Digital Risk Grc Expert

il y a 1 semaine


Luxembourg KPMG Temps plein

**Find your purpose at KPMG Luxembourg**

Join a team of diverse and dedicated problem solvers, connected by a common cause: to turn insight into opportunity for clients and communities around the world. If you are eager to learn, are interested in growing rapidly and strive to make an impact in a diverse environment, you're in the right place at the right time.

Learn more about Careers at KPMG Luxembourg

Join our dynamic Information Security team as a Digital Risk GRC Expert and play a key role in shaping the firm’s security and compliance strategy. This is your opportunity to drive real impact by helping us manage risk, stay ahead of regulatory challenges, and build a best-in-class governance, risk, and compliance program. You will work cross-functionally with business and technical teams to implement robust frameworks that ensure resilience, regulatory alignment, and business continuity.

**What you will be working on**:
**Lead Risk & Compliance Initiatives**
- Drive the development and deployment of technical security standards and tools to proactively mitigate information security risks.
- Lead the identification and treatment of non-conformities and exceptions related to security policies, ISO27001 norms, and GDPR compliance.
- Conduct thorough compliance assessments and provide guidance on regulatory and contractual requirements.
- Review contracts with a security lens and contribute to client RFPs by ensuring compliance and security excellence in all deliverables.

**Build and Strengthen Governance Frameworks**
- Develop a scalable risk decision-making framework to prioritize focus areas and support informed decisions.
- Partner with key stakeholders (Information Security Officer, NITSO, QRMP) to align governance efforts and embed security into the business.
- Monitor evolving regulations and industry standards to ensure ongoing compliance and adapt security policies accordingly.

**Enhance Risk Management Capability**
- Design and implement a Risk Management Framework using ISO27005 standards and associated tools.
- Perform regular risk assessments, track compliance metrics, and drive continuous improvement.
- Provide insights and support for internal and external audits, as well as third-party security evaluations.

**What we look for**:
**Your Background**
- Master’s degree in IT or a related field, with a specialization in Information Security.
- Minimum of 6 years of hands-on experience in information security, including at least 2 years focused on compliance and/or risk management.
- Your Skills and Knowledge
- Deep understanding of ISMS and ISO 27001 implementation.
- Proficient in Information Security Risk Management methodologies (ISO27005).
- Solid knowledge of IT systems including infrastructure, software development, and data protection.
- Certifications such as ISO27001 Lead Implementer and ISO27005 Risk Manager are essential.
- CISSP, CISM, or similar credentials are a strong plus.
- Strong project management capabilities and the ability to lead cross-functional initiatives.

**Your Personal Strengths**
- Meticulous, analytical, and results-driven.
- Exceptional communication, writing, and documentation skills.
- Comfortable engaging with stakeholders at all levels and presenting complex ideas with clarity.
- A proactive and independent mindset, with the ability to collaborate effectively in a team setting.
- A client-focused and business-oriented approach to solving security challenges.

**What you will get**

We offer more than just a job. With our flexible work model, you can work, rest and recharge. Our competitive compensation packages, paid time off, recognition bonuses and dedicated programs for personal development and well-being help to keep you refreshed and motivated.

We will accompany you on a journey of professional growth, offering an expansive spectrum of prospects to elevate your career in Luxembourg, an emerging financial center. Feel a sense of belonging by enjoying year-round celebrations and engaging events that bring us all together.

Join our next generation

**#FindYourPurposeAtKPMG #TeamBlue**

KPMG is an equal opportunities employer. We believe passionately that employing a diverse workforce is central to our success. Our recruiting decisions are based on your experience and skills.


  • Digital Risk

    il y a 1 semaine


    Luxembourg KPMG Luxembourg Temps plein

    KPMG Luxembourg combines our multi-disciplinary approach with deep, practical industry knowledge to help clients meet challenges and respond to opportunities. As a leading consulting firm with more than 1,700 employees and more than 70 nationalities in Luxembourg, we know that our strength and capability come from our people, their experiences, culture and...

