Associate Information Security Officer

tendersglobal.net

<!–

Description

–>

You will work in close collaboration with other colleagues in the Bank for the integration of information security into policies, procedures and processes. You will report to the Head of Information Security Risk Unit. Internally, you will work in collaboration with the Office of the Group Chief Compliance Officer (GR&C-OCCO), Inspector General’s Office (IG) and other relevant services as required for the investigation and escalation of events arising from non-compliance with the information security policies. You will also work with Group Corporate Services (GCS) and all Directorates of the Bank for the implementation of agreed information security measures. Externally, you will interact with security related professions.

Accountabilities : 

  • Coordinate the implementation of an Information Security Management System (ISMS) consistent with the imposed requirements and/or regulations. This will include:
  • Developing and maintaining the Bank’s information security-related policies, standards and procedures, in close cooperation with IT Security, IPAQ (Information Protection, Access Control and Quality), Physical Security, Data Protection Office and other EIB Group services whenever require.
  • Overseeing and coordinating the implementation, the review and the update of inter-alia the Bank’s Information Security Policies framework.
  • Proactively formulating proposals for the integration of information security into the Bank’s policies.
  • Ensure the undertaking, the lead implementation and the monitoring of the risk assessment process of the Bank.
  • Coordinate the development of relevant key risk indicators and associated reporting dashboards and the implementation of consequent information security controls in collaboration with other relevant services of the Bank.

Coordinate, supervise and/or execute key processes related to Information Security policies, in order to ensure successful implementation, maintenance and continuous improvement of an Information Security Management System. This may include: 

  • Supporting Business Owners in carrying out information security risk assessments.
  • Monitoring the implementation of agreed information security controls in the Bank.
  • Managing external staff resources for the successful delivery of information security risk assessments and projects on time and according to business requirements.
  • Identifying and performing due diligence in line with EIB Group processes for the implementation of adequate tooling.
  • Being a key interlocutor with Internal and external auditors.
  • Being involved in Information Security Incident Management response.
  • Coordinating Information Security Awareness Program actions amongst Bank personnel (both permanent staff and consultants/contractors) through training and communication programmes.
  • Assessing relevant best banking practices on information security, defining compliance roadmaps as well as reporting dashboards on compliance.
  • Acting as 2nd Line of Defence for the information security processes in the 1st Line of Defence area by overseeing the risks and advising on measures to be taken to ensure compliance.

Qualifications :

  • University degree (minimum an equivalent to a Bachelor) ideally complemented with relevant post-graduate studies in field of risk management, IT or information management
  • Minimum 3 years relevant experience in the area of information security, preferably in financial sector
  • Experience in supporting information security implementation, information security audit, preferably in a financial services domain
  • Ability to balance governance with a technical mindset, blending both to effectively challenge and support 1st line functions
  • The relevant certifications e.g. CISA, CISSP, CISM, GCIH would be an advantage
  • Experience with Cloud Service Providers would be an advantage
  • Proven understanding of the financial services sector and interdependencies linked to cybersecurity
  • Knowledge sharing skills, including presentation, drafting of documentation
  • Knowledge of ethical hacking techniques and understanding of how to test and validate defences (hands-on experience or oversight) would be an asset,
  • Excellent knowledge of English and/or French (**), with a good command of the other. Knowledge of other EU languages would be an advantage.

Source : https://erecruitment.eib.org/psc/hr/EIBJOBS/CAREERS/c/HRS_HRAM_FL.HRS_CG_SEARCH_FL.GBL?Page=HRS_APP_JBPST_FL&Action=U&FOCUS=Applicant&SiteId=1&JobOpeningId=110669&PostingSeq=2

<!—

<!–

–>

To help us track our recruitment effort, please indicate in your cover/motivation letter where (tendersglobal.net) you saw this job posting.

Share

Project Manager – Digital Transformation

tendersglobal.net Position description ThePacific Community(SPC) is the principal scientific and technical organisation in the Pacific…

16 minutes ago

Associate, Poland

tendersglobal.net Position description The Associate provides policy and technical expertise to support RAP’s work, on…

16 minutes ago

Practice Lead Governance and Politics Centre of Expertise

tendersglobal.net Position description Practice Lead Governance and Politics Centre of Expertise (November 2025)Location: UK based…

16 minutes ago

MISSION D’INTÉRIM – TRANSFORMATION & CONDUITE DU CHANGEMENT – Responsable d’Antenne…

tendersglobal.net MISSION D’INTÉRIM – TRANSFORMATION & CONDUITE DU CHANGEMENT – Responsable d’Antenne… To help us…

16 minutes ago

Senior Officer, Programs – Health Systems – (4385)

tendersglobal.net Senior Officer, Programs – Health Systems – (4385) To help us track our recruitment…

16 minutes ago

Director for External Engagement

tendersglobal.net Position description KEI is seeking a policy expert with established relationships in Washington, D.C.…

2 hours ago
For Apply Button. Please use Non-Amp Version

This website uses cookies.