Overview
Join to apply for the Information Security Lead role at AXA Group Operations.
Context and AXA Group Security
Throughout AXA, the security community represents 1000 security professionals, working daily to protect our employees, customers, operations and brand. Our operating model gathers the three security disciplines Information Security, Operational Resilience and Physical Security & Safety. Our security mission is to ensure that AXA is safe, secure and resilient.
AXA Group Security, as part of AXA GO, defines the security strategy, standards and provides assurance to the Group on the security maturity of all entities across AXA. In its role, it also supports our professional family in entities in maintaining their security posture and respond and coordinate responses to crisis.
This is accomplished through four strategic levers :
Safe : It is about our people, have them ready to face security challenges including third parties, health professionals
Secure : Secure the business of today and tomorrow, by increasing security effectiveness on a risk-based approach for all entities.
Resilient : Enhance anticipation, detection and reaction capabilities in case of events & Security by design
Simple : Simplify, converge and automate our services and activities
To support our business strategy and Security transformation, AXA has created an Advisory and Standards function to support effective implementation of security arrangements throughout the AXA Group. Our vision for the Advisory and Standards function is to ‘create a body of security experts that can provide subject matter expertise, advice, leadership and guidance where it is needed most, to reduce risk, accelerate security transformation and ensure the effective implementation of security arrangements throughout the Group.”
Team members will lead and support the definition of the target Information Security management systems, frameworks, policies, instructions and guidance.
Reporting to the Information Security Executive Manager, this role is accountable for helping build and embed the end-to-end strategic approach to AXA Information Security throughout the Group, including governance and oversight of Information Security activity and the provision of security advisory. The role is a key member of the Group Information Security Function and may be required to act as deputy to the Executive Manager including some responsibility for budgetary and people management.
The scope of work includes :
Overseeing day to day activities of the Group Information Security team
Ensuring that Group Information Security goals, targets and deadlines are met
Providing expertise, advice and guidance to business leadership and colleagues on matters relating to Information Security to support strategic intent
Defining and maintaining for Information Security, management systems, policies, instructions and detailed guidance for AXA
Influencing the business agenda
Embedding Information Security requirements throughout the AXA Group
Embedding a security culture and ensuring security "by design"
Supporting the management of group level Information Security threats, incidents and crises
Upskilling of security practitioners
Driving simplification, innovation, and convergence of security
Contributing to information security good practice and support its adoption across the group
Delivery is through direct engagement with geographical and functional leadership (CEOs, CIOs, Heads of Professional families, IT functions, Program Management) and the wider Security community
Key responsibilities – Information Security
Support leadership, governance and oversight of the Group Information Security Function and act as a deputy to the Executive Manager - including budgetary management and people leadership for the Information Security function.
Support the Executive Manager to lead the Information Security team and provide oversight of Information Security activity throughout the Group - to ensure an integrated Information Security capability that supports the Group strategic intent.
Contribute to the definition of the Security strategy, framework, operating model and capabilities, bringing expert knowledge, skills, experience, best practice and innovation to enhance Information Security throughout the Group.
Be a primary Subject Matter Expert with key technical skills and high-level exposure within GO or AXA or key external parts, serving as a global point of contact for Information Security; broad a comprehensive expertise in leading-edge theories, techniques and / or technologies within own function or discipline.
Help to influence the business and functional agendas and build internal sponsorship at the top of the organization.
Engage with relevant risk management disciplines plus geographic and other functional leadership (e.g. CEOs and Heads of Professional Families plus strategic supply partners) to align information Security to the requirements of the group.
Help to design and lead the implementation of governance requirements for Information Security throughout the Group
Act as subject matter expert / key point of contact during incidents and crises providing leadership and professional support to the Group Crisis Management Teams and helping to coordinate the Information Security response to multi-entity crises as required.
Analyze emerging technology trends. Assess the impact on the business environment and drive the evolution of the framework.
Required technical competencies
Information Security & Cyber Resilience
Program Management
Customer needs analysis
Third party management
Quality management
Required soft skills & behavioural competencies
Leadership.
Strategic Thinking
Problem solving
Planning
Decision making
Coaching and Mentoring
Your Profile
Education
Appropriate education, leadership & technical training and professional membership for role and seniority.
Certification
Current Information Security Certifications
Overall work experience
At least 15 years’ experience working in Information Security
Experience working within a global environment
Consulting and advisory experience preferred
Experience managing a team of consultants including budget, people leadership and program execution.
Skills / abilities Facilitation, negotiation and conflict resolution skills
Possess strong relationship building, communication and presentation skills (written and verbal – English) Be able to prioritize and execute tasks in a high-pressure environment
Strong networking skills
Team player, but self-motivated, proactive, independent, and responsive
Professional and positive approach, diligent with attention to detail
People leadership in a multi-cultural environment
Customer centricity
Result-oriented mindset
Seniority level
Mid-Senior level
Employment type
Full-time
Job function
Information Technology
Industries
IT Services and IT Consulting
J-18808-Ljbffr
#J-18808-Ljbffr
Information Security • Madrid, Madrid, SPAIN