The Information Security Risk Officer (ISRO) is a member of the SL AM CISO organisation (second line of defence) reporting into the Head of Information Security Risk Management. The ISRO plays a pivotal role in identifying, assessing, managing, and reporting on information security risks to ensure compliance with established security policies, standards, and regulatory requirements. The ISRO is also responsible for supporting local business and IT with the management of IT and information security risks as part of the daily operations and during projects and other initiatives.
This is an excellent opportunity to become part of a dynamic and ambitious team, offering the space and responsibility to drive meaningful change and innovation.
Responsibilities
- Lead the improvement of key domains of the CISO Office program such as Identity and Access Management (IAM) and Cyber Threat Intelligence (CTI).
- Lead the improvements of information security risk management processes ensuring consistency across business units.
- Lead the improvement of the security incident reporting process to ensure security incidents are adequately assessed, documented and reported to relevant stakeholders.
- Contribute to the development and ongoing maintenance of information security policies and frameworks, ensuring they are aligned with regulatory requirements and industry standards.
- Advise on information security risk matters during business and IT initiatives.
- Stay updated with emerging cybersecurity threats and regulatory developments.
- Promote a security-risk-aware culture throughout the organisation.
Experience
- Master's degree in cyber or information security, computer science, business information technology, or a related field.
- Minimum of 5+ years of working experience in an information security officer or technology risk role preferably in a financial institution or a consulting firm.
- Experience in applying international frameworks such as NIST, CIS or ISO 27001/2
- Experience in information security risk management including performing risk assessments, assessing control effectiveness and providing recommendations for improvement.
- Fluency in English (spoken and written); German is an advantage.
- Relevant certifications such as CISM, CISSP or CCSP are an advantage
- Client focused with an entrepreneurial mindset.
- Goal oriented, pragmatic with high work quality standards.
- Being able to work independently with minimum supervision.
Benefits
Benefits
- 25 days of vacation per year
- discounts on SL investment products and mortgages
- contribution to 3rd pillar life insurance
- employer's contributions to the pension fund
- reka cheques and meal allowance
- discounts on public transportation (up to 35%)
- flexible working models
- various timeout models
- Service anniversaries
- training and development opportunities (inhouse AM Academy)
- physiotherapy offering
- days off for caregivers
Contact
Our Location
Zürich
Swiss Life Asset Managers
We are a leading European asset manager and institutional real estate asset manager with locations in Switzerland, France, Germany, Luxembourg, the UK and Norway.
With a strong client focus, here at Swiss Life Asset Managers, success is driven by expecting the unexpected, prioritising sustainability and inclusion, fully investing in our jobs and people, and being on the lookout for new business opportunities – all since 1857.
Swiss Life Asset Managers is a dedicated equal opportunity employer. Learn more