Information Risk Manager-Program Manager Job
Information Risk Manager-Program Manager (Job Number: 1315021)
Description
Information Risk Management is made up of four key functions; Technology Risk Management mitigate risks during the introduction of new technologies, look after user and application access, and Risk and Control Governance oversee all IRM risk policy and compliance matters. IRM Enterprise Services provide strategic, program, and operational support to all of these divisions.
IRM EMEA provides operational support and delivery capability to all these groups in EMEA, and act as a regional point of escalation and authority.
Key responsibilities
- To take charge of the organisation and management of Information Security in Luxembourg
- Proactive oversight and management of all Luxembourg information and technology risks
- Ensuring local compliance to all IRM and Technology policies and Corporate standards
- Partnering with IT teams to ensure technology risks are detected and remediated on a timely basis
- Support the local IT manager to appropriately govern outsourcing/insourcing
- Planning, execution, and delivery of risk-based initiatives and projects.
- Supporting local and regional internal and external audit activities
- Working with IRM Technology Compliance to respond to regulatory requests
- Coordinating information security and risk responses to client requests in collaboration with IRM partners
- Development of local Information Risk action plan
- Representing Information Risk to local and regional risk committees
- Representing IRM on risk-related projects and operations for internal stakeholders
Supporting the delivery of relevant communications and training
Qualifications
- Significant experience in one or more financial industry risk, compliance, control and governance disciplines
- Indepth understanding of information security principles and best practices across the industry as well as project management principles.
- Strong stakeholder management, relationship-building, collaboration and presentational capabilities.
- Experience of successful management of regulatory compliance
- Risk management experience using quantitative measurements
- Ability to manage through highly sensitive situations with highest level of discretion
- A strong understading of residual risk and risk mitigatin is essential.
- A strong bias toward quantitative risk data rather than subjective reporting is required.
- Experience in maturing a risk organisation toeard a quantitative approach to reporting is highly desirable.
- Advanced degree preferred.
- Information security certifications (CISSP, Project Management Institute Project Management Certification (PMP) and Program Management Professional (PgMP) preferred. Prince 2 Certification optional.
Primary Location: Luxembourg, Luxembourg, LU
Internal Jobcode: 31543
Job: Audit/Compliance/Risk
Organization: Information Risk Management-HR06032
Leave a Reply
You must be logged in to post a comment.