Information Security
7 giorni fa
About IMD
The International Institute for Management Development (IMD) has been pioneering leadership development for nearly 80 years. Founded by business for business, we are an independent university institute with Swiss roots and global reach. Operating from Lausanne with strategic hubs in Singapore, Shenzhen, and Cape Town, IMD works with 19,000+ executives from 120+ countries annually. Our 145,000+ alumni form a powerful global network. Consistently ranked among the world's top business schools, IMD bridges cutting-edge research with real-world application to help leaders solve problems, scale solutions, and drive impact. Real Learning for Real Impact.
To reinforce our team, we are looking for an
Information Security & Compliance Lead (100%)
The Job's mission
We are seeking an Information Security & Compliance Lead to strengthen our cybersecurity posture and ensure compliance with international standards such as ISO 27001, ISO 27701, and ISO This role plays a pivotal part in protecting our institution's information assets, ensuring the confidentiality of data entrusted to us by clients, partners, and employees, and driving continuous improvement across security governance, risk management, and operational resilience.
In this position, you will oversee internal and external audits, lead incident and vulnerability management processes, manage relationships with suppliers and clients from a security standpoint, and develop the organization's security awareness and readiness. You will also contribute to new security solution evaluations.
This is a unique opportunity to join a mission-driven institution where information security is a strategic priority. You will have direct impact on risk mitigation, operational excellence, and regulatory compliance, collaborating with teams across departments to embed a security-first culture.
Main responsibilities
Governance and Compliance
• Lead the annual ISO 27001 and ISO 27701 internal and certification/surveillance audits, ensuring timely remediation of findings.
• Conduct security meetings with management, maintain policies and practices, and oversee annual updates.
• Collaborate closely with the Data Protection Officer to ensure compliance with GDPR, LPD, and other relevant data protection regulations, aligning security practices with legal and regulatory requirements.
• Compile security KPIs and dashboards, and report monthly to management and internal communications channels.
• Perform ISO 42001 self-assessment and lead implementation of AI governance controls, leveraging collaboration with key stakeholders.
• Oversee employee security awareness programs and perform regular phishing simulations, to foster a security-conscious culture.
• Identify opportunities for new security tools and propose solutions in alignment with strategy and risk priorities.
• Develop and manage the annual cybersecurity budget
Supplier & Client Security Management
• Review and assess the security maturity of new supplier.
• Answer client security queries in collaboration with Sales and Legal teams, ensuring consistent and transparent communication.
Incident Management
• Investigate internal and external security incidents and ensure response procedures are followed, inclose coordination with the SOC and the IT teams
• Further develop incident response processes and run tabletop simulations with senior management, technical teams, and key stakeholders to enhance incident response readiness
Vulnerability Management & Threat Intelligence
• Review vulnerability scan results, assess severity, and ensure timely remediation in close collaboration with the IT teams.
• Coordinate penetration testing and collaborate with stakeholders to track closure of findings.
• Follow (OSINT) threat intelligence from various sources and act accordingly.
Formula for success
Education:
• Bachelor's or Master's degree in Information Security, Computer Science, or related field.
• Recognized security certifications such as CISM, ISO 27001 Lead Implementer/Auditor, or equivalent are a strong asset.
Experience:
• Minimum 5 years of experience in information security management, compliance, or cybersecurity operations.
• Proven experience leading ISO 27001 or equivalent certification programs.
• Strong understanding of incident management, vulnerability management, and data protection principles.
• Familiarity with third-party risk management.
• Experience in managing security awareness programs and collaborating with multidisciplinary teams.
• Excellent project management and reporting skills, with the ability to summarize complex risks for senior management.
Competencies
• Analytical, structured, and risk-based approach to decision-making.
• Effective communicator, skilled at adapting verbal and written communication for both technical stakeholders and senior management.
• Proven ability to lead cross-functional initiatives and maintain governance rigor.
• Strong attention to detail and documentation.
• Proficient English, French is a plus.
How to apply
If you have the above skills and would like to work in our stimulating environment, please send your complete application file (letter of motivation and resume in English, copies of your work certificates and diplomas).
