(Senior) Information Security Officer

il y a 3 jours


Luxembourg European Investment Bank Temps plein

The **EIB**, the European Union's bank, is seeking to recruit for its **Group Risk & Compliance Directorate (GR&C) - Office of the Group Chief Compliance Officer (GR&C-OCCO) - Group Non-Financial Risk Department (GNFR), Project Management and Information Security Division (PMI), Information Security Risk Unit (InfoSec)** at its headquarters in Luxembourg, a **(Senior) Information Security Officer.**

**This is a full time position at grade 5/6 for which the EIB offers a permanent contract.**
- Panel interviews are anticipated from mid-March onwards._

**Purpose**:
The Office of the Group Chief Compliance Officer is responsible acts as second line of defence, identifying, assessing and following-up on compliance risk issues relating to the Bank’s activities in line with EIB’s policies and procedures in order to meet policy/institutional and regulatory requirements.

The Information Security Risk Unit has a responsibility for 2nd Line of Defence. The 2nd Line of Defence has been centralized within the GR&C-OCCO Directorate in an Information Security Risk Unit.

As **(Senior) Information Security Officer** (internally referred to as (Senior) Officer) you will coordinate information security-related risk activities and other relevant measures in order to identify, prevent and mitigate the impact of Information Security threats. You will work in close collaboration with the relevant Services of the Bank for the integration of information security into policies, procedures and processes of the Bank as well as implementation of agreed information security measures.

This role is ideal for those that enjoy diversity and variety in their day-day role, while working as part of a dynamic and knowledgeable team focused on continuous learning, development and knowledge sharing through collaboration with other IFIs. This is an excellent career opportunity to join the largest global multilateral lender and make a real difference in a position offering high level of exposure across all departments of the Bank.

The ability to be agile, share knowledge and work in a collaborative manner is key in being successful in this role.

**Operating Network**:
You will report to the Head of Information Security Risk Unit working in collaboration with the Office of the Group Chief Compliance Officer (GR&C-OCCO), Inspector General’s Office (IG) and other relevant services as required for the investigation and escalation of events arising from non-compliance with the information security policies.

**Accountabilities**:

- Coordinates the implementation of an Information Security Management System (ISMS) consistent with the imposed requirements and/or regulations; this will include:

- Developing and maintaining the Bank’s information security-related policies, standards and procedures, in close cooperation with IT Security, IPAQ (Information Protection, Access Control and Quality), Physical Security, Data Protection Office and other EIB Group services whenever required;
- Overseeing and coordinating the implementation, the review and the update of inter-alia the Bank’s Information Security Policies framework
- Proactively formulating proposals for the integration of information security into the Bank’s policies
- Ensuring close collaboration with his/her peer in European Investment Fund (EIF).
- Ensure the undertaking, the lead implementation and the monitoring of the risk assessment process of the Bank.
- Coordinate the development of relevant key risk indicators and associated reporting dashboards and the implementation of consequent information security controls in collaboration with other relevant services of the Bank
- Coordinate, supervise and/or execute key processes related to Information Security policies, in order to ensure successful implementation, maintenance and continuous improvement of an Information Security Management System; this may include:

- Supporting Business Owners in carrying out information security risk assessments
- Monitoring the implementation of agreed information security controls in the Bank
- Managing external staff resources for the successful delivery of information security risk assessments and projects on time and according to business requirements
- Identify and perform due diligence in line with EIB Group processes for the implementation of adequate tooling
- Working in close collaboration with GCS (Group Corporate Services) for the development of a work plan and agreed actions for the protection of EIB information assets and the confidentiality, integrity and availability of EIB documents and data
- Being a key interlocutor with Internal and external auditors
- Involved in Information Security Incident Management response
- Coordinate Information Security Awareness Program actions amongst Bank personnel (both permanent staff and consultants/contractors) through training and communication programmes
- Assess relevant best banking practices on information security, define compliance


  • Information Security Officer

    il y a 2 semaines


    Luxembourg JAO Temps plein

    jao.eu Description In the context of reinforcing its operations and the implementation of ISO27001, JAO is in search for an Information Security Officer able to on-board and to develop quickly in a diverse IT eco-system. The person is foreseen to take over a series of duties associated with the ISMS management and to deliver support in the projects design...


  • Luxembourg Arendt Temps plein

    Arendt Services, which is part of Arendt & Medernach, the largest law firm in Luxembourg, is regulated by the Luxembourg supervisory authority (CSSF - Commission de Surveillance du Secteur Financier) and operates under the status of Professional of Financial Sector (“PSF”). Arendt Services offers a wide range of services, such as domiciliation,...

  • Information Security Manager

    il y a 2 semaines


    Luxembourg Next Gate Tech Temps plein

    **What You Will Do**: In this role, you will be responsible for developing and implementing our organization's information security strategy, as well as ensuring compliance with relevant laws, regulations, and industry standards. You will work closely with stakeholders across the organization to identify and mitigate security risks, and be responsible for...


  • Luxembourg EBRC Temps plein

    Afin de renforcer les équipes de DEEP au sein de l'équipe Cybersecurity, nous recherchons actuellement un(e)** Information Security Officer **(M/F/n)** **Vos missions**: - Elaborer les politiques et la structure/cadre de l’entité qu’il représente selon la stratégie définie en matière de sécurité de l’information et selon les politiques...


  • Luxembourg Lux-Advisory Temps plein

    **Mission** In support of the Risk Management team, the Consultant will provide the following services: - Establish risk guidelines for the information security strategy - Establish guidelines for the design of the information security controls - Align the risk appetite for security incidents and vulnerability management with the IT Security function -...


