CyberSecurity Frontline Risiko- und Kontrollmanager — Union Bancaire Privée

CHF 83'500 - 126'500
Union Bancaire Privée · Geneva, Switzerland (GE)
Categoria: Altro Contratto: full-time Salario: CHF 83'500 - 126'500
Jetzt bewerben
Ort
Geneva, Switzerland
Vertrag
full-time
Veröffentlicht
vor 43 Tagen
LohnCHF 83'500 - 126'500

Rollenüberblick

Mission Lead and strengthen UBP’s cybersecurity first line of defence by overseeing Security Risk & Governance and Vulnerability Management.

Establish, maintain, and evolve a robust, transparent control framework aligned to global banking regulations (FINMA, EU, UK, Hong Kong, Singapore).

Partner with Technology, Business, Risk, and Compliance stakeholders to proactively manage cyber risks, ensure regulatory adherence, and safeguard UBP’s clients and assets.

Hauptaufgaben

  • Main responsibilities Governance & Risk Management
  • Own and evolve the cybersecurity risk management framework, policies, standards, and security controls catalogue for first line of defence.
  • Drive risk identification, assessment, and ensure that adequate and achievable treatment plans are defined and implemented in effective timescales.
  • Maintain risk registers and key risk indicators (KRIs).
  • Ensure discrete risks are clearly identified, challenged and catalogued without duplication or unnecessary overlap.
  • Ensure alignment with group risk appetite, regulatory expectations, and industry best practices (ISF, NIST CSF, ISO/IEC 27001/27005). Vulnerability Management

Wichtige Anforderungen

  • Experienced cybersecurity risk leader with deep first line of defense experience in financial services.
  • Strong knowledge of regulatory environments across Switzerland (FINMA), EU, UK, Hong Kong, and Singapore, with proven ability to operationalize requirements.
  • Strategic thinker with hands-on rigor—able to sustain current frameworks while maturing them for scalability and transparency.
  • Influential communicator and collaborative partner comfortable engaging senior executives and guiding junior staff. Education
  • Bachelor’s or master’s degree in information security, Computer Science, Engineering, Risk Management, or a related field.
  • Relevant certifications preferred: CISSP, CISM, CRISC, ISO 27001 Lead Implementer/Auditor, CEH, or equivalent. Experience Technical skills
  • 8–12+ years in cybersecurity with significant exposure to first line risk and control management in a regulated bank. Proven track record in:
  • Designing and operating cyber risk and control frameworks (policies, standards, KRIs/KPIs, control testing).
  • Leading enterprise vulnerability management (tools, processes, SLAs, metrics, remediation governance).
  • Regulatory engagement, audit response, and evidence management.
  • Cross-border regulatory alignment (FINMA, EU/DORA, UK PRA/FCA, HKMA, MAS). Practical familiarity with:
  • Frameworks/standards: NIST CSF, NIST 800-53, ISO/IEC 27001/27002/27005, OWASP, CIS Controls, MITRE ATT .

Bewerbungsprozess

  • Lead enterprise vulnerability management strategy and operations (infrastructure, applications, cloud, third parties).
  • Oversee vulnerability scanning, assessment, risk-based prioritisation, and timely remediation in line with SLAs.
  • Partner with Infrastructure, DevSecOps, and application owners to embed secure-by-design principles and shift-left controls.
  • Report on exposure, trends, and risk posture to senior management and risk committees. Regulatory Compliance & Audit Support
  • Interpret and operationalize cyber requirements across FINMA, EU (including DORA/NIS2 where applicable), UK (PRA/FCA), Hong Kong (HKMA), and Singapore (MAS).
  • Prepare evidence and responses for internal/external audits, regulatory exams, and board-level reporting.
  • Maintain control mapping to regulatory frameworks; ensure continuous readiness and closure of findings.
  • Manage and mentor a small team; build capabilities and career growth for junior staff.

