team responsible for developing, implementing and maintaining a good information security practice within the Serco Asia Pacific region.Managed and executed the implementation of an information security framework, aligned to frameworks including ISO 27001, PCIDSS and the Federal Government Information Security Manual (ISM). Developed and implemented IT risk and security checkpoints across the IT project and bid life cycles.Managed the outsourced functions of IT security operations. Managed the response to critical security incidents and oversaw corrective actions.Accountable for putting in place the local footprint of the global security operations centre.Worked with Sales and Bid teams to develop security responses and solutions to RFP and EOI requests. -
Technology Risk & Compliance ManagerBt Financial Group Jun 2010 - May 2011Barangaroo, New South Wales, AuManaged or contributed to the integration of risk support and governance frameworks to enable the organisation to manage material risk down to an acceptable level.Completed the biannual risk and control assessment activities for the Technology division.Managed the Sarbanes-Oxley and compliance plan attestations for the Technology division. -
It Risk Manager (Vp)J.P. Morgan (Worldwide Securities Services- Custody) Aug 2005 - May 2010New York, Ny, UsResponsible for delivery of the global and regional IT Risk program of work for the Custody business in Australia. Delivered the technology-related compliance effort for the new industry standard, GS007.Managed the risk-related due diligence work across projects, third parties, acquisitions and controls.Prepared and executed requirements for local and regional regulatory reviews conducted by APRA, HKMA, MAS and the OCC. Defined and implemented a proactive continuous testing controls assurance regime across IT.Conducted risk reviews in business units in APAC. Worked with the regional teams to help address issues and implement other global initiatives. -
Technology Analyst, Consultant, Senior ConsultantIbm (Business Consulting Services) Jun 1999 - Jul 2005Armonk, New York, Ny, UsResponsible for leading and executing security consulting engagements for a diverse client base.Significant contribution to building the IBM security consulting capability within Australia. Defined the functional security architecture for a major NZ FMCG company.Completed ISO 27001/2 compliance activities, IT risk assessments, resiliency and recovery capability reviews for clients.Completed a security assessment for an Application Service Provider in Hong Kong. Completed an ISO 17799 compliance review for a web portal for a large bank in Thailand. Managed technical activities across the application and network infrastructure life-cycle, for a large client in the sports administration industry.
George Arronis Education Details
-
UnswMaster Of Engineering Science -
UnswElectrical Engineering -
Griffith UniversityGraduate Certificate In International Law Practice -
Griffith UniversityGraduate Certificate In Professional Legal Studies
Frequently Asked Questions about George Arronis
What company does George Arronis work for?
George Arronis works for The Arnott's Group
What is George Arronis's role at the current company?
George Arronis's current role is IT Executive | CISO | Head of Cyber Security | Technology Risk & Compliance.
What schools did George Arronis attend?
George Arronis attended Unsw, Unsw, Griffith University, Griffith University.
Free Chrome Extension
Find emails, phones & company data instantly
Aero Online
Your AI prospecting assistant
Select data to include:
0 records × $0.02 per record
Download 750 million emails and 100 million phone numbers
Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.
Start your free trial