Associate Information Security Officer

il y a 3 jours


Luxembourg, Luxembourg European Investment Bank Temps plein

This position is based at our Luxembourg headquarters and requires regular office presence. The EIB offers you the opportunity to live and work in a truly international and multi-cultural environment. We also offer relocation support.

The EIB, the European Union's bank is seeking to recruit for its Group Risk & Compliance Directorate-Office of the Group Chief Compliance Officer (GR&C-OCCO), Group Non-Financial Risk Department (GNFR), Project Management & Information Security Division (PMI), Information Security Risk Unit (InfoSec), at its headquarters in Luxembourg, an Associate Information Security Officer*.

  • Internal benchmark Associate Officer Non-Financial Risk Management

This is a full-time position at grade 4 for which the EIB offers a permanent contract.

Panel interviews are anticipated for early January 2026.

Purpose

We are seeking a skilled Associate Information Security Officer to join our team, based within our 2nd Line of Defence. In this role, you will be instrumental in safeguarding the Bank's information, systems, and overall operational integrity, as you conduct a variety of information security risk management activities and follow security policies, regulations, and industry standards in order to help identify, report on, and reduce security threats to the organisation.

This position offers a unique opportunity to work in a complex and dynamic environment, where every day brings new challenges. You will coordinate and oversee Information Security risk management activities, driving a proactive approach to the identification, prevention, and mitigation of security threats that could impact the organisation.

Join us if you want to work at the intersection of cybersecurity, risk, and governance, while being part of a collaborative and driven team at the #EU_ClimateBank.

Operating Network

Reporting to the Head of InfoSec Unit, and supported by more senior officers in the team, you will work in close collaboration with relevant business areas across the Bank for the integration of information security into EIB policies, procedures and processes. You will work in close collaboration with the Office of the Group Chief Compliance Officer (GR&C-OCCO), the Inspector General's Office (IG) and other relevant services as required for the investigation and escalation of events arising from non-compliance with information security policies. And you will also work with the Bank's Information Services (IS) Directorate and with all Directorates for the implementation of agreed information security measures.

Externally, you will interact with security related professionals.

Accountabilities
  • Support the implementation of an Information Security Management System (ISMS) consistent with requirements and/or regulations:
  • Assist with the development and maintenance of the Bank's information security-related policies, standards, and procedures, in close cooperation with IT Security, IPAQ (Information Protection, Access Control and Quality), Physical Security, Data Protection Office and other EIB Group services whenever required.
  • Assist with the implementation, review and update, inter-alia, of the Bank's Information Security Policies framework.
  • Formulate proposals for the integration of information security into the Bank's policies.
  • Ensure close collaboration with peers in European Investment Fund (EIF).
  • Participate in the implementation and monitoring of the EIB's risk assessment process.
  • Contribute to the development of relevant key risk indicators and associated reporting dashboards, and the implementation of consequent information security controls in collaboration with other relevant services.
  • Execute key processes related to Information Security policies, to ensure the successful implementation, maintenance, and continuous improvement of agreed information security measures in the Information Security Management System (ISMS):
  • Support Business Owners in carrying out information security risk assessments.
  • Monitor the implementation of agreed information security controls.
  • Identify and perform due diligence in line with EIB Group processes for the implementation of adequate tooling.
  • Work in collaboration with IS (Information Systems) for the development of a work plan and agreed actions for the protection of EIB's information assets and the confidentiality, integrity and availability of EIB documents and data.
  • Contribute to the provision of support for internal and external audit requests.
  • Contribute to Information Security Incident Management responses.
  • Coordinate Information Security Awareness Programme actions amongst staff (both permanent staff and consultants/contractors) through training and communication programmes.
  • Collaborate with FC/-/ICA/- (Financial Control, Internal Controls and Assertions) on the Internal Control Framework (ICF).
Qualifications
  • University degree (minimum an equivalent to a Bachelor), ideally in a relevant field such as risk management, IT or information management. Relevant post-graduate studies) and/or certifications (e.g., CISA, CISSP, CISM, GCIH) would be an advantage.
  • Minimum 3 years of relevant experience in information security, preferably gained in a financial (services) domain.
  • Experience of supporting information security implementation and/or of information security audit would be a strong asset.
  • Understanding of the financial services sector and interdependence linked to cybersecurity.
  • Knowledge sharing skills, including presentation, drafting of documentation.
  • Knowledge of ethical hacking techniques and understanding of how to test and validate defences (hands-on experience or oversight) would be preferred.
  • Experience with Cloud Service Providers would be an advantage.
  • Excellent knowledge of English and/or French (*), with a good command of the other. Knowledge of other EU languages would be an an advantage.
Competencies

Find out more about EIB core competencies here

To find out more about our eligibility criteria click here

(*) Unless stated explicitly as a required qualification, a good command of French is not a pre-requisite for hire.As both English and French are however official working languages of the EIB, proficiency in both languages is a pre-requisite for your future career development.Any language clause in your contract must be fulfilled in order for you to be eligible for a promotion (either via the annual appraisal cycle or via an internal selection process).Proficiency is understood to mean the attainment of level 5 of the Inter Institutional language courses, corresponding to B1.2 of the Common European Framework of Reference for Languages (CEFRL).The Bank offers appropriate training support.

