Regístrate para acceder a todas las funciones de nuestro servicio
  • Búsqueda de ofertas de trabajo
  • Favoritas
  • Crear CV
    Nuevo
  • Salario
  • Alertas de empleo

Senior Security Risk & Vendor Assurance Lead

AXA Group

About AXA

As a world-leading insurance company, we act for human progress by protecting what matters. With 153,000 employees in 54 countries working for 105 million customers, we’ve created a truly dynamic and vibrant community. Inclusion and diversity link closely with our values, and together we’re nurturing a culture of respect, for each other, for our customers and the communities around us. Join AXA and you’ll feel like you belong, are included and can thrive. You’ll be able to shape the way you work and truly grow your potential as you seek out new opportunities, push boundaries and benefit people in critical moments of their lives. This is your chance to build the tomorrow you want. Know you can.

About the entity

AXA is becoming a sustainable tech-led company and at AXA Group Operations we are one of the major catalysts for this transformation.

We set the tone by triggering and empowering the evolution of our insurance business model through technology and innovation, driving its concrete implementation globally at speed, with a high quality of advisory and execution.

We are present across 17 countries with committed, highly qualified teams. We leverage technology, data, sourcing, security and investment allocation in a global way, but also achieve economies of scale and synergies when necessary.

At AXA Group Operations, we want to be recognized in three fields of action:

  • State-of-the-art Data Technology to drive customer experience
  • State-of-the-art Procurement & Sourcing to drive efficiency and better manage risks
  • High-Performing Global Team for stronger partnerships with AXA entities

Where will you be in the organization?

The division

You will join the Group Security division, defining the security standards to be applied by AXA entities, overseeing the overall security posture across the Group and providing centralized services to support entities (Crisis Management, Security Operations Centre, etc.).

Throughout AXA Group, the security community represents composed of 1000 security professionals, working daily to protect our customers, operations, brand and people. To achieve this, we have gathered our three security disciplines: Information Security, Physical Security and Operational Resilience.

Our main missions:

  • Monitor the Security Threat Landscape
  • Define and oversee Security Standards and Strategy implementation across the Group
  • Drive local security objectives with C-Level executive (COO, CIO, CTO, CFO…) of AXA entities
  • Ensure the security of Group Operations as an entity
  • Provide centralized security services and products to AXA entities

AXA Group Security is divided in 4 main blocks :

  • Corporate functions (Group Mandate) : Security Advisory and Standards , Security Governance , Security Risk & Assurance , Security Strategy and Awareness
  • CyberDefense (Group security services and products provider )
  • Group Operations Security (Security of the hosting entity )
  • Corporate Chief Security Officers (Oversight of entities’ security ) : Corporate Centre , European Markets , International Markets

The department / team

The Security Risk team at AXA is dedicated to identifying, monitoring, and prioritizing key security risks across three main disciplines: Information Security, Operational Resilience, and Physical Security. These areas are crucial to AXA's goal of securing the customer journey and providing resilient services. Over the past few years, the focus on embedding risk and related data vectors has been strengthened, making them central to an effective security strategy and program that can measure and quantify risk. The team also manages Vendor Security.

As a member of this dynamic and collaborative global team, you will work closely with Group executives, security management teams, security experts, and Chief Security Officers from various operating companies worldwide. The team is responsible for both the security risk framework and the vendor security risk framework.

About the job

Main missions

  • Defining the requirements and capabilities for security risk management and vendor security risk.
  • Supporting the reduction and prioritization of security activities.
  • Monitoring key security risks for the Group and communicating them to relevant parties.
  • Developing and sustaining Security Risk Management maturity and risk awareness.
  • Acting as a trusted advisor to support business decisions driven by risk.

Our goals are to :

  • Design, maintain, and improve a converged Security Risk framework and associated methodologies/tools, including entity-based, asset-based, and vendor security risk assessments.
  • Provide training and support to our entities in implementing and improving their local Security Risk Management Framework.
  • Determine the Group's security risk posture to support strategic initiatives on risk reduction and prioritization.
  • Continuously improve Vendor Security, Information Security risk management, and Data classification instructions and related frameworks.
  • Identify and assess key transversal risks for the Group.
  • Offer subject matter expertise and advisory on security risk-related topics.
  • Foster a risk-aware culture across our entities through our Security Risk Community.

You will work transversally daily, with reinforced interaction and co-construction as a guiding principle.

