Talent.com
Arendt & Medernach
(Senior) IT Security & Risk OfficerArendt & Medernach • Biesdorf, DE
(Senior) IT Security & Risk Officer

(Senior) IT Security & Risk Officer

Arendt & Medernach • Biesdorf, DE
Vor 30+ Tagen
Stellenbeschreibung

Arendt is your legal, tax and business services firm in Luxembourg.

At Arendt we combine the entire value chain of services dedicated to asset managers, banks, insurers, public institutions, commercial companies and private clients operating in Luxembourg.

Arendt offers specialist advice, that encompasses all legal, regulatory, taxation and advisory aspects of doing business in Luxembourg. The driving force behind our work is what our clients need and our commitment to supporting their success.

Given the ongoing development of our firm, we are currently recruiting for our Technology department Arendt Digital Services:

(Senior) IT Risk & Control Officer

As a (Senior) IT Risk & Control Officer, you will take the role of ISMS manager and act as deputy of the head of IT security and risk Officer for implementing, overseeing risk & control for Arendt Digital Services in a multi-tenant shared services center environment.


Your role:

Lead Information Security Management System (ISMS) activities within IT organization:

  • ISMS implementation and improvement plan

  • ISO27001 internal audit and annual certification.

  • Keep up to date ISMS documentation (Policy, process and procedure documents).

  • Define and review IT security framework.

  • Maintain IT global registers mandatory for ISO 27001.

  • Feed KPIs/KRIs and data points to relevant governances.

Lead Recurring controls activities:

  • Define recurring annual controls plan. Pilot, as a program manager, the annual recurring controls execution within IT organization and report findings and remediation plans to the appropriate committees.

  • Collaborating with IT managers to improve security controls.

  • Lead Annual testing plan, Identity and Access management audit plan and penetration testing plan.

  • Support CISO team and Business risks community for compliance conformity assessment and due diligence exercise.

Business Support activities:

  • Support CISO team and Business risks community for compliance conformity assessment and due diligence exercise.

  • Act as the primary contact point for DPO and support the DPO’s team for GDPR activities.

Operational cyber security activities:

  • RFF Validation: maintain and review RFF validation process, validate ITSM tickets related to security.

  • Problem management: Assist problem manager to identify security weaknesses in any security incident (root cause) and define remediation plan.

Security by design activities:

  • Lead third party assessment analysis for projects requiring outsourcing

  • Act as project manager and lead some IT security improvement projects.

  • Make risk assessments for some IT or Business Projects.

Your profile:

  • You hold a bachelor’s degree or a master’s degree in business informatics, information/security systems or related field.

  • You have sound experience (advisory included) in IT security with successful experience as ITSO, CISO, or IT security auditor. You have a very strong knowledge of cybersecurity framework (CIS, NIST, ISO27001…)

  • You have ISO 27001 Lead implementor or ISO 27001 Lead auditor certification

  • You have minimum experiences in IT Operations and security operational management.

  • You have strong interpersonal and communication skills.

  • You have problem-solving skills and a proactive attitude.

  • You are organized, proactive and customer oriented.

  • You are recognized as a team player and able to work autonomously.

  • You have a perfect command of English and French, both spoken and written.

Technical skills:

  • Project Management

  • ITIL process and ISMS management.

  • Threat Intelligence and Analysis.

  • DORA, GDPR and CSSF circulars (20/750, 22/301; 22/806).

  • Knowledge of cloud environments and/or shared services center is an asset.

  • You have a very good knowledge of IT security concepts and solutions (Firewall, Waf, Proxies, end point security)

Within Arendt, we uphold high standards. Our professionals work with clients on engaging projects, empowered from the start. With a strong local presence in Luxembourg and international reach, we support and train our team members to thrive in a culture of excellence. Specialised teams ensure the right skills are available, allowing for a focus on added value. Our leaders are approachable, providing support and mentoring.

We offer a vibrant social life with numerous events, embracing sports and art, our culture encourages openness and discovery beyond the professional realm. With over 50 nationalities represented, Arendt is committed to the well-being of its staff, serving the best interests of its clients, protecting the environment, and supporting education.

Arendt promotes equal opportunities and value each employee for what they bring to the community. For more information, please refer to our diversity and inclusion policy on our website.

Interested?

If you are interested in this job opportunity, we are looking forward to receiving your application.
All applications will be treated confidentially.

Please be aware that the selected candidate will be required to provide a criminal record (or certificate of good conduct).

#AM

Jobalert für diese Suche erstellen

(Senior) IT Security & Risk Officer • Biesdorf, DE

Ähnliche Stellen

Referent IT & Digital Finance (m/w/d)

Bundesverband Öffentlicher Banken, VÖBKönigs Wusterhausen, Germany

Du hast ein groes Interesse an digitalen Querschnitts- und IT-Infrastrukturthemen, ein hohes Ma an Eigeninitiative und den Wunsch nach einem aktiven Austausch, etwa mit den Vertretern der Mitglieds... Mehr anzeigen

 • Gesponsert

IT Security Expert (m/f/n)

EnovosBiesdorf, DE

You design, implement and maintain cutting-edge security measures across network, application, and monitoring assets, aligning with the current state-of-the-art practices in the industry.You analys... Mehr anzeigen

 • Gesponsert

Senior Cybersecurity Architect (m/f)

