Information Security Governance Risk and
il y a 2 jours
**Information Security Governance Risk & Compliance,**
***Analyst (EMEA)**
**Who we’re looking for**
**About Schroders**
We’re a global investment manager. We help institutions, intermediaries and individuals around the world invest money to meet their goals, fulfil their ambitions, and prepare for the future.
We have around 6,000 people on six continents. And we’ve been around for over 200 years, but keep adapting as society and technology changes. What doesn’t change is our commitment to helping our clients, and society, prosper.
**The team**
***At Schroders, our IT is not just focused on technology; it's about leveraging cutting-edge technology to solve problems, support the business, and deliver high-quality solutions. We foster a culture of innovation and strive for excellence in everything we do. Our IT function operates globally but is managed locally, allowing us to develop and implement systems and processes across our international offices.
Within Schroders, the Global Information Security function plays a crucial role in ensuring the safe operation of our business in a constantly evolving threat and technological landscape. The function consists of dedicated teams responsible for Cyber Security and Operations, Threat Intelligence, Governance Risk and Compliance, Technology Risk, as well as the Information Security Change Programme. These teams work together to effectively manage the risks to our information assets and enable our business to operate securely.
**What you’ll do**
- Work with the Information Security team to understand and assess effectiveness of controls. Identify and risk rate gaps for treatment
- Translate technical elements and cyber risk into language that the Business can absorb and understand
- Lead the Risk Control Assessment, interview owners, assess levels of risk - Liaise with business and key stakeholders to perform assessments and identify risk
- Perform supply chain due diligence and facilitate the management of findings and communicate issues to stakeholders
- Oversee reporting and MI on progress of risk deduction and remediation - Respond to client security questionnaires, RFP/RFI's, and audit requests
- Where needed, embed local requirements into global processes. Document/Design workflows of various activities to support the Information Security team
- Interpret and perform gap analysis against cyber and data privacy regulations
**The knowledge, experience and qualifications you need**
- Stakeholder engagement is key, forming collaborative working relationships across Information Security and the wider Global Technology teams
- Sound understanding of risk and in particular cyber threats that pose concern to our organisation as well as an appreciation of the regulatory landscape
- Understanding of risks of Cloud Technologies (IaaS, PaaS) and outsourcing (Saas) as well MITRE attack frameworks
- Proven ability to analyse and manage remediation of risks or gaps through to resolution
- Familiar with EU financial regulation, NIST Cybersecurity Framework or ISO27001
- Willingness to learn and develop Governance, Risk and Compliance skillsets
- Continuous improvement mind-set, challenges the status quo and seeks self-improvement
- Strong verbal and written communications skills to effectively communicate security risks, compliance requirements, and recommendations to stakeholders
- Strong organizational skills to manage and prioritize multiple tasks, projects, and deadlines effectively
- Fluent in English
**The knowledge, experience and qualifications that will help**
- Financial Industry background is a plus
- An information security qualification is beneficial (e.g. CISM, CSSP, )
**What you’ll be like**
- Analytical and detail-oriented
- Critical thinker
- Ethical
- Continuous learner
- Collaborative
**We recognise potential, whoever you are**
Our purpose is to provide excellent investment performance to clients through active management. Diversity of thought facilitated by an inclusive culture will allow us to make better decisions and better achieve our purpose. This is why inclusion and diversity are a strategic priority for us and why we are an equal opportunities employer: you are welcome here regardless of your age, disability, gender identity, religious beliefs, sexual orientation, socio-economic background or any other protected characteristics
-
Junior Information Security Governance, Risk and
il y a 1 semaine
Luxembourg Amexio Temps pleinWe are Experts European Leaders on ECM/CCM, Taylor made Cloud solutions provider, and experts on Consulting Services, walking alongside with our customers and help them to meet their timely capacity demand by supplying talent that fits their needs in their very different roles and services. Our Expertise allows us to cover a quite large spectrum of...
-
Information Security Governance Consultant
il y a 7 jours
Luxembourg Excellium Services Temps pleinYou wish to join Excellium because You’re passionate, keen to learn & a fun coworker! As part of a dynamic and passionate team, you will have the opportunity to fully invest yourself, to innovate and to create in the fields of expertise we deal with. Listening is one of our key values, which helps everyone feel integrated within Excellium family....
-
Information Security Governance Consultant
il y a 1 semaine
Luxembourg SOLINKI Temps pleinJobs: - Definition of an organization’s security strategy and establishment of its short, medium and long-term security program - Management and organization of information security and establishment of the governance framework (security policies) - Information security risk management - Resilience support - Cloud services security - Support for...
-
Information Security Governance Consultant
il y a 2 semaines
Luxembourg SIRCONSULTING RH Temps pleinWe are looking for our future Information Security Governance Consultant to complete our team. Your missions are defined as follows: - Assist our clients in the implementation of their strategy - Identify the security projects - Assess the maturity of controls - Manage Information Security and its risks Required profile: - Master's degree - SCADA...
-
Information Security Risk Officer
il y a 2 jours
Luxembourg Deutsche Börse Group Temps pleinTracing its origins to 1585, Deutsche Börse Group has become one of the world's leading exchange organisations and an innovative market infrastructure provider. In this role, we provide investors, financial institutions and companies access to global capital markets. By creating trust in the markets of today and tomorrow we foster growth and contribute to...
-
Information Security Manager
il y a 3 semaines
Luxembourg Next Gate Tech Temps plein**What You Will Do**: In this role, you will be responsible for developing and implementing our organization's information security strategy, as well as ensuring compliance with relevant laws, regulations, and industry standards. You will work closely with stakeholders across the organization to identify and mitigate security risks, and be responsible for...
