Ict Risk Manager

il y a 2 jours


Luxembourg ByteDance Temps plein

**ICT Risk Manager - Global Payment - Luxembourg**
- Luxembourg

Regular
- R&D - Security

Job ID: A58984

**Responsibilities**

Team Intro PIPO Luxembourg is a dynamic, forward-thinking organisation at the forefront of the payments industry. As part of a fast-growing, ambitious company, you will have the unique opportunity to shape and refine our ICT Framework while playing a pivotal role in our mission to innovate and deliver exceptional payment solutions. About the role As part of the second line of defence, we are seeking an accomplished and proactive ICT Risk Manager who thrives in a fast-paced, challenging environment. This is a career-defining opportunity to take ownership of our ICT Risk function, build robust frameworks, and make a lasting impact. Reporting to the Chief Information Officer but with independent autonomy, you will play a critical role in strengthening our digital resilience, protecting against ICT risks, and ensuring compliance with Luxembourg’s regulatory framework and internal governance standards. Responsibilities: - Implementing and managing the ICT Risk Management framework aligned with regulatory requirements such as the EU Digital Operational Resilience Act (DORA) and CSSF circulars, ensuring that ICT risks are identified, assessed, mitigated, monitored, and reported within the institution's risk appetite. - Supporting and coordinating first line of defence functions in defining, drafting, implementing, and maintaining policies and procedures to ensure compliance with applicable regulatory requirements and internal governance standards; continuous compliance monitoring. - Conducting regular ICT risk assessments focused on payment services, maintaining an ICT risk register, and updating policies and controls in response to evolving threats and incidents. - Coordinating ICT incident response and remediation efforts across multiple stakeholders to minimize operational impact and ensure timely resolution. - Overseeing security testing activities such as penetration testing and vulnerability assessments specifically related to payment functions and processes. - Managing ICT business continuity plans and conducting resilience testing to ensure operational stability under adverse conditions. - Monitoring third-party service providers through due diligence, risk assessments, and service level agreement (SLA) performance reviews to manage supply chain risks. - Serving as the primary contact for ICT-related regulatory communications, audit responses, and reporting to both management and regulators, ensuring compliance with CSSF and other supervisory expectations. - Integrating ICT risk management into the institution’s overall risk management framework, maintaining independence from ICT operations to provide objective control and oversight. - Staying ahead of regulatory developments, sharing insights and recommendations with the leadership team to adapt policies and practices as needed. - Driving a strong ICT risk awareness and culture across the organization by delivering engaging, business-focused training and fostering an open, solutions-driven approach. - Actively contributing to the development of new products and services, ensuring ICT compliance is seamlessly integrated into innovation.

**Qualifications**

Minimum Qualifications - Relevant professional experience of typically 2-5 years in information security, ICT risk management, IT governance, or cybersecurity, preferably within the payment and financial services industry. - Good knowledge of regulatory requirements applicable to payment institutions in Europe, including the Digital Operational Resilience Act (DORA), PSD2, and related EU regulatory technical standards and guidelines. - Understanding of ICT risk management frameworks and security standards such as ISO 27001, ISO 27005, the NIST Cybersecurity Framework, industry standards such as PCI DSS, and familiarity with risk management methodologies. - Self-starter mentality, with a high level of initiative and discipline to independently lead projects and drive impactful outcomes. - Strong analytical, communication, relationship-building, and organizational skills to effectively report and collaborate across business units, ICT teams, and external stakeholders. - Basic understanding of micro-service architecture, cloud technologies and general ICT terms and processes. - Fluency in English. Preferred Qualifications - Advanced certifications such as CRISC (Certified in Risk and Information Systems Control), CompTIA Security+, ISO 27001 Lead Implementer/Auditor, or equivalent recognized ICT security and risk certifications. - Experience with ICT risk management in payment or electronic money institutions, including practical knowledge of incident response, penetration testing, business continuity, and third-party risk management. - Familiarity with Luxembourg-specific regulatory circulars such as CSSF Circular 25/880 and other supervisory expectations. - Participation in spe


  • Senior Ict Risk Manager

    il y a 2 jours


    Luxembourg Austin Bright Temps plein

    **Introduction**: You shall become a part of one of the biggest financial systems in the world. The holding is one of the biggest banking organizations in the world when measured by total assets. They provide a secure atmosphere and are reliable. They are looking for a Senior ICT risk Manager with extensive banking knowledge to help strengthen their risk...

