Security In Projects Risks Assessor

Encontrado en: Talent ES C2 - hace 1 semana


Madrid, España AXA Group A tiempo completo

CONTEXT

To support our business strategy and digital transformation, AXA is building a new Group Information Security Practice to ensure a coordinated response to the increasing cyber security threat, enable risk decisions to be made consistently across the organization and establish sustainable security capabilities that are integrated with the business. Our vision for Information Security is to ‘protect our stakeholders by securing our information assets, managing our cyber risk and enabling business strategies in an efficient and effective way, fully supported by executive leadership and underpinned by all AXA employees’.

JOB PURPOSE

The purpose of the role is to:


• Support Head of Security in projects in ensuring that security is implemented by design in all projects, products, and services of GO: Security in IT Governance, Process and Methodologies and Roadmap, Oversight AXA GO Product to validate security integration

• Participate to the development and implementation of a consistent approach to all security topics within the scope, including Information Security, Operational Resilience, PS, H&S: merging security topics into security project management

• Support the Communication and advisory to the different stakeholders of the projects regarding Security by design approach

• Support the Project team in the implementation of the cyber risk analysis and security assurance plan for projects

• Contribute in the Security in Projects team in the design enhancement of the framework to support project and product owner in meeting the security requirements: Integration and support of security into Project Management Framework

• Contribute in delivering the security oversight in products and projects in GO

• Interact with all relevant stakeholders of the projects or customers of GO to provide visibility on the level of security of GO Products

• Support alignment/coordination between the different line functions involve in the review of Products & Project oversight (Data Privacy, Internal Control, Operational risk, Legal…) as well other Security Stakeholders (Group Security, Cyberdefense, etc.)

MISSIONS

Your missions as a Project Security Risk Analyst are to :

• Identify and analyze product/project risks, recommend appropriate mitigation options and document all components in clear, business-intelligible language
• Serve as an expert advisor in the Security in projects team of GO in the implementation and maintenance of security
• Collaborate with and support the Group Security Practice and other stakeholders as necessary to ensure that security within GO is relevant, cost-effective and is delivered in accordance with the Group Security Strategy and Security by Design best practices
• Support the implementation of continuous improvement processes and activities ( good practices, reporting, problem resolution) to ensure quality and relevance of security services
• Support the implementation of security strategy, policies, shared security services and action plans based on the Group Security Strategy
• Contribute to the maintenance in understanding of emerging technology, risks and industry trends. Assess the impact on the business environment and recommend appropriate mitigation actions or the prioritization of projects and investments
• Escalate the need to redirect any critical risk not properly addressed during the project lifecycle or suggest changes to the approach to mitigate critical risks and ensure legal, regulatory or commercial compliance
• Promote a culture of security and raise awareness
• Contribute to the continuous development and maintenance of an assurance framework to enforce consistency and effectiveness in the security by design approach
• Support the reporting process of information security, operational resilience and Physical Security & Safety for different levels of customers (top management, middle management and team)
• Provide Quality Assurance work on local security implementation
• Support the implementation of a coordinated responses to security audit and compliance issues
• Contribute to the governance organization and management of projects within the team (planning, framework, staffing, purchasing, operations, ..)


Your Profile

PROFILE

Overall work experience in the field:

• Experience in cyber risk threat analysis, security, Cloud Architecture and projects, IT audit or related area > 7 years
• Previous experience in managing projects preferred in an international context
• Previous experience as interim or acting Security in projects manager, Information Security Officer, Physical Security Officer, Operational Resilience Officer, or extensive experience in reporting to a CSO, CISO, CORO, PSO or other 2nd line cybersecurity expert in an international organization.

Certification in one of the below is recommended:

• Security Risk analysis methodology
• Information Security and /or Information Technology industry certification (CISSP, CISSP-ISSAP, CISM, ISO 27001 Lead Auditor, GIAC or equivalent)
• Business Continuity Industry certification (MBCI, DRII…)
• Physical security certification (CPP, PSP, BTEC…)

Education & certification:

• A license/bachelor's degree in information security, computer science, information management systems, Business, Accounting or related field
• A post-graduate degree in security or general management (such as an MBA) is an advantage but not essential

Skills / abilities:

• Ability to develop networking to seek collective achievements while supporting the projects
• Communication skills: Effectively communicates ( oral and written) the security by design framework & the benefits in achieving the same
• Ability to apply analytical rigour to understand complex business et IT scenarios
• Capacity to interact with different level of stakeholders from business to technical
• Results oriented, project and budget management
• Good sense of organisation
• Flexibility on working hours
• Fluent in English


