Employer Active
Job Alert
You will be updated with latest job alerts via emailJob Alert
You will be updated with latest job alerts via emailSHARE your talent
Were looking for someone who has these abilities and skills:
Required Skills and Abilities:
Masters degree in computer science Engineering or related field with a minimum of 5 years of professional experience in Risk Management and/or Information Security.
Expert in synthesizing and clearly communicating complex information to all audiences up to CLevel leaders.
Experience in articulating risks in business language and advising on the appropriate risk management action.
Excellent attention to detail and the ability to create clear concise and engaging presentations breaking down difficult problems.
Excellent knowledge of Information Security frameworks (Mitre ATT&CK FAIR NIST ISO 2700X).
Fluent in English.
Expert analytical and reporting skills.
Excellent interpersonal and collaborative skills.
Expert in Microsoft Office (Word Excel PowerPoint SharePoint).
Experience in multinational companies.
Excellent knowledge of Risk management.
Desired Skills and Abilities:
Experience in information security management reporting and related methodologies.
Information Security and /or Information Technology industry certification (CISSP CISM or equivalent).
Familiarity with Security tools to be able to collect information and evidence (DLP Active Directory Varonis Qualys).
AXA XL the P&C and specialty risk division of AXA is known for solving complex risks. For midsized companies multinationals and even some inspirational individuals we dont just provide re/insurance we reinvent it.
How By combining a comprehensive and efficient capital platform datadriven insights leading technology and the best talent in an agile and inclusive workspace empowered to deliver top client service across all our lines of business property casualty professional financial lines and specialty.
With an innovative and flexible approach to risk solutions we partner with those who move the world forward.
Learn more at axaxl
AXA XL is committed to equal employment opportunity and will consider applicants regardless of gender sexual orientation age ethnicity and origins marital status religion disability or any other protected characteristic.
At AXA XL we know that an inclusive culture and a diverse workforce enable business growth and are critical to our success. Thats why we have made a strategic commitment to attract develop advance and retain the most diverse workforce possible and create an inclusive culture where everyone can bring their full selves to work and can reach their highest potential. Its about helping one another and our business to move forward and succeed.
Learn more at axaxl/aboutus/inclusionanddiversity. AXA XL is an Equal Opportunity Employer.
Sustainability
At AXA XL Sustainability is integral to our business strategy. In an everchanging world AXA XL protects what matters most for our clients and communities. We know that sustainability is at the root of a more resilient future. Our 202326 Sustainability strategy called Roots of resilience focuses on protecting natural ecosystems addressing climate change and embedding sustainable practices across our operations.
Our Pillars:
For more information please see axaxl/sustainability.
Data Governance and Security Specialist
Gurgaon/Bangalore India
AXA XL is a new division of AXA and is the result of the recent merger of the former entities XL Catlin AXA Corporate Solutions/Matrix AXA Art and AXA Insco. The organization has as an objective to centralize enterprise security risks effectively record them qualify / quantify them manage them to keep them within appetite and report on them regularly. The Data Classification and the Line of Business Risk Assessment which records the most important Information assets from Line of Businesses and their associated Security risks. The Application Risk Assessment which measures the frequency and impact of the Security Risks of the applications holding valuable AXA XL data. The Risk Acknowledgement and Mitigation Plan (RAMP) process which records informationrelated risks and seeks to obtain business ownership of them. Individual RAMPs are reviewed by the RAMP Review Group (RRG) which agrees on deadlines for mitigation or even to escalate the final decision to higher committees within AXA XL. The Enterprise Risk Assessment which establishes the general IS risks for the whole company monitors them and link mitigation plan and future projects to reduce the risk. Security is the owner of this program and is responsible for all the associated tasks which make the process work. Security is expected to drive the different initiatives associated with the program report on them and regularly synthetize them as a single report for up to CLevel leaders for decision.
DISCOVER your opportunity
What will your essential responsibilities include
Support the collection of uptodate information from Business regarding their most valuable data and its use on a yearly basis (at minimum) at a Data Element level when possible.
Monitor the use of Data element through Security tools like DLP and Microsoft Purview.
Help create Sensitive Information Types to better pinpoint sensitive data elements used by the business.
Control and monitor locations of sensitive data elements in the organization (email SharePoint One drive).
Manage and maintain the Data Classification register for unstructured data a consistent record of the most valuable data in AXA XL their owner their classification and their location in different tools (Varonis Purview SharePoint).
Act as a champion for Information Security when dealing with areas of the business providing assistance with the raising of information risks and explaining current policy as required.
Maintain close working relationships with appropriate teams across and outside of Information Security.
Centralize and leverage all information available (SOC Incidents vulnerability scans phishing results etc. to best identify risks around Data and the supporting assets in the organization.
Communicate weekly on the top identified risks that are currently monitored.
Ensure up to date Information Security risks metrics are ready to be distributed as required.
Produce monthly reporting to the local IT Security and Risk governance and business on the noncompliance around data elements use and locations.
You will report to Head of Information Security Services and Risk Management.
Required Experience:
Unclear Seniority
Full-Time