• Share :

State Street Bank International GmbH ('SSBI') seeks to recruit a Senior Information Security Officer, Managing Director (Sr. ISO) to improve the overall protection of SSBI, its customers and partners from an evolving and sophisticated threat landscape.

The candidate should have a proven track record in global cyber security and as a risk leader who has experience in delivering on strategic outcomes with business operational quality and a focus on business needs. The candidate should have experience in large scale cyber transformations and execution.

The SSBI Sr. ISO reports to the SSBI Chief Governance Officer and closely cooperates with the SSBI Head of IT and the wider management team. Key stakeholders include:

  • Information Security Officers
  • Business and Functional Leaders
  • Cyber Fusion Center
  • Cyber Architecture & Security Engineering
  • First Line Risk and Controls
  • 3LOD Partners

The SSBI Senior Information Security Officer (Sr. ISO) will drive compliance with GCS security controls in their business unit/region/country/functional area which they represent. The Sr. ISO will serve as a trusted and influential information security advisor to senior-level business management in a large organization.

The SSBI Sr. ISO roles and responsibilities are defined under five domain areas with the following objectives and specific responsibilities for each domain:

Information Security program development and management

Objective:
Develop and manage the information security program within the business unit to drive compliance with information security supplemental requirements and reduce risk

  • Identify senior business management and build relationship to ensure effective information security governance is established - strategy with goals and objectives, strategic alignment, roles and responsibilities, performance measurement, outcomes
  • Understand context of the business unit - internal and external issues, organizational structure, organizational drivers, geography, strategy, legal and regulatory requirements
  • Develop an information security strategy aligned to the business unit strategy, defining the goal of information security, objectives and the desired state
  • Develop and maintain an information security policy, associated standards and procedures
  • Define the activities to be performed within the information security program, and assign ownership
  • Establish relevant metrics to evaluate the effectiveness of the information security program
  • Monitor and review information security program, to ensure continual development and improvement

Risk and Incident Management

Objective:
Manage information security risk and incident response, from assessment through mitigation of risk, and throughout the entire lifecycle of incident management

  • Support the business unit in identifying high risk/critical processes and technology, ensuring they are inventoried, ownership is assigned and that regular reviews are carried out
  • Assess information security risk associated with high risk/critical business processes and technology, and apply information security supplemental requirements to mitigate risk
  • Integrate information security risk review into lifecycle processes such as Incident Management, ASAP, ISRMP, TPRM, BCP, SDLC, Change and Project management
  • Attend risk and technology committees. Identifying, documenting and communicating Information Security risks. If risk and technology committees do not exist, work with the business unit to establish forums for discussion
  • Act as Information Security representative during regulatory and statutory engagements
  • Review and approve non-standard access for high risk access (e. g. blocked web sites, mass storage, application access, non-standard device and non-expiring passwords, process and system IDs)
  • Participate in security incident response program representing the business area to detect and respond to incidents in a timely manner. Post incident, provide support to the business to identify control gaps.

Measurement

Objective:
Develop metrics for measuring the information security program and related activities

  • Establish and agree on appropriate reporting with senior management to give a view of the state of information security throughout the business unit
  • Complete the quarterly ISO maturity assessment to provide a clear understanding of the maturity of the implementation of the ISO framework
  • Identify failed business controls and provide support on remediation to drive compliance with information security supplemental requirements
  • Create development plans for all information security resources to ensure continual improvement

Communication

Objective:
Establish internal and external communication channels that support information security

  • Report on potential business impact of proposed new information security supplemental requirements, and of security risks from new business initiatives
  • Report significant changes in information security risk to appropriate level of management for review on both a periodic and an event driven basis
  • Provide regular communication on threat intelligence relevant to the business unit, and issue guidance on supporting controls
  • Report on impact or potential impact of security incidents to senior management

Education

Objective:
Maintain up to date knowledge of evolving information security threat landscape and provide information security awareness, training and education to key stakeholders