  • Senior Ict Risk Manager

    il y a 2 jours


    Luxembourg Austin Bright Temps plein

    You shall become a part of one of the biggest financial systems in the world. The holding is one of the biggest banking organizations in the world when measured by total assets. They provide a secure atmosphere and are reliable. They are looking for a Senior ICT risk Manager with extensive banking knowledge to help strengthen their risk management...

  • Risk and ICT Manager

    il y a 4 jours


    Luxembourg Findel Airport Standard Chartered Bank Temps plein

    Requisition Number: 43528Job Location: Luxembourg, LUXWork Type: Office WorkingEmployment Type: PermanentPosting Start Date: 05/12/2025Posting End Date::We seek an experienced Risk & ICT Manager to strengthen technology, cyber, and operational risk in Luxembourg. You'll oversee ICT risk governance, ensure compliance, lead assessments, and promote a strong...

  • Cyber Security

    il y a 2 semaines


    Luxembourg Austin Bright Temps plein

    Are you passionate about overseeing ICT risk and cyber security? Are you someone who thrives in a dynamic and collaborative work environment? If so, we extend a warm invitation to join our esteemed financial institution as an ICT Risk & Cyber Security Agent, where you'll play a crucial role in fortifying our Information Technology Department. At our...


  • Luxembourg Austin Bright Temps plein

    **Introduction**: You will join one of the world's largest financial structures. By total assets, the holding is one of the world's largest banking groups. They are stable and offering a secure environment. To strength their risk management department as part of the Luxembourg-based activities, they are looking for a Senior ICT risk Manager with deep...


  • Luxembourg Austin Bright Temps plein

    You will join one of the world's largest financial structures. By total assets, the holding is one of the world's largest banking groups. They are stable and offering a secure environment. To strength their risk management department as part of the Luxembourg-based activities, they are looking for a Senior ICT risk Manager with deep knowledge in...

  • Safeguard The Future

    il y a 1 semaine


    Luxembourg Austin Bright Temps plein

    Are you passionate about ICT risk and cyber security management? Do you thrive in a dynamic and collaborative environment? Join our leading financial institution as an ICT Risk & Cyber Security Agent and contribute to the strengthening of our Information Technology Department. At the organization of our client, they pride themselves on their commitment to...


  • Luxembourg EKXEL IT Services & Financial Engineering Temps plein

    Are you looking for a challenging opportunity and want to take advantage of a great job to give new inpulse to your career? This offer is for you. In order to support one of our clients, **a large and famous European Public Institution in Luxembourg**, we are looking for **our future Leader in ICT Security.** **EKXEL IT Services, is a European leader in IT...

  • Senior Ict Risk Officer

    il y a 2 semaines


    Luxembourg Austin Bright Temps plein

    Our client is a leading financial institution in Luxembourg, and we are currently seeking a skilled and motivated professional to join our team as an ICT Risk Officer. As an ICT Risk Officer, you will play a crucial role in ensuring the security and resilience of our information and communication technology systems. Your expertise and dedication will...

  • Ict Manager

    il y a 1 semaine


    Luxembourg Mirabaud Wealth Management Temps plein

    **Description de l'entreprise** Rejoindre Mirabaud, c'est entrer dans un environnement entrepreneurial et innovant. Avec la 7ème génération de la famille Mirabaud travaillant au sein de la banque, la culture est celle d'une entreprise familiale. Avec plus de 750 employés basés dans 10 pays à travers le monde, Mirabaud offre des opportunités de...