Talent.com
EFG International
Information Security Risk OfficerEFG International • Luxembourg, Luxembourg
Information Security Risk Officer

Information Security Risk Officer

EFG International • Luxembourg, Luxembourg
Il y a plus de 30 jours
Description de poste

Job Description

The Information Security Officer supports the CISO Luxembourg in ensuring the security, integrity, and resilience of the Bank's information systems across multiple jurisdictions. Working autonomously on operational tasks, the role contributes to maintaining compliance with regulatory requirements including DORA and local financial sector regulations.

The position holder executes day-to-day security activities, prepares documentation and reports for CISO Luxembourg review and participates in the organization's ICT risk management, incident response, business continuity, and third-party oversight activities.

The role requires liaison with Group Information Technology and Group Information Security & BCM (Geneva) on centralized security services and group-level projects, as described in the respective Service Level Descriptions (SLDs)

Key Responsibilities

1. ICT Risk Management & Regulatory Compliance

  • Contribute to the annual ICT Risk Framework report by gathering data and drafting sections for CISO review
  • Track regulatory developments (DORA, local circulars) and prepare impact assessments
  • Maintain compliance documentation and support regulatory reporting activities
  • Assist in preparing materials for regulator communications and audits

2. Third Party Risk Management (TPRM)

  • Perform security due diligence and risk assessments on new and existing ICT service providers
  • Monitor third-party compliance with contractual security requirements and SLAs
  • Follow up on third-party security incidents and escalate as required

3. Major Incident Management & Regulatory Reporting

  • Execute incident response procedures and participate in security incident investigations
  • Assist in classifying incidents according to DORA major incident criteria
  • Draft regulatory major incident notifications (initial, intermediate, final reports) for CISO validation
  • Maintain incident logs and support aggregated annual cost/loss reporting
  • Perform post-incident reviews and track remediation actions to completion

4. Business Continuity Management (BCM) & Operational Resilience

  • Assist in developing and maintaining IT Business Continuity Plans (BCP)
  • Participate in BCP testing activities and document test results
  • Support digital operational resilience testing activities when applicable
  • Maintain Business Impact Analyses (BIA) for critical ICT systems and services

5. Security Operations & Monitoring

  • Perform daily security monitoring, including data leakage prevention alerts, and business as usual activities
  • Monitor vulnerability assessments and track remediation of identified findings
  • Maintain security documentation including policies, procedures, and technical standards
  • Participate in security architecture reviews and project security assessments

6. Governance & Security Awareness

  • Follow-up the Information Security Awareness programs including phishing simulations, annual class-rooms awareness trainings…
  • Prepare security reports and KRIs.
  • Perform security reviews of new projects, systems, and cloud deployments

Skills and experience

  • Bachelor’s or Master’s degree in IT, Cybersecurity, or related field
  • Minimum 5 years of experience in Information
  • Experience in financial services/banking sector
  • Good knowledge of security frameworks (ISO 27001, NIST CSF)
  • Familiarity with DORA, GDPR, CSSF requirements
  • Experience with vulnerability scanning and SIEM tools
  • Understanding of BCM practices
  • Experience with third-party security assessments
  • Basic knowledge of cloud security (Azure, AWS)
  • Fluent in English and French

Our Values

Accountability: Taking ownership for tasks and challenges, as well as seeking continuous improvement

Hands-on: Being proactive to rapidly deliver high-quality results

Passionate: Being committed and striving for excellence

Solution-driven: Focusing on client outcomes and treating clients fairly with a risk-aware mindset

Partnership-oriented: Promoting collaboration and teamwork. Working together with an entrepreneurial spirit.

Créer une alerte emploi pour cette recherche

Information Security Risk Officer • Luxembourg, Luxembourg

Offres similaires

Compliance Officer

eFinancialCareersLuxembourg, Luxembourg

As a Fisher Investments Luxembourg Compliance Officer, you will take appropriate action concerning queries, and requests for approval arising from the client on-boarding program.You will also assis... Voir plus

 • Offre sponsorisée

Operational Resiliency Officer

eFinancialCareersLuxembourg, Luxembourg

Northern Trust, a Fortune 500 company, is a globally recognized, award-winning financial institution that has been in continuous operation since 1889.Northern Trust is proud to provide innovative f... Voir plus

 • Offre sponsorisée

NSI - Experienced Cyber - Security Officer

NSIluxembourg, Luxembourg

As part of our growth, we are currently looking for an.Experienced Cyber-Security Officer.Your main responsibilities as a Consultant.Ensure security compliance for all assets hosted in our Luxembou... Voir plus

 • Offre sponsorisée

Authorised Manager - Risk & Information Security

Le Grand & AssociatesLuxembourg, Luxembourg, LU

Position: Authorised Manager - Risk & Information Security Location: Luxembourg.Regulated cryptocurrency exchange, licensed by the Luxembourg Ministry of Finance and regulated by the CSSF.The first... Voir plus

Responsable IT Security & Risk Management (M/F/D) - Livange - CDI - 40h (6319)

