Information Security Officer - h/f
Key information
- Publication date:19 March 2025
- Workload:100%
- Contract type:Permanent position
- Place of work:Genève
The Information Security Officer is responsible for safeguarding the digital assets and infrastructure of the bank ensuring the confidentiality, integrity, and availability of information through the implementation and management of security measures and policies.
Our client is a private bank located in Geneva.
Description
Network Security Management
- Designing, implementing, and maintaining resilient network architectures to mitigate cybersecurity risks and vulnerabilities.
- Optimizing performance and enhancing security posture by implementing:
- Network segmentation and deploying traffic monitoring solutions, such as Network Access Control (NAC) and Firewalls, to fortify defences against potential threats.
- Enforce least privileged, trust access, verifying each user or machine request, by deploying Privileged Access Management (PAM) solution.
Security
- Security Systems Administration: Administer security systems, including intrusion detection/prevention systems (IDS/IPS), antivirus software, and endpoint protection solutions. Monitor security events and alerts, investigate potential threats, and implement corrective actions to mitigate risks.
- Data Protection: Safeguard sensitive information and prevent unauthorized access, transmission, or leakage of data within the bank. Implement DLP technologies and policies, ensuring compliance with regulatory requirements and industry standards.
- Vulnerability Management: Conduct regular vulnerability assessments and penetration tests to identify security weaknesses in network infrastructure and applications. Develop and implement remediation plans to address identified vulnerabilities and ensure compliance with security standards and regulations.
- Incident Response and Forensics: Respond to security incidents and breaches in a timely and effective manner. Conduct forensic analysis to determine the root cause of incidents, contain the impact, and prevent recurrence. Collaborate with internal teams and external partners to coordinate incident response efforts and restore normal operations.
Technical Documentation, Policies, and Training
- Documentation Development: Maintain comprehensive documentation of network and security configurations, policies, and procedures. Ensure documentation is kept up-to-date and accessible to relevant stakeholders for reference and auditing purposes.
- Security Policy Development: Develop and maintain security policies, standards, and procedures to guide the secure configuration and operation of network and security systems. Ensure adherence to regulatory requirements and industry best practices in information security.
- Security Awareness Training: Provide security awareness training and education to employees to promote a culture of security awareness and compliance. Develop training materials and conduct workshops to enhance understanding of security risks and best practices.
Profile
Degree in Computer Science or equivalent. A Master's degree in Information Security is preferred
Minimum of five years of relevant experience.
Good technical knowledge of mainstream operating systems and security technologies, such as network security appliances and desktop security tools.
This includes:
- Fortinet security solutions (FortiGate, FortiWeb, FortiAnalyzer, FortiAuthenticator, FortiMail, etc.)
- Microsoft Systems (Active Directory, GPO, Firewall, SQL Security, etc.)
- Vulnerabilities detection (Tenable tools)
- SIEM (SolarWinds Event Manager)
- DLP and Data Classification Solutions
- Networking (TCP/IP, VLAN, SFlow, IPSec, switching and routing standards, etc.)
Knowledge of network infrastructure, including switches, firewalls, and the associated network protocols and concepts.
Knowledge and understanding of information risk concepts and principles.
Good analytical skills to analyze security requirements and relate them to appropriate security controls
Ability to quickly learn new or unfamiliar technology and products using documentation and internet resources.
Job Offer
Our client offers you:
- An attractive benefits package
- A dynamic work environment in Geneva
If you are a dedicated and ambitious professional seeking a rewarding career in the industrial sector, we invite you to apply today for the position of Information Security Officer.