Information Security Risk Assurance Officer

il y a 2 semaines


Luxembourg Deutsche Börse Group Temps plein

Tracing its origins to 1585, Deutsche Börse Group has become one of the world’s leading exchange organisations and an innovative market infrastructure provider. In this role, we provide investors, financial institutions and companies access to global capital markets. By creating trust in the markets of today and tomorrow we foster growth and contribute to the prosperity of future generations. Deutsche Börse Group is an international company, headquartered in Frankfurt/Main, Germany. With more than 6,700 employees, the company has a strong global presence for its customers all over the world, including Luxembourg, Prague, Chicago, London, Cork, New York and many other locations. Clearstream is a leading European supplier of post-trading services. The wholly owned subsidiary of Deutsche Börse ensures that cash and securities are promptly and effectively delivered between trading parties. Clearstream Luxembourg offers an international, diverse and inclusive working environment. There are numerous good reasons to work for us: high level of responsibility at an early stage, attractive benefits and a broad variety of career opportunities.
**Your area of work**:
Clearstream is a large international financial institution offering post-trade infrastructure and securities services for the international and domestic markets worldwide.Clearstream Information Security (IS) second line of defense organization is responsible for the cyber security risk oversight program, cyber resilience, steering of IS processes, IS controls, and IS compliance activities for legal entities, branches, and representative offices in scope with direct reporting line to the corresponding executive boards.
**Your responsibilities**:
The Information Security 2LOD Senior Ass. VP will be supporting Clearstream Banking Chief Information Security Officer in assuring that material information security risks are identified, analyzed, reported, and effectively remediated by IT. In addition, he/she will play an active role ensuring that (1) controls deemed necessary for the mitigation of those risks are designed and operating effectively, and (2) applicable information security compliance requirements are defined, up-to-date, and consistently implemented. More specifically, the Senior Ass. VP will:
Support the implementation and maintenance of the information security risk oversight program, including IS control requirements based on the analysis of the threat landscape, applicable policies, standards, and regulations.
Conduct risk assessments and support reporting on material risks as part of the quarterly reporting to the executive and supervisory boards.
Complement existing risk and vulnerability assessments of planned and installed information systems to identify material vulnerabilities, risks, and protection needs.
Determine the causes of security incidents and researches, recommends, and oversee the implementation of remedial measures.
Analyze information security risk -related technical problems and provides engineering and technical recommendations for solving those problems.
Develop an understanding of Post-trade business goals and reframes information security risk oversight discussions in business terms.
Support constructively engaging with business partners regarding strengthening of security posture and improving risk profile.
Actively and professionally engage with operations and IT in conversations that drive adequate IS risk decisions.
Support awareness efforts on the information security risk implications by combining pragmatic analysis with judgment to assess business decisions.
Ensure employees and third parties understand, acknowledge, and fulfill all applicable information security policy requirements.
Support the security awareness program.
Support coaching junior colleagues.
**Your profile**:
Master's degree in computer science, network security, or business informatics.
Minimum 10 years of experience in IT security, information security risk management, or risk oversight in the financial sector.
Strong ability to convey complex IT security issues, information risks, and compliance in a manner that is easily understood, actionable and constructively challenges prevailing thoughts and processes.
Ability to effectively analyze information security risks within the context of complex IT environment and to provide value-added/actionable recommendations.
Ability to collaborate across multiple teams in a multicultural environment.
Ability to develop a full and deep understanding of the business / IT operations and related information security risks.
Experience with information security regulatory compliance and information security risk management frameworks (e.g., IS027000, COBIT, NIST, etc.)
Proficiency in written and spoken English, preferable at least basic knowledge of German and/or French.



  • Luxembourg Deutsche Börse Temps plein

    **Learn. Develop. Grow. But always: Share value**: Join our international team that drives positive change, united by a spirit of openness and curiosity. We empower you to have an impact and to grow - personally and professionally. With us, you work at the heart of financial systems and evolve the way markets operate. We’re excited about the future because...


  • Luxembourg European Investment Bank Temps plein

    **This position is based at our Luxembourg headquarters and requires regular office presence.**The EIB offers you the opportunity to live and work in a truly international and multi-cultural environment. We also offer relocation support. The **EIB**, the European Union's bank, is seeking to recruit for its Group Risk & Compliance Directorate (GR&C), Office...

  • Information Security Officer

    il y a 2 semaines


    Luxembourg NTT Temps plein

    NTT is a leading global IT solutions and services organisation that brings together people, data and things to create a better and more sustainable future. In today’s ‘iNTTerconnected’ world, connections matter more now than ever. By bringing together talented people, world-class technology partners and emerging innovators, we help our clients solve...


  • Luxembourg Amexio Temps plein

    We are Experts European Leaders on ECM/CCM, Taylor made Cloud solutions provider, and experts on Consulting Services, walking alongside with our customers and help them to meet their timely capacity demand by supplying talent that fits their needs in their very different roles and services. Our Expertise allows us to cover a quite large spectrum of...


  • Luxembourg European Investment Bank Temps plein

    The **EIB**, the European Union's bank, is seeking to recruit for its Office of the Group Chief Compliance Officer (GR&C - OCCO) - Group Non-Financial Risk Department (GNFR), Project Management and Information Security Division (PMI), Information Security Risk Unit (InfoSec) at its headquarters in Luxembourg, a **(Senior) Information Security Risk & Business...


  • Luxembourg PPRO Temps plein

    At PPRO, our mission is to simplify access to local payment methods and our vision is to enable the sale of goods and services to anyone in the world using their preferred way to pay. We empower partners such as Ant Group, PayPal and Stripe to access new markets, connect with more customers, and accelerate their growth. Our strength lies in our diverse...


  • Luxembourg, Luxembourg beBee Careers Temps plein

    About the RoleWe are seeking a skilled ICT & Security Risk Officer to join our team. As a key member of our organization, you will play a vital role in supporting our cybersecurity and information security risk management framework.This dual-role position is responsible for assisting in the implementation of security policies, monitoring IT risks, and...


  • Luxembourg, Luxembourg beBee Careers Temps plein

    Job Title: Information Security Risk Management SpecialistAbout the Job:We are seeking an experienced Information Security Risk Management Specialist to join our team. The successful candidate will be responsible for developing and maintaining our Information Security Management System (ISMS), defining and improving relevant processes and procedures related...


  • Luxembourg Luxembourg Stock Exchange Temps plein

    Description Located in the heart of Luxembourg city, the Luxembourg Stock Exchange (LuxSE) is home to over 44,000 international securities and gathers diverse and committed teams covering listing, trading, information services and of course, the Luxembourg Green Exchange (LGX) - the world’s leading platform dedicated to sustainable finance. By joining...

  • Information Risk Officer

    il y a 5 jours


    Luxembourg ING Temps plein

    Information Risk Officer - In order to enforce its Operational and Information Risk Management Department, ING Luxembourg is looking for an Information Risk Manager on a permanent contract Are you somebody who.: - treasures integrity - combines good analytical, coordination & organization skills - has good communication skills - is a well structured,...