Your stakeholders

  • Internally : You will engage with AXA Group Risk & Internal Audit, IT Leadership & Business Leadership, Group Compliance & Legal, IT Operations & Business Operations, as well as Local/Regional CSO and Security team members.
  • Externally : You are expected to interact with external third parties.

Your Certifications

Security and/or Information Technology industry certifications: Preferred certifications include ISO 27001 (Implementer/Auditor), CISSP, CRISC, CISA, and CISM. Other relevant certifications are CEH (Certified Ethical Hacker), CCSP (Certified Cloud Security Professional), and GIAC (Global Information Assurance Certification),

Expected skills & experience

We are looking for someone with the following experience and skills:

Education

-Bachelor degree in Computer Science, Engineering, or related field

-An MSc Information Security and Operational Risk Management is strongly preferred

Certifications

-Information Security and /or Information Technology industry certifications in good standing (CRISC, CISSP, CISM, ISO27005 Certified Risk Manager, ISO27001 Lead Auditor or equivalent) strongly preferred

-CBCI & Physical Security certifications are desirable

Overall work experience in the field

-Experience in articulating security risks in business language and advising on the appropriate risk management strategy > 7 years

-Experience in Information Security field > 5 years

-Experience in Operational Resilience > 2 years

-Experience in Physical Security / Health & Safety > 2 years

Skills / abilities

-Ability to function effectively in a matrix structure

-Ability to manage uncertainty

-Operate adequately at senior and executive management level

-Strong facilitation, negotiation and conflict resolution skills

-Proficient risk assessment, interpretation and analytical skills

-Strong networking skills

-Team player

- Fluent in English

What we offer

We bring together the expertise, cultural diversity and creativity of over 8,000 employees worldwide and we’re committed to equal opportunities in all aspects of employment (gender, LGBT+, disabled persons, or people of different origins) and to promoting Diversity & Inclusion by creating a work environment where all employees are treated with dignity and respect, and where individual differences are valued.

#J-18808-Ljbffr

Oferta de empleo publicada 2 días atrás
Ofertas similares que pueden interesarteSegún la Senior Security Risk & Vendor Assurance Lead en Barcelona
  •  ...Asthe ProductSecurity Lead of Materialise Software...  ...accountable for the overall security posture and regulatory...  ...expectations, and risk into clear decisions, priorities...  ...intent into secure designs CISO to align...  ...decisions Credibility with senior engineering and product... 
    Senior
    Tiempo completo
    Contrato
    Trabajo híbrido

    Materialise NV

    Barcelona
    3 días atrás
  •  ...one of Europe’s safest and most secure platforms that powers modern...  ...go! Your mission As the Senior Product Manager - Web3 for Bitpanda...  ..., design, compliance, legal, risk, security, operations,...  ...crypto, and business strategy. Lead the development of a best‑in‑... 
    Senior
    Trabajar en la oficina
    Remoto
    Trabajo híbrido
    Trabajo por turnos

    Bitpanda GmbH

    Barcelona
    3 días atrás
  •  ...R28883As a global leader in cybersecurity, CrowdStrike...  ...redefined modern security with the world’s...  ..., guest readiness, vendor coordination,...  ...onsite environment.Lead center readiness and...  ...operational gaps, risks, and friction points...  ...coordinate across senior stakeholders.* Proven... 
    Senior
    Trabajar en la oficina
    Remoto

    CrowdStrike Holdings, Inc.

    Barcelona
    1 día atrás
  •  ...The role of Security Manager Azure will help...  ...facing teams. Lead security risk assessments,...  ...execution. Lead vendor risk programs that...  ...governance alignment and secure design....  ...Produce structured assurance reporting for management...  ...reports for senior stakeholders.... 
    Senior
    Remoto
    Horario flexible

    Giesecke & Devrient GB Ltd.

    Barcelona
    2 días atrás
  •  ...Ipsen Group is seeking a Local Quality Assurance Manager in Barcelona to oversee quality assurance responsibilities for its Iberian operations...  ...discipline and experience in quality management, auditing, and risk assessment. Opportunities for growth and a supportive work... 
    Ofertas de empleo recomendadas

    Ipsen Group

    Barcelona
    2 días atrás
  •  ...AgileEngine, LLC. is seeking a Senior Product Owner to lead the strategic vision and prioritize backlogs for internal security tools within a large-scale enterprise security program. The ideal candidate will have over 5 years of experience in technical product management... 
    Senior

    AgileEngine, LLC.

