
Information Security Officer
- Luxemburg Findel, Luxemburg
- Unbefristet
- Vollzeit
- Undertake internal security assessments and facilitate the creation of action plans with key business units;
- Perform information security operational tasks and day to day follow up of actions with the overall objective of ensuring the operational effectiveness of existing security controls, improve the overall control environment and reduce risk exposure;
- Assist with the review and maintenance of existing Information Security controls and the design of new ones in line with evolving business, security or legal/regulatory requirements;
- Actively follow-up access rights entitlement reviews and request validations;
- Develop and maintain relationships with business units, to emphasise and promote the importance of Information security, risk and governance management;
- Work with internal and external auditors in relation to information security audits;
- Conduct risk assessment activities and execute risk treatment plans;
- Analyse and support the remediation of information security incidents.
- Studies or initial experience in a combination of risk management, information security, and IT roles;
- At least 4-5 years of experience in Information Security or IT Security;
- Technical background in the field of security technologies and architectures;
- Knowledge of technological trends and developments in the area of IT and Information Security;
- Good communicator, ownership, problem-solving, solution oriented, service oriented, ability to adapt to a fast-paced environment, team work;
- Understanding of risk assessment and audit processes and techniques, specifically within the domain of financial information security;
- Basic knowledge of network and application security, as well as authentication, identity management and penetration testing technologies;
- Experience with DLP, NAC, SIEM, PAM and intrusion detection software;
- Understanding of advanced security protocols and standards;
- Understanding of software and security architectures and principles of secure network design;
- Have good understanding of anti-virus software, firewalls and similar products;
- Knowledge of generic software development lifecycle processes;
- Professional certification, such as a CISSP, CISM, CISA or other information security credentials, is an asset;
- Working knowledge of security and control frameworks, such as ISO 27001, CobiT, COSO and ITIL;
- Fluent English is a must. Any other European language would be considered as an asset.
Jobs.lu