If you're a qualified candidate with a disability (such as dyslexia, sight and/or hearing disabilities, etc) and you need a reasonable accommodation in order to apply for this position, please specify it in your application.
A valid Swiss work permit or Swiss or EU-25EFTA citizenship is required for this position.
-
Chief Information Security Officer
7 giorni fa
Italia Allianz A tempo pieno 60.000 € - 120.000 € all'anoJob PurposeWe are looking for a Chief Information Security Officer to join our company. The job holder will be responsible for ensuring ongoing compliance with minimum requirements and security standards along ASIS. This person will also ensure that the Group Information Security Framework (GISF) and Operational Entity (OE) specific information security...
-
Information Security Senior Specialist
7 giorni fa
Italia Allianz A tempo pieno 60.000 € - 120.000 € all'anoJob PurposeWe are looking for an Information Security Senior Specialist who will support and establish the implementation of the organization's Information Security Framework, ensuring compliance with Information Security and Regulatory Requirements. This person will promote awareness of Information Security across the organization and will monitor the...
-
Information Security Specialist
2 settimane fa
Italia Allianz Technology A tempo pieno 39.000 € - 60.000 € all'anoThe ISO has overall responsibility for the effective implementation and maintenance of the Information Security Management System (ISMS) within Allianz Technology. Furthermore, the ISO oversees the fulfilment of Information Security requirements in all services provided by Allianz Technology as shared service provider to its customers. What you doEach...
-
Information & Cyber Security Advisor
1 settimana fa
Italia Innovery by Neverhack A tempo pienoAbout the Company: Since 2024 Innovery, leading group in the Italian and European market with a wide range of solutions and services in the field of cyber security, has joined Neverhack . This fusion combines the strengths of the two entities to offer innovative and enhanced solutions in the technology landscape, promoting excellence and innovation in ICT...
-
Information Security Risk Management
7 giorni fa
Italia Allianz A tempo pieno 60.000 € - 120.000 € all'anoThe Allianz Group Information Security Function is responsible for ensuring that Information Security and Cyber Risks, which could potentially impact the successful delivery of Allianz business objectives, are identified and appropriately managed. It ensures that Allianz is adequately protected in accordance with legal and regulatory requirements....
-
Principal Information Security Officer
7 giorni fa
Italia Allianz A tempo pieno 60.000 € - 120.000 € all'anoAbout the Job As a Local Information Security Officer (ISO) at Allianz Technology Thailand, you will play a crucial role in driving the implementation and evolution of the Allianz SE Group and Technology Information Security Framework and related guidelines. You will ensure compliance with the IS framework by providing control assurance for services offered...
-
Information Systems Security Manager
7 giorni fa
Italia MIT Lincoln Laboratory A tempo pieno 111.400 € - 147.500 € all'anoThe Security Services Department's overall mission is to identify and counter security threats to the MIT Lincoln Laboratory's mission of development of game-changing technology in support of National Security, including guarding against compromise by foreign intelligence agencies and insider threats. To accomplish this mission, this department formulates...
-
Information Security Program Manager
2 settimane fa
Italia Allianz A tempo pieno 18.191 € - 80.000 € all'anoAbout the Job Corporate Information Security (CIS) is the core department and central driver for Information Security Governance in Allianz Technology SE. The division is tasked to continue evolving a strong security organization, establishing global security solutions and countermeasures, and overseeing the effectiveness and guiding the implementation of...
-
Information & cyber security advisor
1 settimana fa
Italia '61 Innovery By Neverhack A tempo pienoAbout the Company:Since 2024 Innovery, leading group in the Italian and European market with a wide range of solutions and services in the field of cyber security, has joined Neverhack . This fusion combines the strengths of the two entities to offer innovative and enhanced solutions in the technology landscape, promoting excellence and innovation in ICT and...
-
Information Security Analyst
2 settimane fa
Italia Allianz A tempo pieno 60.000 € - 1.000.000 € all'anoAllianz is the home for those who dare – a supportive place where you can take the initiative to grow and to actively strengthen our global leadership position. By truly caring about people – both its 83 million private and corporate customers and its 142,000 employees – Allianz fosters a culture where its employees are empowered to collaborate,...