    Barcelona
    3 días atrás
  •  ...our clients home and abroad, securing their lasting success and financial...  .... Join our dynamic Risk and Supervisory team and become...  ...and report risk information to senior management, making you an essential...  ...our ERGs,...  Financially secure: We support you to meet... 
    Senior
    Tiempo completo
    Horario flexible
    Lunes a viernes
    Barcelona
    1 día atrás
  •  ...Clarivate Analytics is looking for a Risk Manager based in Barcelona, Spain who will lead the enhancement of the Business Continuity and Disaster Recovery program...  ...for the executive team, and collaborating with senior leaders across multiple functions. The role allows hybrid... 
    Senior
    Tiempo completo
    Trabajar en la oficina
    Trabajo híbrido

    Clarivate Analytics

    Barcelona
    1 día atrás
  •  ...AgileEngine, LLC. is seeking a Senior Data Scientist in Barcelona, Spain. This role will focus on developing predictive models and analytics for risk-based vulnerability prioritization within a large-scale security program. Candidates should have 6+ years of data science... 
    Senior
    Trabajar en la oficina
    Remoto
    Horario flexible

    AgileEngine, LLC.

    Barcelona
    3 días atrás
  •  ...States work together to ensure that small business owners can be successful doing what they love. Your Team You’ll join Credit Risk Analytics, a high-impact squad at the core of SumUp’s Lending strategy — a business line on a very ambitious growth track. This... 
    Senior
    Trabajar en la oficina

    Atlas Metrics

    Barcelona
    1 día atrás
  •  ...accessible for you. The Security Operations team is...  ...Responsibilities Ensure stable, secure, and compliant...  ...exceptions and risk acceptance. Collaborate...  ...gaps are identified. Lead crisis and incident management...  ...across technical and senior leadership levels;... 
    Senior

    Novartis Farmacéutica

    Barcelona
    1 día atrás
  •  ...with no long-term contracts, security deposits, broker fees, moving/...  ...ready to join us? Role As a Senior Guest Relations, you will own...  ...and proactively addressing risks. Use data and internal dashboards...  ...operational efficiency. Lead post-case reviews and... 
    Senior
    Trabajar en la oficina

    Ukio

    Barcelona
    1 día atrás
  •  ...Infrastructure, Architecture, and Security teams, challenge assumptions,...  ...stakeholders  Identify risks early and proactively manage dependencies...  ...& Communication Manages senior stakeholders, facilitates...  ...budget because a fit body leads to a fit mind A flexible working... 
    Senior
    Tiempo completo
    Horario flexible

    Visium SA

    Barcelona
    15 días atrás
  •  ...Overview We are seeking a Risk Manager to support, maintain and where possible, improve...  ...the company. In this role, you will lead the Business Continuity & Disaster Recovery...  ...world. In addition, you will be working with senior leaders across different functions and segments... 
    Senior
    Tiempo completo
    Empleo permanente
    Trabajar en la oficina
    Remoto
    Trabajo híbrido
    Lunes a viernes
    2 días a la semana

    Clarivate Analytics

    Barcelona
    1 día atrás
  • 450 €/mensuales

     ...care businesses on Rover with the tools and security of a global company to back them....  ...serve as the strategic process & technology lead of our localization ecosystem. You will...  ...connectors, automating content routing based on risk), aiming directly at cost reduction and... 
    Senior
    Trabajar en la oficina
    Remoto
    Turno de noche
    Horario flexible

    A Place for Rover, Inc.

    Barcelona
    13 horas atrás
  • de 46100 a 60000 €/año

     ...ensuring access to privacy, security, and freedom online. Our journey...  ...Proton Mail, the largest secure email service globally, and...  ...private communications in high-risk situations. Proton is a...  ...strong background in Quality Assurance and good technical skills? You... 
    Senior
    Práctica
    Trabajar en la oficina
    Desde casa
    Horario flexible

    Proton

    Barcelona
    1 día atrás
  •  ...sales and prospecting teams operate. Our cutting‑edge AI‑driven lead generation technology empowers sales teams to focus on what truly...  ...high product quality, maturity, and scalability Identify risks, remove blockers, and keep the team moving Discovery & Research... 
    Senior
    Trabajar en la oficina
    Desde casa

    Enginy

    Barcelona
    3 días atrás
  •  ...manage their cloud WAF stack and networking infrastructure. You will work in a dynamic fintech environment, ensuring high levels of security and compliance while driving automation and observability. The ideal candidate has hands-on experience with WAFs, strong... 
    Senior
    Horario flexible