About AXA

As a world-leading insurance company, we act for human progress by protecting what matters. With 153,000 employees in 54 countries working with 105 million customers, we’ve created a truly dynamic and vibrant community. Inclusion and diversity link closely with our values, and together we’re nurturing a culture of
respect, for each other, for our customers and the communities around us. Join AXA and you’ll feel like you belong, are included and can thrive. You’ll be able to shape the way you work and truly grow your potential as you seek out new opportunities, push boundaries and benefit people in critical moments of their lives. This is your chance to build the tomorrow you want. Know you can.


About the Entity

AXA is becoming a sustainable tech-led company and at AXA Group Operations we are one of the major catalysts for this transformation. 

We set the tone by triggering and empowering the evolution of our insurance business model through technology and innovation, driving its concrete implementation globally at speed, with a high quality of advisory and execution.

We are present across 17 countries with committed, highly qualified teams. We leverage technology, data, sourcing, security and investment allocation in a global way, but also achieve economies of scale and synergies when necessary.

At AXA Group Operations, we want to be recognized in three fields of action:

State-of-the-art Data Technology to drive customer experience State-of-the-art Procurement & Sourcing to drive efficiency and better manage risks High-Performing Global Team for stronger partnerships with AXA entities 
What We Offer

We bring together the expertise, cultural diversity and creativity of over 8,000 employees worldwide and we’re committed to equal opportunities in all aspects of employment (gender, LGBT+, disabled persons, or people of different origins) and to promoting Diversity & Inclusion by creating a work environment where all employees are treated with dignity and respect, and where individual differences are valued.



  • Madrid, España Axa Group A tiempo completo

    CONTEXT To support our business strategy and digital transformation, AXA is building a new Group Information Security Practice to ensure a coordinated response to the increasing cyber security threat, enable risk decisions to be made consistently across the organization and establish sustainable security capabilities that are integrated with the business....

  • Cyber Security

    hace 1 semana


    Madrid, España Apollo Solutions A tiempo completo

    A great opportunity for a **Senior Cyber Security IT Risk Assessor **with experience within Cybersecurity** **to join a leading bank in Madrid, Spain. **You will be part of the team responsible for**: - Conducting Independent Technical Tests - Cybersecurity Assessments, including Penetration Testing and Red Teaming. - Application & Infrastructure Risk...

  • Cloud Security Architect

    hace 2 semanas


    Madrid, España Iceberg A tiempo completo

    One of the leading global product organizations is currently expanding its cyber security team, and looking for Cloud Security Architect/ DevSecOps. You will drive/ develop security concepts in close collaboration with the IT service owners and vendors to address the organization's cyber security needs and meet business demands. Your daily tasks: • Assess...

  • Consultant Kudelski Security

    Encontrado en: Talent ES C2 - hace 5 días


    Madrid, España Kudelski Security A tiempo completo

    Stimulating. Motivating. Challenging. Leveraging its long-standing expertise in securing digital content as well as fighting piracy, Kudelski Security, a division of the Kudelski Group, is a provider of cybersecurity solutions and services focused on protecting data, processes and systems for companies and organizations around the world, safeguarding...


  • Madrid, España Control Risks A tiempo completo

    Our Crisis and Security Consulting teams provide expert operations and cyber security consulting, including embedded security services, enabling clients to respond to and recover from threats to people, reputation and assets. Working within our Crisis and Security Consulting team this role will play a key contribution in helping to form a strong partnership...


  • Madrid, España Advantio A tiempo completo

    **About Advantio** Established in 2009, Advantio maintains an extensive team of consultants and security testing experts to provide digital security and assurance to its customers. Originally established as a payment compliance market leader, Advantio has grown from an established and leading payment security and compliance organisation in Europe to develop...

  • Consultant Kudelski Security.

    Encontrado en: Talent ES C2 - hace 2 semanas


    Madrid, España Kudelski Security A tiempo completo

    Stimulating. Motivating. Challenging. Leveraging its long-standing expertise in securing digital content as well as fighting piracy, Kudelski Security, a division of the Kudelski Group, is a provider of cybersecurity solutions and services focused on protecting data, processes and systems for companies and organizations around the world, safeguarding...