  • Design and develop an interactive and engaging program for information security awareness and training, which is relevant to the business unit and encompasses the current threat landscape

Furthermore, the Sr. ISO (MD) is responsible for:

  • Global collaboration:
    Collaborate with Global Cyber Security and assigned business partner teams to ensure the business aligns plans addressing security policies and standards are enforced in their products and services
  • Team management:
    Create a high performing team and environment that promotes continuous growth opportunities

Education & Preferred Qualifications

The Sr. ISO (MD) should possess the following skills/experience

  • 12+ years of experience in cyber security risk and controls, a security related field or other information risk management function
  • Experience with communicating with the European Central Bank
  • Modern technical aptitude and experience developing and implementing large-scale innovation.
  • Interaction with governing bodies, i. e. ECB, Bafin, Bundesbank, Prüfungsverband, etc.
  • Depth with modern technology stacks - n-tier, cryptography, data science, machine learning, cloud (hybrid)
  • Project Management experience leading large and small technical teams.
  • Experience operating in regulated environment
  • CISA, CISM, CISSP or similar certification required or an agreed upon plan to achieve this certification within 1 year of hire
  • Bachelor's degree or equivalent in a relevant field

Cr.

Read the full job description and apply online on the recuiter's web-site

Find Jobs Hiring Now Near You!

Get Jobilize Mobile App

Get Jobilize Job Search Mobile App Now

Receive real-time job alerts and never miss the right job again

Get it on Google Play Download on the App Store
Responsable chargé.e des achats et des marchés

Inserm


Responsable chargé-e des achats et des marchés CDD, 12 mois Début : 01. 12. 2024 Montpellier Télétravail partiel Bac +3 L'Inserm est le seul organisme public français entièrement dédié à la recherche biologique, médicale et en santé des populations. Il dispose de laboratoires de recherche sur...


Marketing Operations & CRM Manager

Malt

  • FR - Paris

  • October 31, 2024


Discover our galaxy Malt is Europe's leading freelancing platform with one clear mission: to give people the freedom to choose who they work with. Co-founded in 2013 by Vincent Huguet, Malt is a tech company with a human approach that helps companies and freelancers make the perfect match. Malt is a...


Head of Growth - Permanent contract - Marketing - Growth and Data · office ·

Bene Bono

  • FR - Paris

  • October 30, 2024


WHO ARE WE? At Bene Bono, your grocery shopping becomes a force for positive change, as we offer weekly eco-conscious groceries at prices up to 40% lower. Here is the deal: every week, we curate a huge selection of qualitative products that we have saved from waste directly at the producers' &...


Studies Project Engineer

CMA CGM

  • FR - Paris

  • October 31, 2024


CEVA Logistics provides global supply chain solutions to connect people, products and providers all around the world. Present in 170 countries and with more than 110,000 employees spread over 1,500 sites, we are well on our way to achieving our vision: to be a Top 5 global 3PL. We believe that our...


Identity Expert M/F

Veolia


Do you want to join a Group whose Purpose resonates with your own values of a world where resources and people are at the heart of daily concerns? A Group whose ambition is to participate in the transformations we are experiencing? Are you looking for a meaningful experience in Is&T functions that...


Maître d'hôtel - Maison Heler

Maison Heler Metz

  • FR - Metz

  • October 31, 2024


La rencontre de quatre hommes autour d'un projet hors du commun : De la construction d'un hôtel fantasmagorique à Metz à la création d'une marque hôtelière internationale moderne et authentique. Philippe Starck se passionne pour ce projet et conçoit intégralement cet hôtel "hors-norme" au cœur du...


Ingénieur Qualité H/F

Solventum


Thank you for your interest in working for our Company. Recruiting the right talent is crucial to our goals. On April 1, 2024, 3M Healthcare underwent a corporate spin-off leading to the creation of a new company named Solventum. We are still in the process of updating our Careers Page and applicant...


