Gavin Rosettenstein

National Lead, Risk Advisory | ASPAC Leader, Third Party Risk Management

KPMG Australia

Gavin has extensive experience in assessing risk and providing advice on third party risk management, with a particular focus on outsourcing, off-shoring and third-party assurance. He has extensive experience in assessing risk and providing advice on third-party risk management, with a particular focus on outsourcing, off-shoring and third-party assurance.

Through better management of risk and improving controls and business processes both internally and with third-party providers, Gavin helps organisations enhance their business performance.

Gavin has led major risk assessments for a number of major financial services and technology organisations and worked closely with a number of global vendors. He provided assurance and consulting advice on strategy, execution and governance practices for organisations for both internal controls and management over vendors/suppliers.

For over 15 years, Gavin worked in risk consulting, assurance and in industry. His experience includes working with clients in technology, governance and operational risk management, third-party risk management, major risk and technology transformation projects, IT audit/internal audit, major remediation programs and the set-up and ongoing operations of managed services.

He has built and operated risk functions both onshore and offshore, and has worked overseas in several countries across Europe, Asia, Papua New Guinea and New Zealand. He has worked with clients locally and globally across industry groups that include financial services, technology, retail, government, pharmaceutical, construction, logistics and manufacturing.

Gavin is an active member with not-for-profit organisations, and is the Chairman of Helping Families Unite and a Committee member on the Finance, Audit & Investment Committee for Wolper Hospital.

  • Enterprise Risk Management
  • Financial Services
  • Governance, risk and compliance technology
  • IT Advisory in Risk Consulting
  • Internal audit
  • Operational risk
  • Risk Consulting
  • Risk Management
  • Strategy
  • Third-party risk management
  • Bachelor of Science, Information Systems, 2003, University of New South Wales

  • Certified Information Systems Auditor (CISA), ISACA

  • Certified in Risk and Information Systems Control (CRISC), ISACA

  • AGSVA Baseline security clearance

  • Lean Six Sigma (White Belt)

  • COBIT 4.1 and 5 Foundations Certifications

  • Justice of the Peace (JP)

  • Chairman, Helping Families Unite

  • Committee Member – Finance, Audit and Investment Committee, Wolper Hospital