The Chief Information Security Officer (CISO) Office is responsible for information security and IT risk management for the Asset Managers division of the Swiss Life Group (“SL AM”). The CISO Office has the following key domains of responsibility:
•Design and implement the strategy to ensure a consistent level of information security and IT resilience across all SL AM entities.
•Promote security awareness within the firm.
•Monitor compliance with IT risk and information security related policies and regulations.
•Advise and support the business and IT with their technology risk management responsibilities.
The Enterprise IT Security Architect is a member of the SL AM CISO Office organization (second line of defense) reporting to the Head of IT Security. The Enterprise IT Security Architect leads the design of IT security architecture addressing the key cyber security threats affecting the organization and in line with CISO's strategy. The ideal candidate for this role has a strong passion for cyber security and can drive changes in the organization.
Responsibilities
- Lead the design and ongoing improvement of the IT security architecture ensuring adherence to security principles such as “security by design”, “defense in depth” and “zero-trust” and to the wider enterprise IT architecture strategy.
- Support the delivery of the CISO strategy by identifying the cyber security capabilities and resources such as technologies and processes required to address the key cyber security risks affecting the organization.
- Stay abreast of the continuous evolution of industry cyber security threats, trends, regulations relevant to the organization.
- Play a key role in the selection of strategic security vendors and technologies. Maintain relationships with those vendors, follow their innovation cycle and lead the implementation of new security capabilities.
- Design and document technical security standards and other relevant documentation ensuring security policies and principles are consistently implemented according to IT architecture and technical specifications.
- Develop and maintain security architecture artifacts (e.g., models, templates, standards) that can be leveraged in projects and daily operations.
- Educate other technical architects on security architecture principles and evangelize security best practices across the organization.
Experience
- Minimum 10 years of working experience in an Enterprise IT Security Architect role or similar, preferably in the financial sector.
- Familiarity with key security domains such as cloud security, data leakage prevention, and DevSecOps.
- Experience in implementing cyber security frameworks such as CIS, NIST, OWASP or CSA CCM.
- Working experience with Microsoft Azure and Microsoft security products is a must. Working experience with Zscaler is an advantage.
- Outstanding communication skills; strong critical thinking and analytical skills.
- Ability to explain complex topics to both a technical and non-technical audience.
- Ability to apply risk management principles to problem solving.
- Fluent in English (verbal and written)
Certifications
The following certifications are an advantage:
- Microsoft related certifications
- ISC2 CISSP and CSSP
- ISACA CRISC
Only direct applications will be considered for this vacancy and we do not accept dossiers from recruitment agencies.
Benefits
Benefits
- 25 days of vacation per year
- discounts on SL investment products and mortgages
- contribution to 3rd pillar life insurance
- employer's contributions to the pension fund
- reka cheques and meal allowance
- discounts on public transportation (up to 35%)
- flexible working models
- various timeout models
- Service anniversaries
- training and development opportunities (inhouse AM Academy)
- physiotherapy offering
- days off for caregivers
Contact
Our Location
Zurich
Swiss Life Asset Managers
We are a leading European asset manager and institutional real estate asset manager with locations in Switzerland, France, Germany, Luxembourg, the UK and Norway.
With a strong client focus, here at Swiss Life Asset Managers, success is driven by expecting the unexpected, prioritising sustainability and inclusion, fully investing in our jobs and people, and being on the lookout for new business opportunities – all since 1857.
Swiss Life Asset Managers is a dedicated equal opportunity employer. Learn more