  • Security Analyst

    hace 2 semanas


    Madrid, España Kudelski Security A tiempo completo

    Stimulating. Motivating. Challenging. Reference : 14072 Publication Date : 21-03-2024 Security Analyst - Tier 1. Location : Madrid, Spain Mission Stimulating. Motivating. Challenging. Leveraging its long-standing expertise in securing digital content as well as fighting piracy, Kudelski Security, a division of the Kudelski Group, is a provider of...


  • Madrid, España Celonis A tiempo completo

    The Team: Our Global information security organization is responsible for security and trust. We think about security-offensively and defensively. We continuously monitor our global security posture and are always adapting to the ever-changing threat landscape. The security engineering team is always looking for talented subject matter experts in...


  • Madrid, España Thales A tiempo completo

    Location: Madrid, Spain Thales people architect solutions that support 85 million mainline and suburban passenger journeys, worldwide, every day. Our Rail Signalling and Communication systems are used on metro lines across major cities, and 72,000 kms of route, 52,000 trains per day in 16 countries are controlled by our Traffic Management Systems. Together...


  • Madrid, España AXA A tiempo completo

    AXA Partners “Focus & Transform Strategy” is shaping Global Operations’ strategic ambition: “bring simplicity and drive transversal processes, breaking down silos, to succeed in providing a superior customer experience in line with our Customer2020 ambition”. Global Operations has three strategic priorities: - Reposition AXA Partners as the...

  • Information Security Expert

    Encontrado en: beBee jobs ES - hace 2 semanas


    Madrid, Madrid, España AXA Group A tiempo completo

    ContextThe Security Consultant plays an integral role in defining and assessing security requirements, security strategy and practices for Group Security and AXA global projects and clients. The security consultant will be required to effectively translate business objectives and risk management strategies into specific security requirements and processes...


  • Madrid, España Control Risks A tiempo completo

    The aim of compliance-driven due diligence is to assess our clients’ actual or potential counterparties, looking for any issues that might pose a reputational or other risk to them. As part of a dedicated team (VANTAGE), the compliance due diligence researcher role involves media research, working with databases, primary documents and other sources to...

  • SAP Security

    Encontrado en: beBee jobs ES - hace 7 días


    Madrid, Madrid, España Michael Page A tiempo completo

    ¿Dónde vas a trabajar? Multinational Healthcare Company ¿Qué harás en tu nuevo puesto? The successful candidate will undertake critical duties in the day-to-day operations and management of SAP security solutions, ensuring the safety and integrity of digital assets. In this role, you will navigate the complex landscape of SAP security, juggling user...


  • Madrid, España Marks Sattin A tiempo completo

    Are you an experienced Full-stack Security Engineer looking for your next adventure? My client, a leading financial services company is looking to add an experienced Full stack Security Engineer to their growing teams in either London, Lisbon or Madrid! As an experienced Full-stack Security Engineer, you must have at least 4-5 years of experience, working...


  • Madrid, España Antal International Network A tiempo completo

    Network, Communications, and Security Engineer Our International Client is a dynamic organization dedicated to ensuring the seamless operation of its network and communication infrastructure, while upholding high security standards. Currently, we are in search of an experienced Network, Communications, and Security Engineer. In this role, you will play a...


  • Madrid, España RHEA Group A tiempo completo

    Are you looking for a new opportunity in a fast-moving global company with a family feel? A job where you could have an impact? We are looking for an Information Security Risk & Compliance Officer to work in Madrid, Spain. As an Information Security Risk & Compliance Officer, you will be responsible for the delivery of the risk management and compliance...


  • Madrid, España Advantio A tiempo completo

    **About Advantio** Established in 2009, Advantio maintains an extensive team of consultants and security testing experts to provide digital security and assurance to its customers. Originally established as a payment compliance market leader, Advantio has grown from an established and leading payment security and compliance organisation in Europe to develop...

  • Information Security

    Encontrado en: Talent ES C2 - hace 6 días


    Madrid, España Verisure Sàrl A tiempo completo

    Do you want to have an impact every day by making people safe - and bringing them peace of mind? Interested in being part of a dedicated, passionate team which believes that security is a human right? Looking to join a company where innovation and technology are at the heart of its solutions?   What we look for Highly motivated individuals with...

  • Information Security

    Encontrado en: Talent ES C2 - hace 6 días


    Madrid, España Verisure A tiempo completo

    Do you want to have an impact every day by making people safe - and bringing them peace of mind? Interested in being part of a dedicated, passionate team which believes that security is a human right? Looking to join a company where innovation and technology are at the heart of its solutions?   What we look for Highly motivated individuals with...