Contrôleur de gestion DARB, GHT et Pharmacie H/F

Centre Hospitalier Universitaire


À propos de nous Le CHU de Limoges a trois missions de service public : les soins, l'enseignement, la recherche et l'innovation. Nos personnels exercent au sein de 5 hôpitaux (le CHU Dupuytren 1, le CHU Jean Rebeyrol 1 , le CHU Dupuytren 2, l'hôpital de la mère et de l'enfant et le Centre de...


Delivery Manager Conseil

Publicis Sapient

  • FR - Paris

  • October 31, 2024


• Au sein d'un programme, vous travaillerez en équipe pour comprendre les problématiques, enjeux et ambitions de nos partenaires afin de créer et implémenter des stratégies de changement propulsées par le SPEED. Pour transformer le potentiel de nos clients en performance, vous les aiderez à se poser...


Directeur de plaque - secteur automobile H/F

Tricolor Expertise


À propos de nous Tricolor Expertise est une entreprise spécialisée dans le recrutement et la formation professionnelle. Nous accompagnons les TPE-PME à recruter et former leurs talents de demain. À propos de notre client Notre client est un groupe familial de concessions automobiles. Avec un plus de...


Assistante/Assistant Ressources Humaines H/F

ENSAM


Assistante/Assistant Ressources Humaines H/F Campus Bordeaux-Talence • Poste disponible à partir de : 01/12/2024 • Unité d'affectation : Service Ressources Humaines • Emploi de catégorie : A • Type de contrat : Poste ouvert aux titulaires et contractuels • Durée du contrat (si détachement ou...


Directeur Comptable Général H/F-CDI- Siège Socia

Biotope

  • FR - Mèze

  • October 31, 2024


Ton objectif est de faire de ta passion un métier ? Chez Biotope nous avons ce qu'il te faut! Depuis plus de 30 ans, notre groupe a l'ambition de faire évoluer les pratiques et d'accompagner les acteurs dans l'évaluation des impacts directs et indirects de leurs projets sur la biodiversité. Nos...


Chargé de communication du campus de Bordeaux H/F

ENSAM


Chargé de communication du Campus de Bordeaux H/F • Localisation : Campus Bordeaux-Talence • Poste disponible à partir de : Dès possible • Unité d'affectation : Direction du campus • Emploi de catégorie : A • Type de contrat : Poste ouvert aux titulaires et contractuels • Durée du contrat (si...


Digital Project Leader & Scrum Master m/f

Airbus Group


Airbus Helicopters is looking for a "Digital Project Leader & Scrum Master (m/f)" to join our team in Marignane, France. You will join the AH Information Management Directorate, to manage, drive and monitor the delivery of Digital projects, related to Airbus Helicopters Customer Portal. Activities...


Directeur des services techniques mutualisés H/F

EPT PLAINE COMMUNE


Directeur des services techniques mutualisés H/F Le développement du territoire et le bien-être de ses habitants vous tiennent à cœur ? Vous souhaitez développer votre expertise sur des projets innovants et porteurs de sens. Intégrer Plaine commune, c'est rejoindre une collectivité « Plaine...


Head of Growth Marketing · , Télétravail 3j semaine · Hybride

Jedeclaremonmeuble

  • FR - Paris

  • October 27, 2024


A propos de JD2M Leader français sur le marché de la digitalisation du secteur de la fiscalité des locations meublées, JD2M (Je Déclare Mon Meublé) accompagne à ce jour 40K clients dans la déclaration de leurs revenus locatifs (LMNP et LMP). Notre ambition est de simplifier et de fiabiliser la...


R&D Director Product Development, Crosmiéres

Trivium Packaging


Trivium Packaging is a global sustainability leader in metal packaging with more than 60 locations worldwide, nearly 8,000 employees, and an annual revenue of approximately €3.0 billion. Trivium serves a diverse range of customers in a variety of end markets such as food, seafood, pet food,...


