Можливість для людей з України

Third Party Cyber Risk Manager (Hybrid option)

Place of work
Mlynské nivy, Bratislava, Slovakia (Job with occasional home office)
Contract type
full-time
Wage (gross)
From 2 000 EUR/monthOur final offer to you will be set up fairly, considering the skills and experience that you bring to the Swiss Re Group.

Information about the position

Job description, responsibilities and duties

Join a team of cybersecurity professionals and help Swiss Re to fulfil its mission in making the world more resilient. As the Third Party Cyber Risk Manager, you'll be responsible for assessing third-party cyber risks, building up relationships with third parties, cooperating with service recipients, while handling as well as mitigating cyber risks and ultimately improving our cyber defence landscape. What's more, you'll be working in a hybrid setup, perfectly balancing work from home and the office premises.

About the team
The Security Team is the focal point for all security activities across Swiss Re. We are responsible for cybersecurity engineering and operations, governance, risk, and compliance, and defining as well as advancing the company's security strategy. As a part of the Security Team, the Third Party Cyber Risk Management team reduces the supply chain cyber-attack surface by identifying risks represented by third parties, proposing remediation actions, and making risks transparent to risk-takers and stakeholders. We're looking for an experienced professional who'll help us assess, handle, and mitigate third party-related risks through all the stages of cooperation – protecting the company against ever-advancing cyber risks in the long run.

In your role, you will…
- Assess third-party all the way from due diligence/onboarding, through service provision, to service termination
- Cooperate with service recipients across the whole organization
- Act as an enabler and coordinator between stakeholders and the assessment team
- Get insights into companies and adapt to different approaches of handling cyber risks
- Collaborate directly with third parties to develop an action plan to mitigate risks
- Outline risks identified, expectations and recommendations to third parties
- Provide third parties with information on potential improvements to control environment
- Supervise observations through to resolution

Employee perks, benefits

- Attractive performance-based bonus
- Ultra flexible working time in hybrid setup, allowing you to work also from home
- Modern office spaces in attractive location
- 5 additional days of holiday
- Lunch allowance fully paid by Swiss Re
- Referral bonus
- Pension & risk insurance contribution
- Sick days and sick leave support
- Public transport benefit
- Multisport card

Information about the selection process

Our aim is to live visible and invisible diversity – diversity of age, race, ethnicity, nationality, gender, gender identity, sexual orientation, religious beliefs, physical abilities, personalities and experiences – at all levels and in all functions and regions. We also collaborate in a flexible working environment, providing you with a compelling degree of autonomy to decide how, when and where to carry out your tasks.

We provide feedback to all candidates via email. If you have not heard back from us, please check your spam folder.

Requirements for the employee

Candidates with education suit the position

Follow-up/Higher Professional Education
University education (Bachelor's degree)
University education (Master's degree)
Postgraduate (Doctorate)

Language skills

English - Upper intermediate (B2)

Personality requirements and skills

Your qualifications
- You should be well-versed in some of these areas
- Internal/External IT/Security Audit
- Information Security Management System
- Cyber Risk Assessments/Management
- Cyber Risk Quantification
- Governance and Security Frameworks
- Risk Management Frameworks
- Cyber Security Consultancy
- Privacy & Data Protection

What we need from you
- Deep knowledge of information security on a technical as well as a security management level
- Knowledge of ISO 2700x / 31000 NIST SP 800-53 / ISAE 3000 / SOC 2 standards and reports
- Experiences in Cyber Risk Quantification – FAIR methodology, or risk management frameworks (ISO 31000)
- Ability to describe cyber related risks and controls, bring them into the business context and communicate them effectively at all levels of the organization
- Good to excellent command of English
- Great understanding of Microsoft (MS) tool landscape
- Expertise in MS Excel, PowerPoint, Word, Teams, SharePoint
- Willingness to deepen and share your expertise, communicate with stakeholders and bring forward innovative ideas

Advertiser

Brief description of the company

As the world's leading and most diversified global reinsurer, we offer as our core business financial services products that enable risk taking essential to enterprise and progress. Our company was founded in Zurich, Switzerland in 1863, and operates in more than 25 countries and provides its expertise and services to clients throughout the world. We combine financial strengths with experience, knowledge and creative thought to explore new opportunities in the interests of our clients, staff and shareholders.

Number of employees

1700 and more employees

Company address

Contact

Contact person: Lucia Vargova

ID: 4393745  Posting date: 25.10.2022  Basic salary component (gross): 2 000 EUR/month