-
Information Security Risk Assurance Officer
il y a 1 jour
Luxembourg Deutsche Börse Temps plein**Learn. Develop. Grow. But always: Share value**: Join our international team that drives positive change, united by a spirit of openness and curiosity. We empower you to have an impact and to grow - personally and professionally. With us, you work at the heart of financial systems and evolve the way markets operate. We’re excited about the future because...
-
Information Security Consultant
il y a 5 jours
Luxembourg Lux-Advisory Temps plein**Mission** In support of the Risk Management team, the Consultant will provide the following services: - Establish risk guidelines for the information security strategy - Establish guidelines for the design of the information security controls - Align the risk appetite for security incidents and vulnerability management with the IT Security function -...
-
Information Security Consultant
il y a 5 jours
Luxembourg Lux-Advisory Temps plein**Lux-Advisory **is a company specialized in project management and business analysis. Our consultants take part in European or International projects. To support the increase of our activity, we are currently looking for a **Information Security Consultant.** **Mission** In support of the Risk Management team, the Consultant will provide the following...
-
Information Security Officer
il y a 3 semaines
Luxembourg JAO Temps pleinjao.eu Description In the context of reinforcing its operations and the implementation of ISO27001, JAO is in search for an Information Security Officer able to on-board and to develop quickly in a diverse IT eco-system. The person is foreseen to take over a series of duties associated with the ISMS management and to deliver support in the projects design...
-
Isrm Specialist
il y a 7 jours
Luxembourg GovJobs Temps plein**Statut** : Employé de l'État **Qui recrute ?**: Banque centrale du Luxembourg **Missions**: - Vous réalisez des analyses de risques spécifiques afin de mettre en évidence les faiblesses des systèmes d’information en collaboration avec les propriétaires fonctionnels et d’informations; - Vous réalisez des revues de sécurité sur les systèmes...
-
Information Security Officer
il y a 2 jours
Luxembourg EFA Temps plein**Your responsibilities**: - Perform controls and reviews to ensure and validate conformity with defined security standards and framework NIST, ISO 27001 - Have a good knowledge of regulatory requirements (DORA, NIS ) - Manage or participate in technical projects to improve IT security - Perform IT security assessments and recommendations related to...
-
(Senior) Information Security Officer
il y a 6 jours
Luxembourg European Investment Bank Temps pleinThe **EIB**, the European Union's bank, is seeking to recruit for its **Group Risk & Compliance Directorate (GR&C) - Office of the Group Chief Compliance Officer (GR&C-OCCO) - Group Non-Financial Risk Department (GNFR), Project Management and Information Security Division (PMI), Information Security Risk Unit (InfoSec)** at its headquarters in Luxembourg, a...
-
Internship in Information Security
il y a 2 jours
Luxembourg Luxembourg Institute of Health Temps pleinStrategy and Management unit, integral part of Medical Informatics Department, has the objective to manage and deliver IT projects that connect healthcare and technology, while managing risks, meeting regulations and promoting continuous improvement. Dr. Lamine Traore, PhD, Head of the Strategy and Management unit, and Viktor Tynyanskyy, MSc, Information...
-
Information Security Analyst
il y a 2 semaines
Luxembourg Next Gate Tech Temps plein**About Next Gate Tech**: At Next Gate Tech, we create technologies that reshape the landscape of the fund industry operations. We empower our clients by capturing the full potential of harmonized data to drive intelligent and fully automated operations. Our transformative solutions optimize processes, enhance efficiency, reduce risks, and drive cost...
-
Information Security Specialist
il y a 6 jours
Luxembourg Clearstream, part of Deutsche Börse Group Temps plein**Information Security Specialist - Group Security (f/m/d)**: Tracing its origins to 1585, Deutsche Börse Group has become one of the world’s leading exchange organisations and an innovative market infrastructure provider. In this role, we provide investors, financial institutions and companies access to global capital markets. By creating trust in the...
-
Information Protection Grc Expert
il y a 3 semaines
Luxembourg KPMG Luxembourg Temps pleinKPMG Luxembourg combines our multi-disciplinary approach with deep, practical industry knowledge to help clients meet challenges and respond to opportunities. As a leading consulting firm with more than 1,700 employees and more than 70 nationalities in Luxembourg, we know that our strength and capability come from our people, their experiences, culture and...
-
Information Protection Grc Expert
il y a 3 semaines
Luxembourg KPMG Luxembourg Temps plein**Find your purpose at KPMG Luxembourg** We see a world of opportunity. From uncovering ways to digitalize, to enabling new sectors to take off, to building sustainability and resilience into economies, we know insights reveal new opportunities for all. We are diverse and dedicated problem solvers, part of the worldwide network of high-quality audit, tax...
-
Information Security Officer
il y a 1 semaine
Luxembourg Arendt Temps pleinArendt Services, which is part of Arendt & Medernach, the largest law firm in Luxembourg, is regulated by the Luxembourg supervisory authority (CSSF - Commission de Surveillance du Secteur Financier) and operates under the status of Professional of Financial Sector (“PSF”). Arendt Services offers a wide range of services, such as domiciliation,...
-
Cyber Security
il y a 1 semaine
Luxembourg Austin Bright Temps pleinAre you passionate about overseeing ICT risk and cyber security? Are you someone who thrives in a dynamic and collaborative work environment? If so, we extend a warm invitation to join our esteemed financial institution as an ICT Risk & Cyber Security Agent, where you'll play a crucial role in fortifying our Information Technology Department. At our...