Weitere Details

  • Ensure alignment with group risk appetite, regulatory expectations, and industry best practices (ISF, NIST CSF, ISO/IEC 27001/27005). Vulnerability Management
  • Report on exposure, trends, and risk posture to senior management and risk committees. Regulatory Compliance & Audit Support Leadership & Stakeholder Management
  • Influential communicator and collaborative partner comfortable engaging senior executives and guiding junior staff.
  • Relevant certifications preferred: CISSP, CISM, CRISC, ISO 27001 Lead Implementer/Auditor, CEH, or equivalent. Experience Technical skills
  • 8–12+ years in cybersecurity with significant exposure to first line risk and control management in a regulated bank. Proven track record in:
  • Cross-border regulatory alignment (FINMA, EU/DORA, UK PRA/FCA, HKMA, MAS). Practical familiarity with:
  • Reporting and metrics for executive forums and risk committees.
  • French - strong advantage.
  • Integrity: high professional ethics and commitment to client and bank protection.

Notizen und Originalinhalt

  • Ensure alignment with group risk appetite, regulatory expectations, and industry best practices (ISF, NIST CSF, ISO/IEC 27001/27005).
  • Vulnerability Management
  • Report on exposure, trends, and risk posture to senior management and risk committees.
  • Regulatory Compliance & Audit Support
  • Leadership & Stakeholder Management
  • Your Profile
  • Relevant certifications preferred: CISSP, CISM, CRISC, ISO 27001 Lead Implementer/Auditor, CEH, or equivalent.
  • Experience Technical skills
  • 8–12+ years in cybersecurity with significant exposure to first line risk and control management in a regulated bank.
  • Proven track record in:
Jetzt bewerben

Fragen zu dieser Stellenanzeige

Welches Gehalt bietet Union Bancaire Privée für diese Stelle?

Union Bancaire Privée gibt CHF 83'500 - 126'500 brutto pro Jahr für diese Position in Geneva, Switzerland an. Dies ist das im Original-Inserat veröffentlichte Gehalt (oder, falls der Arbeitgeber keinen Betrag nennt, eine realistische Schätzung für Rolle und Branche) — der Rechner auf dieser Seite berechnet daraus Ihr tatsächliches Netto nach Grenzgänger-Steuer und Sozialabgaben.

Ist das eine Vollzeitstelle, und welchen Vertragstyp bietet Union Bancaire Privée?

Diese Stelle ist eine Vollzeit-Position. Der hier angezeigte Vertragstyp stammt direkt aus dem Original-Inserat des Arbeitgebers; klären Sie genaue Arbeitszeiten, Kündigungsfrist und Probezeit während des Bewerbungsprozesses mit Union Bancaire Privée, da diese Details auch innerhalb derselben Vertragskategorie variieren können.

Brauche ich eine Grenzgänger-Bewilligung für eine Stelle im Kanton Genf?

EU/EFTA-Bürger mit Wohnsitz in der Grenzzone des an den Kanton Genf angrenzenden Landes können eine G-Bewilligung beantragen; der Schweizer Arbeitgeber reicht sie nach Vertragsunterzeichnung beim Migrationsamt dieses Kantons ein. Grenzzonen-Regeln und Bearbeitungszeiten variieren je nach Nachbarland und Kanton — klären Sie die Details mit dem Migrationsamt des Kantons Genf oder mit HR während der Bewerbung.

Wie bewerbe ich mich für diese Stelle bei Union Bancaire Privée?

Nutzen Sie die Schaltfläche "Jetzt bewerben" auf dieser Seite — sie führt direkt zum Original-Inserat von Union Bancaire Privée unter iaadtu.fa.ocs.oraclecloud.eu, sodass Ihre Bewerbung direkt im Bewerbermanagementsystem des Arbeitgebers landet. Frontaliere Ticino sammelt oder leitet keine Bewerbungen selbst weiter.

Logo Union Bancaire Privée
Unternehmen
Union Bancaire Privée · Geneva, Switzerland
Frontaliere Ticino hat diese Möglichkeit im Unternehmensmonitoring entdeckt.

Alle Union Bancaire Privée Stellen in Geneva, Switzerland →

Ähnliche Stellen entdecken

Sie stellen ein? Veröffentlichen Sie Ihre Stellenanzeige

Erreichen Sie jede Woche Tausende Grenzgänger und lokale Kandidaten: hervorgehobene Anzeige, eigene SEO-Seite und Newsletter-Versand inklusive.

Anzeige veröffentlichen →