Information Security Governance Risk and
Il y a 7 mois
**Information Security Governance Risk & Compliance,**
***Analyst (EMEA)**
**Who we’re looking for**
**About Schroders**
We’re a global investment manager. We help institutions, intermediaries and individuals around the world invest money to meet their goals, fulfil their ambitions, and prepare for the future.
We have around 6,000 people on six continents. And we’ve been around for over 200 years, but keep adapting as society and technology changes. What doesn’t change is our commitment to helping our clients, and society, prosper.
**The team**
***At Schroders, our IT is not just focused on technology; it's about leveraging cutting-edge technology to solve problems, support the business, and deliver high-quality solutions. We foster a culture of innovation and strive for excellence in everything we do. Our IT function operates globally but is managed locally, allowing us to develop and implement systems and processes across our international offices.
Within Schroders, the Global Information Security function plays a crucial role in ensuring the safe operation of our business in a constantly evolving threat and technological landscape. The function consists of dedicated teams responsible for Cyber Security and Operations, Threat Intelligence, Governance Risk and Compliance, Technology Risk, as well as the Information Security Change Programme. These teams work together to effectively manage the risks to our information assets and enable our business to operate securely.
**What you’ll do**
- Work with the Information Security team to understand and assess effectiveness of controls. Identify and risk rate gaps for treatment
- Translate technical elements and cyber risk into language that the Business can absorb and understand
- Lead the Risk Control Assessment, interview owners, assess levels of risk - Liaise with business and key stakeholders to perform assessments and identify risk
- Perform supply chain due diligence and facilitate the management of findings and communicate issues to stakeholders
- Oversee reporting and MI on progress of risk deduction and remediation - Respond to client security questionnaires, RFP/RFI's, and audit requests
- Where needed, embed local requirements into global processes. Document/Design workflows of various activities to support the Information Security team
- Interpret and perform gap analysis against cyber and data privacy regulations
**The knowledge, experience and qualifications you need**
- Stakeholder engagement is key, forming collaborative working relationships across Information Security and the wider Global Technology teams
- Sound understanding of risk and in particular cyber threats that pose concern to our organisation as well as an appreciation of the regulatory landscape
- Understanding of risks of Cloud Technologies (IaaS, PaaS) and outsourcing (Saas) as well MITRE attack frameworks
- Proven ability to analyse and manage remediation of risks or gaps through to resolution
- Familiar with EU financial regulation, NIST Cybersecurity Framework or ISO27001
- Willingness to learn and develop Governance, Risk and Compliance skillsets
- Continuous improvement mind-set, challenges the status quo and seeks self-improvement
- Strong verbal and written communications skills to effectively communicate security risks, compliance requirements, and recommendations to stakeholders
- Strong organizational skills to manage and prioritize multiple tasks, projects, and deadlines effectively
- Fluent in English
**The knowledge, experience and qualifications that will help**
- Financial Industry background is a plus
- An information security qualification is beneficial (e.g. CISM, CSSP, )
**What you’ll be like**
- Analytical and detail-oriented
- Critical thinker
- Ethical
- Continuous learner
- Collaborative
**We recognise potential, whoever you are**
Our purpose is to provide excellent investment performance to clients through active management. Diversity of thought facilitated by an inclusive culture will allow us to make better decisions and better achieve our purpose. This is why inclusion and diversity are a strategic priority for us and why we are an equal opportunities employer: you are welcome here regardless of your age, disability, gender identity, religious beliefs, sexual orientation, socio-economic background or any other protected characteristics
-
Information Security Governance Consultant
il y a 1 mois
Luxembourg Brixio Temps plein**About the Role**: Join a dynamic and passionate team where innovation and collaboration are at the heart of our mission. As an **Information Security Governance Consultant**, you will play a key role in supporting clients to establish and enhance their information security governance frameworks. You will work closely with experienced consultants and...
-
Information Security Governance Consultant
il y a 6 jours
Luxembourg SIRCONSULTING RH Temps pleinWe are looking for our future Information Security Governance Consultant to complete our team. Your missions are defined as follows: - Assist our clients in the implementation of their strategy - Identify the security projects - Assess the maturity of controls - Manage Information Security and its risks Required profile: - Master's degree - SCADA...
-
Information Security and Risk Management Consultant
il y a 8 heures
Luxembourg CTG Luxembourg PSF Temps pleinWould you like to evolve in a structure where professional self-fulfillment and career development are key words ? CTG was founded in 1966 in Buffalo, USA. CTG is an international IT solutions & services company, back over 50 years of experience. CTG is the most reliable IT service provider, built on 50 years of meeting our commitments to make technology...
-
Information Security Manager
Il y a 7 mois
Luxembourg Next Gate Tech Temps plein**What You Will Do**: In this role, you will be responsible for developing and implementing our organization's information security strategy, as well as ensuring compliance with relevant laws, regulations, and industry standards. You will work closely with stakeholders across the organization to identify and mitigate security risks, and be responsible for...
-
Information Security Oversight Manager
il y a 22 heures
Luxembourg PayPal Temps pleinAt PayPal (NASDAQ: PYPL), we believe that every person has the right to participate fully in the global economy. Our mission is to democratize financial services to ensure that everyone, regardless of background or economic standing, has access to affordable, convenient, and secure products and services to take control of their financial lives. Job...
