Employer Active
Job Alert
You will be updated with latest job alerts via emailJob Alert
You will be updated with latest job alerts via emailDivision: People & Communication - Corporate Security
Purpose
To develop deliver and maintain a comprehensive security awareness program that fosters a strong security culture across the organisation. This includes promoting secure behaviours ensuring compliance with internal and external standards and mitigating risks related to physical information and cyber security.
Key Responsibilities
Awareness Program Development
- Design and implement innovative behaviour-driven security awareness campaigns tailored to diverse audiences.
- Align training content with threat intelligence regulatory requirements (e.g. DORA GDPR) and internal risk assessments.
- Maintain a multi-year roadmap alternating key topics (e.g. phishing physical intrusion data protection).
Training & Education
- Deliver mandatory and role-based training both in person and via different platforms ensuring high completion rates and end-user satisfaction.
- Coordinate phishing simulations and follow-up initiatives to reinforce learning.
- Support physical security awareness through campaigns posters and scenario-based testing.
Stakeholder Engagement
- Lead a network of Security Coordinators and Ambassadors across all entities to localize and reinforce messaging.
- Organize and facilitate quarterly multidisciplinary working groups to gather input from different stakeholders.
- Collaborate with other security functions to align awareness with real-world threats.
Communication & Culture
- Create engaging content (e.g. newsletters videos cardboard characters) to promote security themes requires next to communication skills a deep understanding of security topics in general.
- Organize and report on activities including on-site events and expert talks.
- Monitor engagement via SharePoint analytics feedback surveys and training metrics.
Governance & Reporting
- Maintain KPI/KRI dashboards to track awareness effectiveness and behavioural change.
- Contribute to audits and regulatory assessments.
- Ensure documentation of all awareness activities training records and incident response learnings.
Required Skills & Experience
- Proven experience in security awareness training and communications within a regulated environment.
- Strong understanding of physical information and cyber security principles (e.g. ISO 27001 NIST CIA Triad).
- Excellent stakeholder management skills.
- Familiarity with tools like Microsoft Attack Simulator LMS and SharePoint.
- Analytical mindset with the ability to translate threat intelligence into actionable awareness content.
Desirable Attributes
- Experience coordinating cross-functional teams or ambassador networks.
- Creative approach to behavioural change and learning in the professional context.
- Knowledge of regulatory frameworks.
- Fluency in English; additional languages are a plus.
Required Experience:
IC
Full Time