ICT Risk Management Officer
Veröffentlicht:
24 Mai 2025Pensum:
100%Vertragsart:
Festanstellung- Arbeitsort:Geneva
Job-Zusammenfassung
EFG International sucht einen ICT Risk Management Officer in Genf. Biete eine dynamische Arbeitsumgebung mit attraktiven Vorteilen.
Aufgaben
- Identifizieren und Bewerten von ICT-Risiken zur Sicherstellung der Sicherheit.
- Entwickeln von Strategien zur Risikominderung und Sicherstellung der Resilienz.
- Erstellen von Richtlinien im Einklang mit DORA und besten Praktiken.
Fähigkeiten
- Bachelor-Abschluss in IT oder verwandten Bereichen, 5 Jahre Erfahrung.
- Starke analytische Fähigkeiten und Problemlösungsfähigkeiten erforderlich.
- Fließend in Englisch, Französisch oder Italienisch von Vorteil.
Ist das hilfreich?
General Info
- Department: Global CISO
- Work time Percentage: 100%
- Location: Ideally Geneva – Option for Lugano or Zurich
EFG International is a global private banking group, offering private banking and asset management services. We serve clients in over 40 locations worldwide. EFG International offers a stimulating and dynamic work environment and strives to be an employer of choice.
EFG is committed to providing an equitable and inclusive working environment that is founded on the principle of mutual respect. Joining our team means experiencing a supportive environment, where your contributions are valued and recognised. We strongly believe that the diversity of our teams gives us a competitive advantage by fostering better decision-making and greater innovation.
Our Purpose and Mission
Empowering entrepreneurial minds to create value – today and for the future.
We are a private bank, offering personalised solutions on a global scale to private and institutional clients. Our sustainable success is based on our talents and on how we partner with our clients and communities to create lasting value.
Job DescriptionWe are looking for a highly skilled ICT Risk Management Officer to join our Information Security organization. This pivotal role involves identifying, analyzing, and mitigating risks associated with our Information and Communication Technology (ICT) systems, with a specific focus on supporting compliance with the new Digital Operational Resilience Act (DORA) regulation. The ideal candidate will have a strong background in ICT risk management, excellent analytical skills, and the ability to work collaboratively across various departments to ensure the security and integrity of our ICT infrastructure.
Key Responsibilities:
- Risk Identification and Assessment: Conduct thorough assessments of ICT risks, including emerging threats, vulnerabilities, and potential impacts on the bank's operations. Support the identification, assessment, and treatment of IT, Information Security, third-party, and data-related risks.
- Risk Mitigation: Develop and implement strategies to mitigate identified risks, ensuring that ICT systems are secure and resilient.
- Policy Development: Create and maintain ICT risk management policies, procedures, and frameworks in alignment with DORA regulatory requirements and industry best practices.
- Monitoring and Reporting: Continuously monitor the ICT risk environment and provide regular reports to senior management, highlighting key risks and mitigation measures. Prepare risk management reports for the Group’s relevant governance bodies. Including ensuring action plans are in place for risks outside of the bank’s risk appetite.
- Stakeholder Collaboration: Build and maintain strong and positive working relationships with stakeholders in the first and second lines, ensuring effective communication and collaboration. Participate in the coordination and delivery of IT and Information Security risk and control improvement actions and report on assessment outcomes.
- Regulatory Compliance: Ensure compliance with DORA and other relevant regulatory requirements, standards, and guidelines related to ICT risk management. Stay abreast of emerging risks affecting the financial industry.
- Training and Awareness: Conduct training sessions and workshops to raise awareness about ICT risks and promote best practices across the organization. Educate and raise awareness within the bank on best practices for risk management.
- Incident Management: Lead the response to ICT-related incidents, ensuring timely resolution and post-incident analysis to prevent recurrence.
- Educational Background: Bachelor's degree in Information Technology, Computer Science, Risk Management, or a related field. A Master's degree or professional certifications (e.g., CISSP, CISM, CRISC, CISA) are preferred.
- Experience: Minimum of 5 years of experience in an information technology risk role, preferably within a financial institution or consulting firm.
- Technical Expertise: Strong understanding of ICT systems, cybersecurity, risk assessment methodologies, and mitigation strategies. Experience in designing and implementing international IT and information security frameworks such as ISO, NIST, COBIT.
- Experience in third party risk management is a plus.
- Analytical Skills: Excellent analytical and problem-solving skills, with the ability to identify and assess complex risks.
- Communication Skills: Strong verbal and written communication skills, with the ability to effectively convey technical information to non-technical stakeholders.
- Project Management: Proven experience in managing risk-related projects and initiatives, with the ability to prioritize tasks and meet deadlines.
- Regulatory Knowledge: Familiarity with European and Swiss regulations relating to Information Technology (IT), Information Security, including the EU Digital Operational Resilience Act (DORA).
- Language Skills: Fluent in English, French or Italian can be a plus
- Personal Attributes: Self-motivated, organized, able to work under pressure, and manage priorities in a rapidly evolving environment.
- Accountability: Taking ownership for tasks and challenges, as well as seeking continuous improvement
- Hands-on: Being proactive to rapidly deliver high-quality results
- Passionate: Being committed and striving for excellence
- Solution-driven: Focusing on client outcomes and treating clients fairly with a risk-aware mindset
- Partnership-oriented: Promoting collaboration and teamwork. Working together with an entrepreneurial spirit.
Kontakt
EFG Bank AG