Cyber Risk Manager (Second-line Controls) — Union Bancaire Privée

Union Bancaire Privée · Geneva, Switzerland (GE)
Categoria: Altro Contratto: full-time Salario: CHF 68'000 - 103'000

Role overview

## Mission - Operate in a highly regulated banking environment (FINMA, EBA, DORA, etc.) and amid accelerating digital transformation – including the expansion of e-banking and mobile banking services, the Group Risk Department is seeking a senior cybersecurity specialist to carry out second-line control activities. - Independent of first-line operational teams, the role holder contributes to ensuring the effectiveness, consistency, and regulatory compliance of the Bank’s cybersecurity framework.

## Main responsibilities - Execute the second-line control plan across the full cybersecurity perimeter: IAM, PAM, endpoints, cloud, networks, e-banking and mobile banking. - Conduct periodic and thematic controls on security processes and measures implemented by first-line operational teams, to ensure that information security risks are identified, assessed, treated, and reported to relevant stakeholders. - Verify compliance with banking regulatory requirements (e.g., FINMA, EBA, DORA, etc.). - Produce well-documented control reports, issue actionable recommendations, and monitor the progress of remediation plans. - Contribute to maintaining cyber risk indicators (KRI/KPI), and feed reporting to the Head of Cyber Risk Control. - Maintain a regulatory watch specific to the banking sector, and flag impacts on the control framework. - Work collaboratively with Internal audit and Group Security, within a three lines of defense model. - Support first-line teams in understanding control requirements and fostering a cyber risk culture tailored to the banking sector.

## Your Profile - Master’s degree (or equivalent) in Computer Science, Cybersecurity, Information Systems Engineering, or a business school with a specialization in security - Minimum 7 to 12 years of experience in cybersecurity, ideally in a banking institution - Good command of frameworks and working knowledge of FINMA circular on operational resilience, DORA, EBA Guidelines on ICT and Security Risk. - Good understanding of technical architecture (network, cloud, IAM, AD, fraud prevention). - Ability to document findings clearly and communicate them to both technical and non-technical stakeholders - Analytical rigor, autonomy, and a collaborative working style. - Proficiency in French and English, both written and spoken.

Description

## Mission - Operate in a highly regulated banking environment (FINMA, EBA, DORA, etc.) and amid accelerating digital transformation – including the expansion of e-banking and mobile banking services, the Group Risk Department is seeking a senior cybersecurity specialist to carry out second-line control activities. - Independent of first-line operational teams, the role holder contributes to ensuring the effectiveness, consistency, and regulatory compliance of the Bank’s cybersecurity framework.

## Main responsibilities - Execute the second-line control plan across the full cybersecurity perimeter: IAM, PAM, endpoints, cloud, networks, e-banking and mobile banking. - Conduct periodic and thematic controls on security processes and measures implemented by first-line operational teams, to ensure that information security risks are identified, assessed, treated, and reported to relevant stakeholders. - Verify compliance with banking regulatory requirements (e.g., FINMA, EBA, DORA, etc.). - Produce well-documented control reports, issue actionable recommendations, and monitor the progress of remediation plans. - Contribute to maintaining cyber risk indicators (KRI/KPI), and feed reporting to the Head of Cyber Risk Control. - Maintain a regulatory watch specific to the banking sector, and flag impacts on the control framework. - Work collaboratively with Internal audit and Group Security, within a three lines of defense model. - Support first-line teams in understanding control requirements and fostering a cyber risk culture tailored to the banking sector.

## Your Profile - Master’s degree (or equivalent) in Computer Science, Cybersecurity, Information Systems Engineering, or a business school with a specialization in security - Minimum 7 to 12 years of experience in cybersecurity, ideally in a banking institution - Good command of frameworks and working knowledge of FINMA circular on operational resilience, DORA, EBA Guidelines on ICT and Security Risk. - Good understanding of technical architecture (network, cloud, IAM, AD, fraud prevention). - Ability to document findings clearly and communicate them to both technical and non-technical stakeholders - Analytical rigor, autonomy, and a collaborative working style. - Proficiency in French and English, both written and spoken.

Apply now
Logo Union Bancaire Privée
Company
Union Bancaire Privée · Geneva, Switzerland
Frontaliere Ticino discovered this opportunity through company monitoring.

All Union Bancaire Privée jobs in Geneva, Switzerland →

Information for cross-border workers

The Cyber Risk Manager (Second-line Controls) role offered by Union Bancaire Privée is based in Geneva, Switzerland, Canton of Genève, in the administration sector.

Working as a cross-border employee in the Canton of Genève requires a G Permit, renewed annually. The Canton applies withholding tax at variable rates on gross income; since 2024 the Italy-Switzerland New Tax Agreement introduces concurrent taxation.

Swiss social contributions include AVS (5.3%), unemployment insurance (1.1%) and LPP (occupational pension). Use our free tax simulator to estimate the net salary for Cyber Risk Manager (Second-line Controls) in administration and compare the cost of living between Switzerland and Italy.

Frequently asked questions

What is the net salary for a cross-border worker in the Canton of Genève?
Net salary depends on gross income, marital status and number of children. In the Canton of Genève, withholding tax ranges from about 2% to 15%. In the administration sector, use our simulator for a tailored figure.
Do I need Swiss LAMal health insurance for the Cyber Risk Manager (Second-line Controls) role in Genève?
New cross-border workers since 2024 must enrol in Swiss LAMal within 3 months of starting. Premiums vary by canton, model and deductible. Compare with our LAMal comparator.