Company description:
Pictet is an investment-led service company, offering wealth management, asset management and related services. We do not engage in investment banking, nor do we extend commercial loans. We are a partnership of seven owner managers and our principles of succession and transmission of ownership have remained unchanged since foundation in 1805. With more than CHF 509 billion in assets under management or custody at 31 December 2017, Pictet is today one of the leading Europe-based independent wealth and asset managers.
Headquartered in Geneva, Switzerland and founded there, Pictet today employs more than 4,200 people. It has 27 offices in: Amsterdam, Barcelona, Basel, Brussels, Dubai, Frankfurt, Geneva, Hong Kong, Lausanne, London, Luxembourg, Madrid, Milan, Montreal, Munich, Nassau, Osaka, Paris, Rome, Singapore, Stuttgart, Taipei, Tel Aviv, Tokyo, Turin, Verona and Zurich.
Job description:
As part of the Group Information Security team of Bank Pictet & Cie (Europe) AG (BPAG) in Frankfurt, you will report to the Head of Third-Party & Information Security in the second line of defence. You will identify and masteries risks and threats relative to information security at BPAG, perform risk analyses and ensure information security norms and regulations are complied with throughout all BPAG projects.
Your role
- Define, implement and maintain risk analyses pertaining to information security and data processing.
- Assess tech and information security internal control systems (control testing).
- Prepare IT/information security risk reporting for management. Support and drive security aspects of Group-level projects.
- Conduct thematic reviews on tech- and information system-related topics in collaboration with the Group Information Security team.
- Conduct forensics investigations in case of incidents.
- Take part in information security awareness campaigns for BPAG employees.
- Carry out a regulatory watch on information security. Track vulnerabilities and dependencies and identify root causes.
- Provide support in maintaining strong cyber protection across all business lines.
- Ensure security technologies are implemented and incorporate feedback from branches.
- Staying on top of all changes and activities regarding application management.
Profile description:
Your profile
- University degree in information technology and/or information security.
- Extensive experience in cyber security and information security, ideally some experience in risk management, audit, security operations and/or security assessment.
- Excellent knowledge of the information security legal and regulatory framework.
- Excellent knowledge of the data protection legal and regulatory framework.
- Ideally, possess knowledge of the second line of defence function related to cyber security.
- Fluent in English.
- As part of a small team, the ideal candidate will be a strong team player with a problem-solving mindset. You will be precise, trustworthy, and reliable with sharp analytical skills as well as be able to synthesize complex ideas and concepts.
We offer:
Flexible and modern ways of working.
As a responsible and supportive employer, we promote the well-being of our employees through a set of flexible working arrangements, ranging from a work-from-home policy for eligible functions to opportunities for annualised part-time leave and extended parental leave.