We hire and value talent with unique characteristics, creating a work environment where they can be themselves. We believe that Diversity, Equity and Inclusion make us a performing and innovative organisation. We encourage all suitably qualified and eligible candidates to apply regardless of their gender identity/expression, age, racial, ethnic and cultural background, religion and beliefs, sexual orientation, disability or neurodiversity.

We strongly invite applicants with a disability, neurodivergent profile or chronic condition to request reasonable accommodations at any stage during the recruitment process. Please contact the EIB Recruitment team who will ensure that your request is handled.

By applying for this position, you acknowledge the importance of maintaining the security and integrity of the Information of the EIB Group. In case of selection for the position you agree to comply with all measures (policies, controls, document classification and management) implemented by the EIB Group to prevent unauthorised disclosure of any information or any damage to the EIB Group reputation.

Deadline for applications: 12th December 2025

LI-POST

  • Luxembourg, Luxembourg Luxair Temps plein

    For our department IT Security within General Services, we are looking for a (an):Information Security Officer (m/f/x)Description:As Information Security Officer you will activelycontribute to maintaining and strengthening Luxair group's information securityposture.Drivenby a strong interest in cybersecurity, you will actively support the Head of...


  • Luxembourg, Luxembourg Arendt & Medernach Temps plein

    Arendt & Medernach is the leading independent business law firm in Luxembourg with over 800 professionals. The firm's international team of more than 450 legal experts represents Luxembourg and foreign clients in all areas of Luxembourg business law from its main office in Luxembourg and representative offices in Frankfurt, Hong Kong, London, New York, and...


  • Luxembourg, Luxembourg Julius Baer Temps plein

    At Julius Baer, we celebrate and value the individual qualities you bring, enabling you to be impactful, to be entrepreneurial, to be empowered, and to create value beyond wealth. Let's shape the future of wealth management together. The CISO Europe Hub is a senior leadership role responsible for defining and executing the regional Information & Cyber...


  • Luxembourg, Luxembourg Centre Hospitalier du Nord Temps plein

    Le Centre Hospitalier du Nord est un hôpital aigu sur 2 sites. Il dispose de 359 lits de soins dont 16 lits de soins intensifs et de 33 lits de rééducation gériatrique, de 42 emplacements en hôpital de jour, emploie plus de 1160 salariés et a agréé 170 médecins.Junior Information Security Officer (m/f/x)Dans le cadre du renforcement de la...


  • Luxembourg, Luxembourg Forvis Mazars Temps plein

    Operating as an internationally integrated partnership in over 100 countries and territories, Forvis Mazars Group specialises in audit, tax and advisory services. The partnership draws on the expertise and cultural understanding of over 40,000 professionals across the globe to assist clients of all sizes at every stage in their development.As a ICT risk and...

  • Information Security

    il y a 1 semaine


    Luxembourg, Luxembourg Crédit Agricole Temps plein

    Description du posteMission:En tant qu'Information Security & Business Continuity Officer, Vous piloterez la sécurité des systèmes d'information et la continuité d'activité de l'entreprise. Vos missions incluent l'évaluation des risques SSI, l'élaboration des plans de continuité, l'accompagnement des métiers dans leurs projets et la sensibilisation...


  • Luxembourg, Luxembourg Deloitte Luxembourg Temps plein

    Your future teamOur Internal IT department creates the technological environment and supportsDeloitte employees in using a secure working environment; leveraging wellestablished and emergent technologies alike. The cyber security team is tasked withthe protection of our IT assets and information.Your advantages of being one of us• Career Growth, Your...

  • IT Security Officer

    il y a 2 jours


    Luxembourg, Luxembourg Cronos Europa Temps plein

    The IT Security Process Specialist is responsible for designing, implementing, and maintaining security processes that ensure the protection of the company's information systems. This role focuses on developing governance frameworks, improving operational security workflows, and ensuring compliance with internal and external security standards. The...

  • IT Security Officer

    il y a 2 jours


    Luxembourg, Luxembourg BNP Paribas Temps plein

    BGL BNP Paribas est une des plus grandes banques du Grand-Duché de Luxembourg et fait partie du Groupe BNP Paribas.Elle propose à ses clients particuliers, professionnels, entreprises et de banque privée une gamme particulièrement large de produits financiers et de solutions de bancassurance.En 2024, BGL BNP Paribas a été désignée « Best Bank in...

  • Associate Banking

    il y a 5 jours


    Luxembourg, Luxembourg Abiomis Temps plein

    (Senior) Associate Banking & Finance – Small Team, Strong GrowthMy client is an international business law firm with a strong and growing presence in Luxembourg, recognized on the local market for its high-quality legal work and its modern company culture. The firm combines the advantages of a global organization, nearly 500 lawyers worldwide, with the...