Information Security Grc Expert

il y a 7 jours


Luxembourg KPMG Temps plein

**Find your purpose at KPMG Luxembourg**

We see a world of opportunity. From uncovering ways to digitalize, to enabling new sectors to take off, to building sustainability and resilience into economies, we know insights reveal new opportunities for all.

We are diverse and dedicated problem solvers, part of the worldwide network of high-quality audit, tax and advisory services.

We offer excellent career prospects that balance autonomy, flexibility, and responsibility. Our comprehensive benefits inspire our people do and feel their best.

Right now, we have more than 1800 employees from over 70 nationalities. Join our growing group of young and youthful innovators to uncover a world of opportunity together.

We are seeking for an Information Protection GRC Expert.
You will manage the Information Security Risk and Compliance program. Also, you will work with cross-functional teams and interface with third parties to

**What you will be working on**:

- Compliance and Risk Management Leadership
- Develop, implement and administer technical security standards, as well as a suite of security services and tools to address and mitigate security risk.
- Coordinate the treatment of non-conformity with, and exceptions to, the Information Security Policy, norms and laws (ISO27001, GDPR).
- Address technical policy, compliance and regulatory issues.
- Provide efficient contract reviews.
- Contribute to the Firm’s RFP submission processes in the Security related sections of those processes.
- Stay abreast of regulatory and norm changes affecting KPMG Business and information Security (in particular ISO27000 series and GDPR).
- Governance and Project Leadership
- Develop a risk decision framework to help understand critical areas.
- Work with Information Security Officer, NITSO and QRMP to build cohesive security and compliance programs.
- Risk Management
- Establish Risk Management Framework Processes and Tools.
- Coordinate and perform the assessment and analysis of information security risks and monitors compliance with security standards and appropriate policies.

**What we look for**:

- Bachelor or Master degree in IT - ideally with specialty in Information Security.
- At least 6 years of experience with information security concepts and practices with at least 2 years in a Compliance and/or Information Security Risk Management.
- Experience implementing ISMS frameworks in relation to ISO 27001.
- Experience with Information Security Risk Management Framework (ISO27005) and Tools.
- Knowledge of IT Domain (Infrastructure, software development and Data protection).
- ISO27001 Lead Implementer, ISO27005 Risk manager certification.
- Project management skills.
- CISSP, CISM or similar certifications could be an important asset.
- English is mandatory. French is considered as an asset.
- Details and results oriented.
- Strong writing skills.
- Strong organizational, multi-tasking, and time management skills.
- Ability to speak and communicate effectively and in diplomatic manner across all levels of the organization.
- Good influencing and negotiation skills.
- Ability to work independently and within a team.
- Business/client oriented.

**What will you get**

KPMG is where you will find the right opportunities to advance your career and the widest available range of possibilities so you can grow professionally. Make a real impact, join a diverse team of leading experts, work with global clients, and discover technological solutions.
- KPMG is an equal opportunities employer. We believe passionately that employing a diverse workforce is central to our success. Our recruiting decisions are based on your experience and skills._



  • Luxembourg KPMG Luxembourg Temps plein

    KPMG Luxembourg combines our multi-disciplinary approach with deep, practical industry knowledge to help clients meet challenges and respond to opportunities. As a leading consulting firm with more than 1,700 employees and more than 70 nationalities in Luxembourg, we know that our strength and capability come from our people, their experiences, culture and...


  • Luxembourg KPMG Luxembourg Temps plein

    **Find your purpose at KPMG Luxembourg** We see a world of opportunity. From uncovering ways to digitalize, to enabling new sectors to take off, to building sustainability and resilience into economies, we know insights reveal new opportunities for all. We are diverse and dedicated problem solvers, part of the worldwide network of high-quality audit, tax...

  • SAP Security

    il y a 12 heures


    Luxembourg Empiric Solutions Temps plein

    URGENT! Empiric have exciting new opportunities for SAP Security and GRC consultants SAP Security and GRC consultant - Contract - Hybrid, Company based in Luxemburg Empiric are looking for SAP Security and GRC consultant for one of our premium customers based in Luxemburg. We are offering an opportunity to work with a large growing company who are...


  • Luxembourg Vertex IT Recruitment Temps plein

    **Required Skills**: - Broad knowledge and experience in SAP GRC, specifically in Access Controls (Access Request Management (ARQ) and Access Risk Analysis (ARA) - Exposure to SAP GRC version 10.1 and experience with S/4 HANA including Fiori Artifacts, HANA, and S/4 HANA Security is preferred - Some exposure to SAP GRC Process Controls and Access Violation...


  • Luxembourg Cargolux Temps plein

    TASK RESPONSIBILITIES: We are looking for an intern to join our GRC tool management team. The preferred start date would be between February and June 2025. - Implement automation workflows in the GRC tool used by Cargolux' Information Security team. - Configure and implement connectors with relevant IT technologies (e.g. Service Now, Azure DevOps) - Variety...

  • SAP Security Consultant

    il y a 1 jour


    Luxembourg Empiric Solutions Temps plein

    **SAP Security Consultant - Luxembourg** Empiric has received exclusive instructions from one of the leading Global IT Organisations for a SAP Security Consultant with experience in SAP GRC ARA, EAM, ARM, BRM. The SAP Security Consultant will be expected to have participated in at least 1 end-to-end SAP Security OR GRC implementation project, as well as...

  • Grc Consultant

    il y a 2 semaines


    Luxembourg LHH Temps plein

    **Client Description**: One of our big clients, a European agile company, is looking for a GRC Consultant to join them as soon as possible for a permanent contract. LHH Recruitment Solutions offers extensive HR solutions through one unique brand. We are specialised in the employment of middle and top management and highly qualified professionals in...


  • Luxembourg Lux-Advisory Temps plein

    **Mission** In support of the Risk Management team, the Consultant will provide the following services: - Establish risk guidelines for the information security strategy - Establish guidelines for the design of the information security controls - Align the risk appetite for security incidents and vulnerability management with the IT Security function -...


  • Luxembourg Lux-Advisory Temps plein

    **Lux-Advisory **is a company specialized in project management and business analysis. Our consultants take part in European or International projects. To support the increase of our activity, we are currently looking for a **Information Security Consultant.** **Mission** In support of the Risk Management team, the Consultant will provide the following...


  • Luxembourg, Luxembourg beBee Careers Temps plein

    IT Governance ManagerThis role is responsible for developing and maintaining an IT governance framework that aligns with the company's strategic objectives.The successful candidate will have experience in IT risk management, compliance, or information security and be able to work with stakeholders to define IT policies, standards, and procedures.Key...