ARHS Group Part of AccentureBiesdorf, DE

Senior Cybersecurity Architect.IT systems, networks, and data from evolving cyber threats.You’ll play a key role in developing security frameworks, defining best practices, and ensuring compliance ... Mehr anzeigen

 • Gesponsert

Information Security Expert (m/f/n)

EncevoBiesdorf, DE

Information Security Expert (m/f/n).You develop and manage documents related to the Information Security Management System .You harmonize and update security documents to maintain uniformity across... Mehr anzeigen

 • Gesponsert

Cybersecurity & IT Risk Advisor (H/F)

Harry Hope.Biesdorf, DE

Harry Hope, cabinet de recrutement accompagne candidats et entreprises dans leurs recherches des meilleures opportunités en France et à l'international.Afin de mieux répondre à vos enjeux, tous nos... Mehr anzeigen

 • Gesponsert

Senior IT-Systemadministrator / IT-Infrastruktur & Security (m/w/d)

UNITAX-Pharmalogistik GmbHSchönefeld, DE

Unternehmen im Bereich Pharmalogistik und integriertem Herstellungsservice.Mit unserem starken Wertefundament und einer klaren Compliance-Ausrichtung gestalten wir die Zukunft der Branche.IT für kr... Mehr anzeigen

 • Gesponsert

Internal IT Auditor (m/f)

Commission de Surveillance du Secteur Financier (CSSF)Biesdorf, DE

Lead internal audit missions in the IT and information security field, and participate in audit engagements coordinated at European level in the context of our competences as national authority (NC... Mehr anzeigen

 • Gesponsert

Legal & Compliance Officer (m/w)

ConfiaRHBiesdorf, DE

Du möchtest dein juristisches Know-how praxisnah einsetzen?.Wir begleiten und beraten kleine und mittelständische Unternehmen sowie Privatpersonen in allen Fragen rund um Buchhaltung und Steuern – ... Mehr anzeigen

 • Gesponsert

Informationssicherheitsbeauftragte*r (m/w/d/k.A.)

Stadtverwaltung Königs WusterhausenKönigs Wusterhausen, DE

Das Arbeitsverhältnis richtet sich nach dem Tarifvertrag für den öffentlichen Dienst (TVöD-VKA).Durchführen strategischer Risikoanalysen und -bewertungen für die gesamte IT-Infrastruktur und aller ... Mehr anzeigen

 • Gesponsert

Information Security Officer (m/f/x)

LuxairBiesdorf, DE

Information Security Officer (m/f/x).As Information Security Officer you will actively contribute to maintaining and strengthening Luxair group's information security posture.Driven by a strong int... Mehr anzeigen

 • Gesponsert

Network & Security Sales Engineer

ExperisBiesdorf, DE

Experis IT Luxembourg is looking for a .Network & Security Sales Engineer.Engage with prospective clients to understand Network and Security challenges and Software Defined Network (SDN) requiremen... Mehr anzeigen

 • Gesponsert

IT Systems Engineer (m/w/d)

OG Recruitment S.à r.l.Biesdorf, DE

X(-50%) rotate(-3deg); display: inline-block; font-size: 28px; line-height: 1.IT Systems Engineer (m/w/d) in Steinsel .OG Recruitment ist Ihre Beratungsagentur f... Mehr anzeigen

 • Gesponsert

IT Systems Administrator & Security Manager (m/w/d)

Schroeder & AssociésBiesdorf, DE

Engineering the future together » - chez Schroeder & Associés, nous construisons l'avenir avec passion et expertise.Situé près de la Cloche d’Or, notre bureau d’ingénieurs-conseils prône des valeur... Mehr anzeigen

 • Gesponsert

Risk Management Officer

Advanzia BankBiesdorf, DE

Are you looking to take the next step in your risk management career? This role offers the opportunity to actively contribute to Advanzia’s sustainable growth in a dynamic and fast‑evolving financi... Mehr anzeigen

 • Gesponsert

Junior Risk Manager (M/F)

SMBC Nikko BankBiesdorf, DE

SMBC Nikko Investment Fund Management Company S.Within the context of our development, we are seeking to engage a:.To strengthen the day-to-day risk management activities of the Company together wi... Mehr anzeigen

 • Gesponsert

Various Cybersecurity positions: Pentester, SOC, GRC and more!

ExperisBiesdorf, DE

Experis IT is looking for various profiles in the.You have a degree in IT or any related field.You have at least one experience in IT (ideally in cybersecurity).Having a Cybersecurity certification... Mehr anzeigen

 • Gesponsert

IT Techniker / Informatiker (M/W/D)

MANNELLI & ASSOCIES S.A.Biesdorf, DE

IT TECHNIKER / INFORMATIKER M/W/D.Zur Verstärkung unseres Teams suchen wir ab sofort einen IT TECHNIKER/ INFORMATIKER m/w/d.Sicherstellung des IT-Betriebs (inkl.IT-Sicherheit, Lizenzmanagement und ... Mehr anzeigen

 • Gesponsert

Senior IT Auditor

NORTHERN TRUSTBiesdorf, DE

Northern Trust, a Fortune 500 company, is a globally recognized, award-winning financial institution that has been in continuous operation since 1889.Northern Trust is proud to provide innovative f... Mehr anzeigen