Information Security Expert

AXA


About AXA

As a world-leading insurance company, we act for human progress by protecting what matters. With 153,000 employees in 54 countries working for 105 million customers, we’ve created a truly dynamic and vibrant community. Inclusion and diversity link closely with our values, and together we’re nurturing a culture of respect, for each other, for our customers and the communities around us. Join AXA and you’ll feel like you belong, are included and can thrive. You’ll be able to shape the way you work and truly grow your potential as you seek out new opportunities, push boundaries and benefit people in critical moments of their lives. This is your chance to build the tomorrow you want. Know you can.

About the entity

AXA is becoming a sustainable tech-led company and at AXA Group Operations we are one of the major catalysts for this transformation.

We set the tone by triggering and empowering the evolution of our insurance business model through technology and innovation, driving its concrete implementation globally at speed, with a high quality of advisory and execution.

We are present across 17 countries with committed, highly qualified teams. We leverage technology, data, sourcing, security and investment allocation in a global way, but also achieve economies of scale and synergies when necessary.

At AXA Group Operations, we want to be recognized in three fields of action:

  • State-of-the-art Data Technology to drive customer experience
  • State-of-the-art Procurement & Sourcing to drive efficiency and better manage risks
  • High-Performing Global Team for stronger partnerships with AXA entities

Job position pitch

The Information Security Lead Expert leads the development and implementation of the end-to-end strategic approach to Information Security.

Where will you be in the organization?

The division

You will join the Group Security division, defining the security standards to be applied by AXA entities, overseeing the overall security posture across the Group and providing centralized services to support entities (Crisis Management, Security Operations Centre, etc.).

Throughout AXA Group, the security community represents composed of 1000 security professionals, working daily to protect our customers, operations, brand and people. To achieve this, we have gathered our three security disciplines: Information Security, Physical Security and Operational Resilience.

Our main missions:

  • Monitor the Security Threat Landscape
  • Define and oversee Security Standards and Strategy implementation across the Group
  • Drive local security objectives with C-Level executive (COO, CIO, CTO, CFO…) of AXA entities
  • Ensure the security of Group Operations as an entity
  • Provide centralized security services and products to AXA entities

AXA Group Security is divided in 4 main blocks :

  • Corporate functions (Group Mandate) : Security Advisory and Standards, Security Governance, Security Risk & Assurance, Security Strategy and Awareness
  • CyberDefense (Group security services and products provider)
  • Group Operations Security (Security of the hosting entity)
  • Corporate Chief Security Officers (Oversight of entities’ security) : Corporate Centre, European Markets, International Markets

About the job

Job purpose

Reporting to the Information Security Executive Manager, this role is accountable for helping build and embed the end-to-end strategic approach to AXA Information Security throughout the Group, including governance and oversight of Information Security activity and the provision of security advisory.

The role is a key member of the Group Information Security Function and may be required to act as deputy to the Executive Manager including some responsibility for budgetary and people management.

The scope of work includes:

  • Overseeing day to day activities of the Group Information Security team
  • Ensuring that Group Information Security goals, targets and deadlines are met
  • Providing expertise, advice and guidance to business leadership and colleagues on matters relating to Information Security to support strategic intent
  • Defining and maintaining for Information Security, management systems, policies, instructions and detailed guidance for AXA
  • Influencing the business agenda
  • Embedding Information Security requirements throughout the AXA Group
  • Embedding a security culture and ensuring security “by design”
  • Supporting the management of group level Information Security threats, incidents and crises
  • Upskilling of security practitioners
  • Driving simplification, innovation, and convergence of security
  • Contributing to information security good practice and support its adoption across the group
  • Delivery is through direct engagement with geographical and functional leadership (CEOs, CIOs, Heads of Professional families, IT functions, Program Management) and the wider Security community.

Main missions

  • Support leadership, governance and oversight of the Group Information Security Function and act as a deputy to the Executive Manager – including budgetary management and people leadership for the Information Security function.
  • Support the Executive Manager to lead the Information Security team and provide oversight of Information Security activity throughout the Group – to ensure an integrated Information Security capability that supports the Group strategic intent.
  • Contribute to the definition of the Security strategy, framework, operating model and capabilities, bringing expert knowledge, skills, experience, best practice and innovation to enhance Information Security throughout the Group.
  • Be a primary Subject Matter Expert with key technical skills and high-level exposure within GO or AXA or key external parts, serving as a global point of contact for Information Security; broads a comprehensive expertise in leading-edge theories, techniques and/or technologies within own function or discipline.
  • Help to influence the business and functional agendas and build internal sponsorship at the top of the organization.
  • Engage with relevant risk management disciplines plus geographic and other functional leadership (e.g. CEOs and Heads of Professional Families plus strategic supply partners) to align information Security to the requirements of the group.
  • Help to design and lead the implementation of governance requirements for Information Security throughout the Group
  • Act as subject matter expert / key point of contact during incidents and crises providing leadership and professional support to the Group Crisis Management Teams and helping to coordinate the Information Security response to multi-entity crises as required.
  • Analyze emerging technology trends. Assess the impact on the business environment and drive the evolution of the framework

Expected skills & experience

We are looking for someone with the following experience and skills:

Required technical competencies BCM

  • Information Security & Cyber Resilience
  • Program Management
  • Stakeholder management
  • Customer needs analysis
  • Third party management
  • Quality management

Required soft skills & behavioral competencies BCM

  • Leadership.
  • Strategic Thinking
  • Problem solving
  • Planning
  • Decision making
  • Coaching and Mentoring
  • Interpersonal skills

Education

  • Appropriate education, leadership & technical training and professional membership for role and seniority.

Certification

  • Current Information Security Certifications

Overall work experience in the field

  • At least 15 years’ experience working in Information Security
  • Experience working within a global environment
  • Consulting and advisory experience preferred
  • Experience managing a team of consultant including budget, people leadership and program execution.

Skills / abilities (Examples)

  • Facilitation, negotiation and conflict resolution skills
  • Possess strong relationship building, communication and presentation skills [written and verbal – English]
  • Be able to prioritize and execute tasks in a high-pressure environment
  • Strong networking skills
  • Team player, but self-motivated, proactive, independent, and responsive
  • Professional and positive approach, diligent with attention to detail
  • People leadership in a multi-cultural environment
  • Customer centricity
  • Result-oriented mindset
  • Fluent in English

What we offer

We bring together the expertise, cultural diversity and creativity of over 8,000 employees worldwide and we’re committed to equal opportunities in all aspects of employment (gender, LGBT+, disabled persons, or people of different origins) and to promoting Diversity & Inclusion by creating a work environment where all employees are treated with dignity and respect, and where individual differences are valued.

Read Full Description

Apply
To help us track our recruitment effort, please indicate in your cover//motivation letter where (jobsinspain.net) you saw this job posting.