Information Security & Data Protection Specialist (100%)

Rothschild & Co Bank AG

Rothschild & Co Bank AG

Key information

  • Publication date:

    05 June 2024
  • Workload:

    100%
  • Contract type:

    Unlimited employment
  • Language:

    German (Intermediate), English (Fluent)

Rothschild & Co

Rothschild & Co is one of the world's largest independent financial advisory groups. We offer a distinct perspective that makes a meaningful difference to our clients’ business and wealth.

With a team of 4,200 talented financial services specialists on the ground in 40 countries across the world, we provide independent advice on M&A, strategy and financing, as well as investment and wealth management solutions to large institutions, families, individuals and governments. As a family-controlled business that has been at the centre of the world’s financial markets for over 200 years, we can rely on an unrivalled network of specialists and are known for our track-record of outstanding execution in financial services.

Rothschild & Co Wealth Management

For over 200 years, Rothschild’s freedom to offer objective advice and our commitment to personal service have combined to shape and grow our private clients’ wealth, building value for generations. Our dynamic growth and ambitious targets in relation to quality, innovation and reliability have created a need for the above mentioned role.

Overview of Role

Rothschild & Co Bank AG’s (R&CoBZ) Information Security & Data Protection team is responsible for defining and overseeing the delivery of the information/cyber security strategy and data protection programme. The team is part of the wider Group Information Security within the Group Risk function.

The Data Protection Specialist will play a key role in liaising with the regional Information Security Officer, DPO and Group Information Security to ensure a consistent delivery of data protection and information security to all R&CoBZ locations.

This role is suitable for a security & data protection specialist with primary experience on Data Protection and additional knowledge in Information Security. The ideal candidate would have a solid understanding of regulatory landscape such as FADP, GDPR, FINMA and the EBA, and cyber security and risk management concepts and frameworks.

Responsibilities

  • Assist the Data Protection Officer in the delivery, maintenance and monitoring of the Data Protection program (E.g. registry of processing activities, policies, procedures and tools) ensuring on a regular basis that all data subject to protection have been properly and exhaustively identified and inventoried, and remain properly safeguarded from any unauthorized access
  • Support the Business in executing the Data Protection Impact Assessments, design and perform recurrent data privacy assessments/audit
  • Define data protection requirements during business and IT projects and ensure their implementation (Privacy by design and by default)
  • Liaise with local legal department to ensure proper adherence to regulatory framework applicable to Data Protection
  • Liaise with group security and data protection function to ensure adherence to group standard
  • Contribute to the ongoing improvement of various information security initiatives including but not limited to education and awareness, risk and control maturity improvement, data loss prevention, third party risks management and data protection
  • Support the execution of regular Information Security and Data Protection audits and assessments (e.g. internal, external, regulatory)
  • Promote security awareness within the firm by assisting security awareness and education activities
  • Assist in performing risk assessments and control maturity assessments and ensure risks, control gaps and remediation activities are clearly communicated to business stakeholders
  • Ensure proper application of above-mentioned tasks to subsidiaries of R&CoBZ, when applicable

Experience, Skills and Competencies Required

  • At least 3 years working experience in Data Protection & Information Security preferably if in the financial sector or consulting
  • Bachelor’s or Master degree in Law, Privacy or Information Security related fields
  • Strong knowledge of GDPR and FADP
  • Knowledge of Swiss and EBA banking regulations and their application to technology
  • Knowledge of international security standards and frameworks such as NIST, CIS, ISO27001, etc.
  • Self-motivated and delivery focused – the candidate must be able to work independently and switch between several simultaneous projects and effectively prioritise work
  • Team playing and communication skills – the candidate must be a team player and able to effectively interact with other team members of the R&CoBZ Information Security team
  • Strong problem solver and good analytical skills
  • Good knowledge of English language, German language desirable but not necessary
  • Desirable Qualifications – CIPP/E, ISACA CISA, CRISC or CISM

Benefits

  • Rothschild & Co is committed to safeguarding and enhancing the health and wellbeing of all its employees. To support this, Rothschild & Co provides all employees with a range of healthcare services and benefits that aim to support their overall wellbeing
  • We are conducive to creating a working environment and culture where people can succeed
  • We provide a variety of inhouse trainings, as well as tuition assistance for further education and training courses
  • Everyone can choose to incorporate agile working principles into their working week
  • We have learned a great deal about the adaptability, commitment and resilience of our people. We believe there are opportunities for all of us to enhance our working lives and outcomes, by applying a more flexible approach to where and when we work and up to 40% of your work time can be performed from home.

If you are curious to learn more about us and have valuable experiences in a similar role, then please submit your CV and Cover Letter through our recruitment tool. 

Contact