
Cybersecurity Governance - Senior Associate (m/f/d)
- Luxemburg
- Unbefristet
- Vollzeit
- Define and implement information security governance framework including policies, procedures, standards, baselines, roles and responsibilities;
- Provide expert advice and guidance to clients on cybersecurity operations;
- Monitor and analyse security systems to identify potential threats and vulnerabilities and support for the implementation of mitigation measures;
- Assist our clients (Chief) Information security Officers or IT security officers in their day-to-day operations;
- Configure and maintain security tools and systems for our clients operations;
- Participate in assignment to conduct risk assessment on organisations’ business processes, new and existing IT systems;
- Define key risk indicators (KRIs) and key performance indicators (KPIs) to effectively monitor risks;
- Define and implement cybersecurity roadmap supporting our clients to identify their priorities, implementation costs, potential for tooling;
- Participate in the process to respond to request from clients;
- Build and maintain relationships with the members of the team, other teams in the firm and clients;
- Support our clients in their transformation journey following Digital Operational Resilience Act or NIS2 requirements.
- Hold a Bachelor’s or master’s degree in management information systems, Computer Science, or related field;
- Have background in security compliance, IT risk management and technical frameworks;
- Have at least 2 years of experience in information security or cybersecurity;
- Good experience of the regulatory requirements such as DORA, NIS2, EBA, CSSF, GDPR etc;
- Possess experience in participating in cybersecurity assignment and being able to work with teams and clients;
- Have experience in a similar role in consulting or industry;
- Show good expertise in risk management and knowledge of risk management elements such as threats, vulnerabilities, risk appetite, risk tolerance, risk profile;
- Demonstrate excellent written and verbal communication skills in both English and French.
- Are able to communicate effectively with team members and clients;
- Hold certifications such as ISO 27001, CISA, CISSP, GSTRT etc, it may be an added advantage.