-
Information Security Intern
il y a 4 jours
Luxembourg PayPal Temps pleinAt PayPal (NASDAQ: PYPL), we believe that every person has the right to participate fully in the global economy. Our mission is to democratize financial services to ensure that everyone, regardless of background or economic standing, has access to affordable, convenient, and secure products and services to take control of their financial lives. Job...
-
Vp Information Security Manager
Il y a 7 mois
Luxembourg JPMorgan Chase & Co Temps plein**JOB DESCRIPTION** Our Information Security professionals are passionate about information security and control solutions for computing environments. While collaborating with a world-class team of technology experts, you'll partner with one or more disciplines, lines of business, regions or locations to respond to evolving business requirements and emerging...
-
Information Security Oversight Manager
il y a 4 jours
Luxembourg PayPal Temps pleinAt PayPal (NASDAQ: PYPL), we believe that every person has the right to participate fully in the global economy. Our mission is to democratize financial services to ensure that everyone, regardless of background or economic standing, has access to affordable, convenient, and secure products and services to take control of their financial lives. Job...
-
Information Security Officer
Il y a 7 mois
Luxembourg Business Training Luxembourg SA Temps plein30 years of experience in high-end training **Business Training’s experience is built on solid ground**: we have been providing cutting-edge ICT training sessions for about 20 years. Originally, Business Training specialized in IT technical and end-user trainings (Windows, MS Office, etc.). A few years ago, our company widened the range of its training...
-
Information Security Officer
Il y a 7 mois
Luxembourg Findel Airport ING Temps pleinInformation Security Officer In order to strengthen the delivery organisation, ING Luxembourg is looking for an Information Security Officer on a temporary contract bases. Job description: Your mission will be to reinforce a team of Security Officers in order to maintain the bank within its IT risk appetite and participate in the implementation of the DORA...
-
Information Security Risk Assurance Officer
il y a 1 mois
Luxembourg Deutsche Börse Group Temps pleinTracing its origins to 1585, Deutsche Börse Group has become one of the world’s leading exchange organisations and an innovative market infrastructure provider. In this role, we provide investors, financial institutions and companies access to global capital markets. By creating trust in the markets of today and tomorrow we foster growth and contribute to...
-
Information Security Risk Assurance Officer
il y a 1 mois
Luxembourg Deutsche Börse Temps plein**Learn. Develop. Grow. But always: Share value**: Join our international team that drives positive change, united by a spirit of openness and curiosity. We empower you to have an impact and to grow - personally and professionally. With us, you work at the heart of financial systems and evolve the way markets operate. We’re excited about the future because...
-
(Senior) Information Security Risk
il y a 22 heures
Luxembourg European Investment Bank Temps pleinThe **EIB**, the European Union's bank, is seeking to recruit for its Office of the Group Chief Compliance Officer (GR&C - OCCO) - Group Non-Financial Risk Department (GNFR), Project Management and Information Security Division (PMI), Information Security Risk Unit (InfoSec) at its headquarters in Luxembourg, a **(Senior) Information Security Risk & Business...
-
Information Security Officer
il y a 8 heures
Luxembourg JAO Temps pleinjao.eu Description In the context of reinforcing its operations and the implementation of ISO27001, JAO is in search for an Information Security Officer able to on-board and to develop quickly in a diverse IT eco-system. The person is foreseen to take over a series of duties associated with the ISMS management and to deliver support in the projects design...
-
Risk and Governance Program Manager
il y a 2 jours
Luxembourg Brown Brothers Harriman Temps pleinAs the Risk and Governance Program Manager for BBH Luxembourg (BBHL) you will be a senior member of the Luxembourg management team. You will be accountable to the Authorized Management of BBH for the risk and governance programs impacting BBHL, and support BBHL’s regulatory obligations in the Lux market, ensuring an outstanding business environment, with...
-
Chief Information Security Officer
il y a 4 semaines
Luxembourg Brixio Temps pleinAs a **Chief Information Security Officer (CISO)**, you will spearhead the development and implementation of a robust information security strategy, ensuring the highest standards of data protection, regulatory compliance, and risk management. Reporting directly to the Managing Partner and serving as a core member of the Management Committee, you will play a...
-
Information Security Officer
Il y a 7 mois
Luxembourg Tadaweb Temps plein**Tadaweb is a scale-up technology company founded and based in Luxembourg with offices in UK, France, Canada and USA. Founded 11 years ago, Tadaweb's mission is to make the world safer by empowering the human mind with the right information at the right time. Tadaweb offers a SaaS platform that makes OSINT investigations more effective and efficient and...
-
Specialist Information Security
Il y a 7 mois
Luxembourg Cargolux Temps pleinTASK RESPONSIBILITIES: 1. Policy Development and Management: - Develop, review, and update information security policies and procedures to align with industry standards and regulatory requirements. - Assist in the development of incident response plan and playbooks 2. Risk Assessment and Management: - Support the risk assessment activity by identifying...
-
Information Security Officer
il y a 2 semaines
Luxembourg EFA Temps plein**Your responsibilities**: - Perform controls and reviews to ensure and validate conformity with defined security standards and framework NIST, ISO 27001 - Have a good knowledge of regulatory requirements (DORA, NIS ) - Manage or participate in technical projects to improve IT security - Perform IT security assessments and recommendations related to...
-
Information Security Officer
Il y a 7 mois
Luxembourg NTT Temps pleinNTT is a leading global IT solutions and services organisation that brings together people, data and things to create a better and more sustainable future. In today’s ‘iNTTerconnected’ world, connections matter more now than ever. By bringing together talented people, world-class technology partners and emerging innovators, we help our clients solve...