ATTACHE / ATTACHEE DE CLIENTELE GRANDES ENTREPRISES H/F

Banque Européenne Crédit Mutuel


Niveau de formation : BAC + 4 validé, BAC + 5 validé ou en cours, BAC + 3 validé Niveau d'expérience : Confirmé Métier : Attaché(e) de clientèle Grandes Entreprises Qui sommes-nous : Rejoignez une entreprise qui bouge ! Le CIC affiche sa volonté d'accompagner tous ceux qui se sentent « Entrepreneurs...


Gestionnaire d'applications F/H DSI · · Hybride

Technique Solaire


Créé en 2008, le groupe Technique Solaire est un producteur d'énergies renouvelables (solaire et biogaz). Nous maîtrisons le développement, le financement, la construction et l'exploitation des centrales. Présents en France, nous sommes également implantés à l'international avec des activités en...


Responsable des Services Techniques H/F

Collectivité de COURTHEZON


MISSION 1 : Planifier, contrôler et rendre compte des activités des équipes placées sous son autorité - 45% • Planifie et contrôle le travail distribué aux équipes placées sous son autorité : opérationnel, embellissement & cadre de vie, logistique, Festivités, assistance à maîtrise d'ouvrage et...


Directrice / Directeur technique en Géotechnique

Stantec Consulting International Ltd

  • FR - Caen

  • October 31, 2024


Vous souhaitez un nouveau défi en géotechnique et recherchez une firme d'ingénierie où vous réaliserez des projets responsables et durables et où les équipes collaborent entre elles tout en favorisant le développement professionnel de chacun? Stantec, qui réunit 31 000 experts œuvrant dans 450...


MANAGER DE PROXIMITE service Gestion des Bénéficiaires F/H

CPAM DE LA COTE D OR

  • FR - Dijon

  • October 28, 2024


MANAGER DE PROXIMITE service Gestion des Bénéficiaires (F/H) Publié depuis 1 semaine • Date limite de candidature 05/11/2024 • CDI • DIJON • 28 371 € par an • NIVEAU 5A • NVHADD99038 CPAM DE LA COTE-D'OR Vous recherchez une mission qui a du sens ? Vous souhaitez travailler dans l'accès aux droits et...


Chargé des contrats de - h/f

Inserm

  • FR - Paris

  • October 31, 2024


Description entreprise : L'Inserm est le seul organisme public de recherche français entièrement dédié à la santé humaine. Son objectif : améliorer la santé de tous par le progrès des connaissances sur le vivant et sur les maladies, l'innovation dans les traitements et la recherche en santé...


Sr. Information Security Officer, Managing Director

State Street

  • FR - Paris

  • October 31, 2024


State Street Bank International GmbH ('SSBI') seeks to recruit a Senior Information Security Officer, Managing Director (Sr. ISO) to improve the overall protection of SSBI, its customers and partners from an evolving and sophisticated threat landscape. The candidate should have a proven track record...


Product Designer / Team Timmi Temps

Lucca


4 ans minimum d'expérience souhaitée sur un poste similaire Bac + 5 Salaire prévu entre 45K€ et 55K€ fixes bruts par an, variable selon l'expérience Marseille Présentiel ou hybride (2-3 jours de télétravail par semaine) Lucca is getting global ! For this job, the level required in English is B1...


SPQD Engineer - CDS Interiors M/F

Alstom


We create smart innovations to meet the mobility challenges of today and tomorrow. We design and manufacture a complete range of transportation systems, from high-speed trains to electric buses and driverless trains, as well as infrastructure, signalling and digital mobility solutions. Joining us...


Une ou un Assistant de service social polyvalent F/H Poste n°I-662

Collectivité européenne d Alsace

  • FR - Grand Est - Grand Est - Saint-Louis

  • October 23, 2024


Sous l'autorité du supérieur hiérarchique, l'Assistant de service social en polyvalence de secteur exerce, dans le cadre de la politique d'action sociale et médico-sociale du département, la fonction de travail social "généraliste" auprès de l'ensemble de la population active d'un secteur...