Job Posting Organization: The European Investment Bank (EIB) is the lending arm of the European Union and is headquartered in Luxembourg. Established in 1958, the EIB plays a crucial role in financing projects that contribute to the EU's policy objectives. The bank operates in over 160 countries and employs approximately 3,000 staff members. Its mission is to support sustainable investment in Europe and beyond, focusing on projects that promote innovation, infrastructure, and environmental sustainability. The EIB is committed to fostering a diverse and inclusive workplace, ensuring that all employees can thrive in a collaborative environment.
Job Overview: The Associate security" style="border-bottom: 1px dotted #007bff !important;">security" style="border-bottom: 1px dotted #007bff !important;">Information Security Officer position at the EIB is a full-time role situated within the Group Risk & Compliance Directorate, specifically in the Information Security Risk Unit. This role is pivotal in the 2nd Line of Defence, where the officer will be responsible for safeguarding the bank's assets through a combination of technical expertise and governance. The officer will engage in various activities, including risk assessments, policy reviews, and testing the resilience of IT defenses. The position requires a proactive approach to identifying and mitigating security threats, ensuring that the bank's information security policies are effectively integrated into its operations. The role offers a unique opportunity to work in a dynamic environment, collaborating with various departments to enhance the bank's information security posture.
Duties and Responsibilities: The duties and responsibilities of the Associate Information Security Officer include coordinating the implementation of an Information Security Management System (ISMS), developing and maintaining information security-related policies, overseeing the implementation and review of the bank's Information Security Policies framework, and formulating proposals for integrating information security into the bank's policies. The officer will also lead the risk assessment process, develop key risk indicators, and ensure the successful implementation of information security controls. Additional responsibilities include supporting business owners in conducting risk assessments, monitoring the implementation of security controls, managing external resources for security projects, and coordinating information security awareness programs. The officer will act as a liaison with internal and external auditors and will be involved in incident management and compliance reporting.
Required Qualifications: Candidates must possess a university degree, ideally complemented by relevant post-graduate studies in risk management, IT, or information management. A minimum of three years of relevant experience in information security, preferably within the financial sector, is required. The ideal candidate should have experience in supporting information security implementation and audits, with the ability to balance governance and technical aspects effectively. Relevant certifications such as CISA, CISSP, CISM, or GCIH are advantageous. Familiarity with Cloud Service Providers and knowledge of ethical hacking techniques will be considered assets. Strong communication skills, including the ability to draft documentation and present information clearly, are essential.
Educational Background: The educational background required for this position includes a university degree that is equivalent to a Bachelor's degree. Candidates with additional post-graduate studies in fields related to risk management, IT, or information management will be preferred. This educational foundation is crucial for understanding the complexities of information security within the financial sector and for effectively managing associated risks.
Experience: The position requires a minimum of three years of relevant experience in the field of information security. Candidates should have a proven track record of supporting information security initiatives, conducting audits, and implementing security measures within a financial services context. Experience in managing risk assessments and working with various stakeholders to enhance information security practices is essential for success in this role.
Languages: Proficiency in English is mandatory, and a good command of French is also required, as both languages are official working languages of the EIB. Knowledge of other EU languages would be considered an advantage. Candidates must demonstrate their language proficiency, as it is crucial for career development within the organization. The EIB provides training support to help employees achieve the necessary language skills for their roles.
Additional Notes: This position is a full-time role at grade 4, offering a permanent contract. The EIB provides relocation support for candidates moving to Luxembourg. The recruitment process includes panel interviews, which are expected to commence in June 202
The EIB is committed to diversity and inclusion, encouraging applications from all qualified candidates regardless of gender identity, age, racial or ethnic background, religion, sexual orientation, or disability. The bank also invites applicants with disabilities or chronic conditions to request reasonable accommodations during the recruitment process. By applying, candidates acknowledge the importance of maintaining the security and integrity of the EIB's information and agree to comply with all relevant policies and measures.
Info
Job Posting Disclaimer
This job posting is provided for informational purposes only. The accuracy of the job description, qualifications, and other details mentioned is the sole responsibility of the employer or the organization listing the job. We do not guarantee the validity or legitimacy of this job posting. Candidates are advised to conduct their own due diligence and verify the details directly with the employer before applying.
We are not liable for any decisions or actions taken by applicants in response to this job listing. By applying, you agree that all application processes, interviews, and potential job offers are managed exclusively by the listed employer or organization.
Beware of fraudulent job offers. Do not provide sensitive personal information or make any payments to secure a job.