  • Deep - Consultant Grc

    il y a 4 jours


    Luxembourg POST Group Temps plein

    **DEEP - Consultant GRC**: **Date**:10 déc. 2024 **Lieu**: Luxembourg, Luxembourg **Entreprise**:POST Luxembourg Afin de renforcer les équipes de DEEP au sein de l'équipe Consulting, nous recherchons actuellement un(e)** Consultant(e) - GRC**(M/F/n)**à temps plein. **Vos missions**: Vous êtes en charge des missions de conseil dans les domaines de la...

  • Financial Risk Experts

    il y a 1 semaine


    Luxembourg Charles Oakes Temps plein

    Join our team supporting **European Institutions **such as the European Parliament and European Institutions** and major commercial organisations **in the historic and exciting city of **Luxembourg. **We offer the opportunity to further your career by gaining experience supporting key business process tools used to evaluate and support development projects...


  • Luxembourg KPMG Luxembourg Temps plein

    **Find your purpose at KPMG Luxembourg** We see a world of opportunity. From uncovering ways to digitalize, to enabling new sectors to take off, to building sustainability and resilience into economies, we know insights reveal new opportunities for all. We are diverse and dedicated problem solvers, part of the worldwide network of high-quality audit, tax...

  • Deep - Consultant Grc

    il y a 4 jours


    Luxembourg EBRC Temps plein

    Afin de renforcer les équipes de DEEP au sein de l'équipe Consulting, nous recherchons actuellement un(e)** Consultant(e) - GRC**(M/F/n)**à temps plein. **Vos missions**: Vous êtes en charge des missions de conseil dans les domaines de la cybersécurité, Gouvernance, la Gestion des Risques et conformité aux règlements et standards auprès de nos...

  • Credit Risk Expert

    il y a 4 jours


    Luxembourg Spuerkeess Temps plein

    Credit Risk Expert (M/F/n) **Département**: Risk Management **Service**: Financial Risk Management **Vos missions** En tant que Credit Risk Expert (M/F/n), vous serez chargé(e) d'assurer le respect de l'appétit au risque de crédit. Vos principales responsabilités sont les suivantes: - Quantification et contrôle du risque de crédit en utilisant des...

  • Risk Manager

    il y a 1 semaine


    Luxembourg BlackRidge Group Temps plein

    **Job Information**: Work Experience - 4-5 ans Industry - Financial Services Contact Number - + 352 28 81 68 11 City - Luxembourg Country - Luxembourg Province - Luxembourg Postal Code - L-1911 As Risk Manager, you will be reporting to the Head of Risk & Compliance. You will be responsible for maintaining and developing the Risk Management &...

  • Grc Consultant

    il y a 3 jours


    Luxembourg Econocom Temps plein

    Econocom designs, finances and oversees companies' digital transformation. The Econocom Group share is part of the BelMid index. **Responsibilities**: Developing and participating in the implementation of client initiatives focused on the reduction of technology risk, governance and compliance with policies and external regulatory compliance. Evaluating...


  • Luxembourg Spuerkeess Temps plein

    **Département**: Risk Management **Service**: Financial Risk Management **Vos missions** En tant que Market & Liquidity Risk Expert, vous serez chargé(e) de la surveillance des risques structurels. Vos principales responsabilités sont les suivantes: - Identifier et quantifier les risques - Effectuer le contrôle du respect de l'appétit aux risques -...


  • Luxembourg, Luxembourg Relatech SPA Temps plein

    Are you ready to innovate, grow, and collaborate?Welcome to the heart of the Digital Renaissance.We are BTO, part of Relatech Group, an Italian tech company founded in 2001, now operating across 14 locations in Italy and abroad. We are the beating heart of an ecosystem that delivers both technological and human value to businesses.With 800+ professionals and...