XL Catlin
Job Description – Information Security Assurance Manager ()
Job Description
Information Security Assurance Manager ( Job Number: )
DISCOVER your opportunity
Information Security Assurance Manager London, United Kingdom
To support our business strategy and digital transformation, AXA XL is building a new Information Security Practice to ensure a coordinated response to the increasing cyber security threat, enabling risk decisions to be made consistently across the organization and establishing sustainable security capabilities are integrated with the business. Our vision for Information Security is to ‘protect our stakeholders by securing our information assets, managing our cyber risk, and enabling business strategies in an efficient and effective way, fully supported by executive leadership, and underpinned by all AXA XL employees.
In this role, you will be part of the AXA XL Information Security Assurance team, responsible for conducting assurance to support the business on identifying the security posture and risks.
DISCOVERyour opportunity
What will your essential responsibilities include?
Provide assurance over effectiveness of Information Security controls across AXA entities and build the consolidated picture to AXA XL executive management. Also support findings resolution or escalation.
Progressively expand the area of expertise and assurance frameworks and methodologies.
Contribute to scoping and scheduling of engagements with the business and manage any issues or conflicts
Contribute to the definition of the AXA XL Security assurance test strategy and approach to ensure AXA XL goals are tracked and met
Lead assurance engagements end to end
Contribute to assure the quality of the assurance testing services provided by vendors or internal teams
Liaise with Group Security Assurance teams and ensure alignment with Group assurance methodologies and frameworks.
You will report to (Head of Information Security Assurance).
We’re looking for someone who has these abilities and skills:
o Understands a broad technology landscape and what it may look like in the future
o Technical awareness of security concerns and focus areas when reviewing design documentation
o Knowledge of architecture or offensive security roles (Pen test or Red team)
o Can translate technical issues to business risks
Problem solving: Recommends solutions relevant to the complexity, scope, risk, and magnitude of problems impacting the service level
o Have excellent communication skills with an ability to work effectively with senior management and be able to explain complex matters succinctly and in plain language
o Takes calculated risks in decision-making & seeks inputs from the team / stakeholders
o Creates mechanisms to recognize individual/group contribution & achievements
o Can mentor other team members or service providers
Decision making:
o Advises on decisions regarding strategy, policy, and structures
o Quick to assimilate and integrate new information for informed decision making
o Monitor changes in the operating environment, quick to act upon potential opportunities.
o Able to weigh things up quickly and take the initiative within limits of authority.
Interpersonal skills:
o Assertiveness, empathy
Qualifications / Experience – Must Have:
o Bachelor’s degree in information security, computer science or equivalent
o Professional certification in Information Security (e.g., CISSP, CISM, CISA, ISO 27001 Lead Auditor etc.)
o Proven experience within senior Information Security roles
Qualifications / Experience – Useful:
o Knowledge and experience with security frameworks (NIST, ISO, CIS 20, MITRE)
o Audit or control experience (SOX, internal audit, external audit, CISA)
o Experience occupying similar role
o Passionate about information risk and security
o Interest in financial services industry
Qualifications / Experience – Optional:
o Experience in AXA Group environment
FIND your future
AXA XL, the P&C and specialty risk division of AXA, is known for solving complex risks. For mid-sized companies, multinationals and even some inspirational individuals we don’t just provide re/insurance, we reinvent it.
How? By combining a comprehensive and efficient capital platform, data-driven insights, leading technology, and the best talent in an agile and inclusive workspace, empowered to deliver top client service across all our lines of business property, casualty, professional, financial lines and specialty.
With an innovative and flexible approach to risk solutions, we partner with those who move the world forward.
AXA XL is committed to equal employment opportunity and will consider applicants regardless of gender, sexual orientation, age, ethnicity and origins, marital status, religion, disability, or any other protected characteristic.
At AXA XL, we know that an inclusive culture and a diverse workforce enable business growth and are critical to our success. That’s why we have made a strategic commitment to attract, develop, advance and retain the most diverse workforce possible, and create an inclusive culture where everyone can bring their full selves to work and can reach their highest potential. It’s about helping one another – and our business – to move forward and succeed.
At AXA XL, Sustainability is integral to our business strategy. In an ever-changing world, AXA XL protects what matters most for our clients and communities. We know that sustainability is at the root of a more resilient future. Our 2023-26 Sustainability strategy, called “Roots of resilience”, focuses on protecting natural ecosystems, addressing climate change, and embedding sustainable practices across our operations.
For more information, please see
AXA XL is an Equal Opportunity Employer.
Location
Location : GB-GB-London Work Locations : GB London 20 Gracechurch Street 20 Gracechurch Street London London EC3V 0BG
Job Field
Job Field : Information Technology
Schedule
Schedule : Full-time
Job Type
Job Type : Standard
AXA XL is an Equal Opportunity Employer and does not discriminate against any colleague or applicant for employment on the basis of race, color, national origin, religion, sex, gender identity and/or expression, sexual orientation, age, disability, genetic information, veteran status, military status or any other category protected by local law.
