Sigma Suisse, based in Plan-les-Ouates, is a recruitment firm specialised in IT and strategic profiles, supporting influential players across French-speaking Switzerland.Within the IT department, we work on needs in commodity and financial Trading, Pharmaceutical, Aeronautics, Space, Energy, Watchmaking and Swiss foundations.Cyber GRC SpecialistWe are supporting a global player in the search for a Cyber GRC Specialist. This is a 100% cyber role. You will ensure the cyber compliance of the group's affiliates (portfolio companies) and help maintain a high level of security across the group.Key responsibilities:Ensure compliance with applicable laws, regulations and standardsDevelop, enforce and update security policies, standards and proceduresMonitor and assess adherence to security guidelines across the groupConduct risk assessments, identify vulnerabilities and drive mitigation plansTrack risk exposure and the effectiveness of mitigation actions, and report to managementMaintain the information asset inventory and own the cybersecurity control catalogLead internal security audits and respond to external audit requestsAudit third parties (third-party risk and vendor management) and maintain the inventory of approved suppliers and toolsDesign and run security awareness initiatives, including phishing simulations, tailored to roles and departmentsWork with HR on the security aspects of the employee lifecycle (background checks, transfers, disciplinary actions, departures)Ensure the group's affiliates remain compliant with group cybersecurity policies and standards, with travel to their sitesRequired profile:Minimum 5 years of experience in cybersecurity, with a focus on hands-on auditing, governance and risk managementIdeal background in cyber audit or consulting (Big4), followed by a CISO or IT Risk team in a regulated environment (bank or large group)Solid understanding of regulatory requirements and industry standards (NIS2)Familiarity with CIS Controls, NIST SP 800-53, NIST CSF and ISO 27001Knowledge of modern security architecture best practices and incident responseA plus: CRISC or CISA certificationA plus: cloud security and group-level security requirementsA plus: knowledge of data protection and awareness of the topicA plus: ability to coordinate or lead a small team #J-18808-Ljbffr
Cyber Security Specialist in Geneva Arbeitgeber: Sigma Suisse
pSigma Suisse in Genf bietet eine dynamische Arbeitsumgebung, die auf Zusammenarbeit und Innovation setzt. Als Spezialist für GMP- und CSV-Validierung haben Sie die Möglichkeit, an spannenden Projekten mit einer renommierten Pharmafirma zu arbeiten, während Sie von einem unterstützenden Team profitieren, das Ihre berufliche Entwicklung fördert. Genießen Sie flexible Arbeitszeiten und ein positives Arbeitsklima, das Wert auf Ihre Ideen und Ihr Engagement legt.