    Dlocal Corp

    Barcelona
    2 días atrás
  •  ...Resilience Third Party Risk Management Expert...  ...properly documented. Lead the implementation...  ...TPRM/Outsourcing Assurance Reports for AZ Technology senior management and key Allianz...  ...governance, vendor/contract management,...  ...centers, networks, and security, to application platforms... 
    Senior
    Contrato
    Trabajar en la oficina
    Remoto
    Trabajo híbrido
    Horario flexible

    Allianz Technology SE Spain Branch

    Barcelona
    3 días atrás
  • Devoteam Alegri GmbH cherche un Consultant SAP SD OTC Senior basé à Barcelone. Vous serez responsable de l'analyse, de la conception et du déploiement des solutions SAP SD, correspondant aux besoins métiers. Le candidat idéal possède de l'expérience en gestion des processus... 
    Senior

    Devoteam Alegri GmbH

    Barcelona
    3 días atrás
  •  ...infrastructure domains, regional teams, and service providers Proactive identification and resolution of service risks and operational challenges Strong vendor performance management, ensuring delivery against agreed commitments Continuous improvement of... 
    Senior

    208002 Fresenius Kabi España S.A.U.

    Barcelona
    3 días atrás
  •  ...Manager, Protective Security Relocation Support...  ...control, surveillance, risk & compliance) with senior IT project/program...  ...Procurement, and external vendors. About the Role...  ...and local partners; Lead global and regional rollouts...  ...organization ~ Vendor & Financial... 
    Senior
    Trabajar en la oficina
    Trabajo híbrido

    Information Technology

    Barcelona
    21 días atrás
  •  ...Materialise NV, located in Barcelona, is seeking a Product Security Lead responsible for overseeing the security posture and regulatory compliance of our software portfolio. This role involves translating complex regulations into clear decisions, enabling teams to deliver... 

    Materialise NV

    Barcelona
    3 días atrás
  •  ...ABOUT THE ROLE We are looking for a Senior Product Owner to own the strategic vision...  ...and backlog prioritization for internal security tools, developer portals, and platform artifacts...  ...efforts directly reduce systemic risk Drive the adoption framework for Business... 
    Senior
    Trabajar en la oficina
    Remoto

    AgileEngine, LLC.

    Barcelona
    3 días atrás
  •  ...tech company based in Barcelona is seeking a Senior Product Operations Manager to enhance operational...  ...in its Payments group. This role involves leading initiatives to optimize transaction processes, managing complex risks, and collaborating with stakeholders. The ideal... 
    Senior

    Perk

    Barcelona
    3 días atrás
  •  ...Tamarind Intelligence busca un Ingeniero Senior de Software de Seguridad para liderar el diseño e implementación de funciones de seguridad. El candidato ideal debe tener al menos 7 años de experiencia y un título en un campo relevante. El rol implica colaborar con... 
    Senior
    Trabajo híbrido
    Horario flexible
    Trabajo por turnos

    Tamarind Intelligence

    Barcelona
    13 horas atrás
  •  ...Traveltechessentialist in Barcelona is seeking a Senior DevOps Engineer to manage their platform infrastructure. You will play a crucial role in optimizing development processes and ensuring the security of the company's data and infrastructure. Ideal candidates should... 
    Senior
    Trabajo híbrido

    Traveltechessentialist

    Barcelona
    3 días atrás
  •  ...markets. Coordinate with support Team & Vendor to ensure SLAs are duly respected. Commercial...  ...delivery teams and vendor squads. Lead and teach best practices to platform users...  ...release progress, and value delivery to senior commercial and digital stakeholders. Monitor... 
    Senior

    (1463) Opella Healthcare Spain, S.L.

    Barcelona
    2 días atrás
  •  ...We are working with a leading European specialty pharmaceutical...  ...across all IT domains (Security, Systems, Functional...  ...based on value, risk, capacity and strategic...  ...internal IT teams, external vendors and business...  ...Experience interacting with senior stakeholders and executive... 
    Senior
    Trabajo híbrido

    actual-talent.com - Jobboard

    Barcelona
    3 días atrás
  •  ...change patients’ lives? In this role, you will lead and deliver statistical programming that...  ...and effectiveness within the function. Risk Management: Identify, manage, and...  ...priorities and resolve issues rapidly. Vendor Partnership: Collaborate with contract programming... 
    Senior
    Contrato
    3 días a la semana

    AstraZeneca GmbH

    Barcelona
    2 días atrás

¿Quieres recibir más ofertas?

Suscríbete y recibe ofertas similares para Senior Security Risk & Vendor Assurance Lead. ¡Entérate antes que nadie!