  • Luxembourg Lux-Advisory Temps plein

    **Lux-Advisory **is a company specialized in project management and business analysis. Our consultants take part in European or International projects. To support the increase of our activity, we are currently looking for a **Information Security Consultant.** **Mission** In support of the Risk Management team, the Consultant will provide the following...

  • Information Security Analyst

    il y a 1 semaine


    Luxembourg Next Gate Tech Temps plein

    **About Next Gate Tech**: At Next Gate Tech, we create technologies that reshape the landscape of the fund industry operations. We empower our clients by capturing the full potential of harmonized data to drive intelligent and fully automated operations. Our transformative solutions optimize processes, enhance efficiency, reduce risks, and drive cost...


  • Luxembourg SOLINKI Temps plein

    Jobs: - Definition of an organization’s security strategy and establishment of its short, medium and long-term security program - Management and organization of information security and establishment of the governance framework (security policies) - Information security risk management - Resilience support - Cloud services security - Support for...


  • Luxembourg Excellium Services Temps plein

    You wish to join Excellium because You’re passionate, keen to learn & a fun coworker! As part of a dynamic and passionate team, you will have the opportunity to fully invest yourself, to innovate and to create in the fields of expertise we deal with. Listening is one of our key values, which helps everyone feel integrated within Excellium family....


  • Luxembourg Clearstream, part of Deutsche Börse Group Temps plein

    **Information Security Specialist - Group Security (f/m/d)**: Tracing its origins to 1585, Deutsche Börse Group has become one of the world’s leading exchange organisations and an innovative market infrastructure provider. In this role, we provide investors, financial institutions and companies access to global capital markets. By creating trust in the...


  • Luxembourg SIRCONSULTING RH Temps plein

    We are looking for our future Information Security Governance Consultant to complete our team. Your missions are defined as follows: - Assist our clients in the implementation of their strategy - Identify the security projects - Assess the maturity of controls - Manage Information Security and its risks Required profile: - Master's degree - SCADA...

  • Senior Security Officer

    il y a 3 semaines


    Luxembourg NRB Temps plein

    **Who are we?** **Trasys International**is a dynamic global organization that takes pride in being the trusted partner of **EU Institutions.** With strong commitment to excellence and a **30-years track record** of delivering high-quality solutions, we are dedicated to supporting the growth and success of our clients. Our Mission is to help our clients keep...


  • Luxembourg POST Group Temps plein

    **Information Security Specialist**: **Date**:15 janv. 2025 **Lieu**: Luxembourg, Luxembourg **Entreprise**:POST Luxembourg Acteur majeur des télécoms et opérateur national du service postal et financier postal, le groupe POST Luxembourg est un pilier incontournable de l'économie luxembourgeoise. Au sein du département Corporate IT & Enterprise...


  • Luxembourg Amexio Temps plein

    We are Experts European Leaders on ECM/CCM, Taylor made Cloud solutions provider, and experts on Consulting Services, walking alongside with our customers and help them to meet their timely capacity demand by supplying talent that fits their needs in their very different roles and services. Our Expertise allows us to cover a quite large spectrum of...

  • Isrm Specialist

    il y a 4 jours


    Luxembourg GovJobs Temps plein

    **Statut** : Employé de l'État **Qui recrute ?**: Banque centrale du Luxembourg **Missions**: - Vous réalisez des analyses de risques spécifiques afin de mettre en évidence les faiblesses des systèmes d’information en collaboration avec les propriétaires fonctionnels et d’informations; - Vous réalisez des revues de sécurité sur les systèmes...

  • Security Chapter Lead

    il y a 4 semaines


    Luxembourg AbAKUS IT Solutions Temps plein

    As the Security Chapter Lead and Head of Security Office, you will take charge of our security team within a bi-dimensional matrix organization, ensuring the security and integrity of our IT infrastructure, systems, and data. Your leadership will drive the development and implementation of security policies, practices, and controls, aligning with industry...

  • Security Chapter Lead

    il y a 4 semaines


    Luxembourg ABAKUS IT-Solutions Temps plein

    ABAKUS IT-SOLUTIONS - expert in IT comfort - is hiring to reinforce his teams. IT services integrator, created in 1991, we position ourselves as IT comfort expert for the small and medium structures. To cover these services, we offer packaged based services and have a personalized service desk. For larger organization, we are also active in the provision of...


  • Luxembourg KPMG Luxembourg Temps plein

    KPMG Luxembourg combines our multi-disciplinary approach with deep, practical industry knowledge to help clients meet challenges and respond to opportunities. As a leading consulting firm with more than 1,700 employees and more than 70 nationalities in Luxembourg, we know that our strength and capability come from our people, their experiences, culture and...


  • Luxembourg KPMG Luxembourg Temps plein

    **Find your purpose at KPMG Luxembourg** We see a world of opportunity. From uncovering ways to digitalize, to enabling new sectors to take off, to building sustainability and resilience into economies, we know insights reveal new opportunities for all. We are diverse and dedicated problem solvers, part of the worldwide network of high-quality audit, tax...

  • Senior Ict Risk Officer

    il y a 5 jours


    Luxembourg Austin Bright Temps plein

    Our client is a leading financial institution in Luxembourg, and we are currently seeking a skilled and motivated professional to join our team as an ICT Risk Officer. As an ICT Risk Officer, you will play a crucial role in ensuring the security and resilience of our information and communication technology systems. Your expertise and dedication will...