You will reinforce the existing team across IT security activities, with a particular focus on IT resilience, backup and restore assurance, and ransomware preparedness.
You are collaborative, pragmatic, and comfortable taking ownership in a fast-changing environment. You challenge the status quo and turn risks into workable solutions.
Responsibilities
You will support day-to-day IT security activities and priority risk-reduction initiatives, working closely with Technology teams and management.
Your main responsibilities are to:
- Perform IT security and risk assessments, document findings, and recommend proportionate remediation.
- Assess IT resilience controls, including backup protection, restoration procedures, recovery objectives, and test evidence.
- Support ransomware and cyber-recovery initiatives, exercises, lessons learned, and remediation tracking.
- Contribute to security incidents, risk acceptances, control exceptions, and security requests.
- Support DORA and other applicable requirements through gap assessments, evidence collection, action tracking, and audit support.
- Provide concise management reporting, collaborate with local and global stakeholders, and ensure knowledge transfer to the permanent team.
Required profile
We are looking for you, if you have:
- Experience in information security, IT risk management, or compliance, with practical knowledge of key IT security controls.
- Knowledge of IT risk assessment methods and recognised frameworks such as ISO 27001, NIST CSF, or COBIT.
- Strong analytical and stakeholder-management skills, with the ability to present risks and pragmatic recommendations.
- Excellent written and spoken English; working French is an advantage.
You'll get extra points for:
- Experience in financial services and IT resilience, including backup and restore governance, recovery testing, immutable or segregated backups, and ransomware resilience.
- A relevant certification such as CISA, CISM, CISSP, CRISC, ISO 27001 Lead Auditor, or CBCI.
- A self-starting, delivery-focused approach and the ability to integrate quickly into an established team.
About the company
You will join a team of approximately thirteen Security and IAM Officers working in English and French. The team collaborates closely with Technology, Information Risk Management, CIO management, and other entities within the organisation.