Croix-Rouge luxembourgeoiseLuxembourg, Luxembourg, LU

Responsable IT Security & Risk Management (M/F/D) - 6319.Pour son service Informatique à Livange en CDI à 40h/semaine.En tant que Responsable IT Security & Risk Management, vous prenez la responsab... Voir plus

IT SECURITY OFFICER

BlackRidge GroupLuxembourg, Luxembourg, LU

En tant qu'IT Security Officer, vous contribuez activement au renforcement de la posture de cybersécurité de l'organisation.Vous intervenez sur la mise en œuvre et le contrôle des mesures de sécuri... Voir plus

Europ IT Services - Consultant Crédit Risk

Europ IT Servicesluxembourg, Luxembourg

Le ou la consultant(e) en régie devra assurer la mise en place d'un contrôle de seconde ligne sur le RWA crédit et la catégorisation des expositions.La présente prestation couvre l'exécution et la ... Voir plus

 • Offre sponsorisée

Luxembourg Institute of Science and Technology (LIST) - Senior Information Security & GRC Expert

Luxembourg Institute of Science and Technology (LIST)luxembourg, Luxembourg

Are you passionate about research? So are we! Come and join us.The Luxembourg Institute of Science and Technology (LIST) is a Research and Technology Organization (RTO) active in the fields of mate... Voir plus

 • Offre sponsorisée

Chief Information Security Officer (CISO)

Luxembourg Stock ExchangeLuxembourg, Luxembourg, LU

Located in the heart of Luxembourg city, the Luxembourg Stock Exchange (LuxSE) is home to over 51,000 international securities and gathers diverse and committed teams covering listing, trading, inf... Voir plus

Europ IT Services - Consultant IAM Sécurité

Europ IT Servicesluxembourg, Luxembourg

Le candidat devra avoir le profil suivant.Administrateur de la gestion des identifiants et accès (IAM) et des accès à privilège (PAM).Capacités poussées en analyse et en conception de droits d'accè... Voir plus

 • Offre sponsorisée

Cronos Luxembourg - IT Security Process Specialist

Cronos Luxembourgluxembourg, Luxembourg

The IT Security Process Specialist is responsible for designing, implementing, and maintaining security processes that ensure the protection of the company's information systems.This role focuses o... Voir plus

 • Offre sponsorisée

Cat-Amania - Consultant Crédit Risk & Risk Management (RWA / IFRS9 / Crr3)

Cat-Amanialuxembourg, Luxembourg

Le consultant interviendra en régie sur des activités de contrôle de second niveau et de production de reporting liées aux risques de crédit, aux RWA et aux exigences réglementaires (Crr3 / Icaap).... Voir plus

 • Offre sponsorisée

Dionys - Security Officer Senior - EndPoint Security & Hardening

Dionysluxembourg, Luxembourg

Vos principales responsabilités.Définir et mettre en œuvre les politiques de sécurité des endpoints (postes de travail et serveurs).Piloter les activités de hardening des systèmes (Windows / Linux)... Voir plus

 • Offre sponsorisée

CYBER-SECURITY OFFICER

BlackRidge GroupLuxembourg, Luxembourg, LU

We are looking for an experienced Cyber-Security officer having previously worked in the financial industry.The candidate should have a broad knowledge in all domains of Cyber security.Certificatio... Voir plus

Enterprise Risk Officer

FoyerLeudelange, Leudelange, LU

CapitalatWork, société de gestion d’actifs indépendante du Groupe Foyer, accompagne depuis plus de 35 ans ses clients privés et professionnels grâce à une philosophie d’investissement rigoureuse et... Voir plus

Consultant.e IT Security Officer (H/F /X)

UFO² ConsultingLuxembourg, Luxembourg, LU

Nous, c’est Ufo² Consulting 🛸 – Cabinet de Conseil en IT et Organisation.Notre mission ? Faciliter la vie de nos clients grâce à des solutions digitales et des expertises pointues, pour simplifier... Voir plus

Trustteam Luxembourg SA - IT Network & Security Consultant

Trustteam Luxembourg SAluxembourg, Luxembourg

Implement Network & Security platforms based on the design provided by delivery team.Configure and troubleshoot network & security infrastructure devices.Configure and install various network & sec... Voir plus

 • Offre sponsorisée

NSI - Security Engineer - FR / an

NSIluxembourg, Luxembourg

Dans le cadre du renforcement des équipes CyberSécurité d'un de nos clients, nous recherchons un(e).Vos principales responsabilités en tant que consultant(e).Renforcement et sécurisation des infras... Voir plus

 • Offre sponsorisée

Keyteo - IT Security Officer

Keyteoluxembourg, Luxembourg

The IT Security Officer supports the organisation's cybersecurity posture by enforcing security controls, performing security assessments, reviewing architectures, tracking vulnerabilities, and ens... Voir plus

 • Offre sponsorisée

Advisory Key - System & Security Engineer

Advisory Keyluxembourg, Luxembourg

Nous recherchons un Consultant Systèmes & Sécurité expérimenté pour rejoindre une équipe IT stratégique.Vous serez le référent technique sur les plateformes systèmes et de sécurité, garantissant le... Voir plus