Regional CISO EMEA

Place of work
Mlynské nivy 12, Bratislava
Contract type
full-time
Wage (gross)
From 2 700 EUR/monthMinimum base salary for this job from 2700 EUR gross/month/full time. Our offer to you may be higher based on your skills and experience and will include additional rewards and benefits.*

Information about the position

Job description, responsibilities and duties

About the Team

The Chief Security Officer (CSO) function is the principal point for security activities across Swiss Re. We have the role to coordinate security governance, risk and compliance, define and advance the company's cyber security concepts as well as carry out the implementation of vital security capabilities. The Regional Chief Information Security Officers (CISO) are essential to carrying out the CSO Team's mission and objectives.

Are you up for the challenge to join the CSO function with the directive to drive forward and craft all security related matters within Swiss Re? Do you love to work in an intellectually stimulating, interdisciplinary, and international environment?

If yes, find out more about our open position within the CSO team!

About the Role

You will have global accountability for developing and directing Swiss Re’s group-wide safety and security program to reduce risk exposures to staff/visitors, physical and information assets, financial assets as well as our reputation.

The CISO's mission is to provide an effective Cyber Security and Cyber Risk Management capability to proactively protect the confidentiality, integrity and availability of Swiss Re client data, intellectual property and Information & Technology assets. The three regional CISOs (Americas, APAC, EMEA) collaborate to implement Group global standard processes and procedure while also having a focus on local and regional cyber security regulatory and compliance requirements. The CISO EMEA focuses primarily on Europe, Middle East and Africa region. The Regional CISOs jointly support the Group CSO in fulfilling the function's oversight of overall physical, digital and information security through the following activities:

- Acts as the regional cyber and information security compliance point of contact and aligns with other regional CISOs
- Supports local entities including specific initiatives with CISO relevance
- Coordinates and works closely with the Local Information Security Officer Network (LISO) to derive regional requirements, promote cyber security culture and attitude
- Identifies, evaluates and reports on cyber and information security risks in a manner that meets compliance, regulatory requirements and alignment with Swiss Re's risk appetite and tolerance
- Understands, analyses, monitors and reports cyber and information security requirements coming from relevant local laws and regulations.
- Maintains a repository of local requirements and maps these requirements against the Swiss Re internal cybersecurity control framework
- Evaluates compliance of Digital Services with local data security requirements
- Analyses and reviews security relevant policies and standards and ensures local data security requirements reflected in the respective IT policies and guidelines
- Defines and establishes processes to ensure enforcement of information security policies through defined governing bodies
- Directs and supports business and enabling teams in implementing practices that meet defined policies and standards for information security
- Collaborates with Regulatory Affairs, Legal, Data Protection Office, Risk Management and Compliance teams to accurately interpret, execute, implement and align with laws and regulations
- Supports the IT (service and information) managers in local data security affairs
- Supports regional execution of cyber-attack simulations and table-top exercises
- Supports Business Continuity Management and Incident Management Response Teams on cyber-related events and queries.

The main responsibilities are to:

- Lead, develop and maintain a world-wide and future proofed cyber security program for Swiss Re to ensure all related risks are understood, well handled and implemented
- Implement a preventive approach through proactive risk management for the timely identification, assessment, avoidance or reduction of possible hazards
- Review and update policies and procedures in line with changes to legislation and standard methodology and help to ensure these are well communicated and upheld
- Interact with government and law enforcement agencies, national and international security bodies and intelligence services as well as private sector counterparts

Information about the selection process

*We are required by law to disclose basic wage component (minimum salary) for the advertised positions. We carefully consider your professional competencies, qualifications and experience in our compensation package and/or when offering you other positions. Our compensation philosophy is to pay fairly, also considering market situation and the value employees may bring to Swiss Re.

We are an equal opportunity employer, and we value diversity at our company. Our aim is to live visible and invisible diversity – diversity of age, race, ethnicity, nationality, gender, gender identity, sexual orientation, religious beliefs, physical abilities, personalities and experiences – at all levels and in all functions and regions. We also collaborate in a flexible working environment, providing you with a compelling degree of autonomy to decide how, when and where to carry out your tasks.

We provide feedback to all candidates via email. If you have not heard back from us, please check your spam folder.

Requirements for the employee

Candidates with education suit the position

University education (Bachelor's degree)
University education (Master's degree)
Postgraduate (Doctorate)

Language skills

English - Advanced (C1)

Personality requirements and skills

- Experience as a strategic business leader with the ability to lead all aspects of the big picture and develop security programs that enable knowledge of risk and security mitigation solutions.
- Capability and experience to develop and address emerging risks and new potential threats on a global and regional level.
- 7-10 years information security or related technology experience and track record in information/cyber security risk management. Experience guiding and assisting organizations in implementing appropriate IT Security practices
- Must have at least a bachelor's degree, preferably in computer science and/or cybersecurity certifications, e.g., CISSP or equivalent
- Ability to collaborate with and communicate technical subjects to top management, IT and business-centric audiences in domestic and international corporate environments. Drive decisions and communicate effectively
- Knowledge and understanding of relevant legal and regulatory information security requirements and common information security management frameworks, e.g., ISO/IEC 27001, ISF, NIST
- High degree of initiative, dependability and ability to work with little supervision
- Standout colleague with ability to build proactive, collaborative working relationships with customers, peers and key partners based on respect and teamwork
- Flexible approach to travel
- Excellent command of English. German is a plus.

Advertiser

Brief description of the company

As the world's leading and most diversified global reinsurer, we offer as our core business financial services products that enable risk taking essential to enterprise and progress. Our company was founded in Zurich, Switzerland in 1863, and operates in more than 25 countries and provides its expertise and services to clients throughout the world. We combine financial strengths with experience, knowledge and creative thought to explore new opportunities in the interests of our clients, staff and shareholders.

Number of employees

1700 and more employees

Company address

Contact

Contact person: Lucia Vargova

ID: 3955595  Dátum zverejnenia: 2.2.2021  Základná zložka mzdy (brutto): 2 700 EUR/month