Job Detail

Givaudan Corporate Information Security Officer

Inseriert am: 18.09.2018
Corporate Information Security Officer

Corporate Information Security Officer - Your future position ?


 


As Corporate Information Security Officer (CISO) you will be responsible for establishing, promoting and maintaining the information security program to ensure that information assets and associated technology, applications, systems, infrastructure and processes are adequately protected in the digital ecosystem in which Givaudan operates.Reporting to the Global Head of Information Management & Technology (IM&T), you will beresponsible for identifying, evaluating and reporting on cyber-security risks to information assets, while supporting and advancing Givaudan strategy.


 


Information Security Strategy and Governance



  • Set Corporate Information Security Strategy in line with IM&T and Givaudan Business strategy

  • Define, implement and maintain Corporate Information Security Program policies and guidelines

  • Define and maintain Enterprise Information Security Architecture in line with Enterprise Risks, Information Security Risks and Private Data Protection requirements

  • Chair Global IM&T Information Security Governance Committee's to manage security risks and global security initiatives


 


Information Technology (IT) Crisis Management



  • Define organisational and political framework around IT Crisis Management in line with Global Crisis Management

  • Govern IT Crisis Management plan definition, implementation and training

  • Provide guidance on IT disaster recovery strategy in alignment with the identified IT risks


 


IT Audit Management



  • Participate in definition of audit scope and organize internal IT audits

  • Responsible to organize financial audit activities on the IT scope

  • Define and follow up implementation of audit recommendations


 


IT Risk Management



  • Define organization and framework around IT Risk Management in line with the Enterprise Risk Management

  • Animate and report IT risk management activities


 


Information Security Operation



  • Manage ISMS (Information Security Management System) for Global Data Center and all remote locations

  • Define framework for IT/OT inline with identified IT risks

  • Manage security framework and controls for outsourcing providers

  • Define and deploy awareness training to IM&T and User community

  • Advise and provide guidance for security investigations and forensics activities

  • Mandate regular security reviews and participate in governance committees for decisions regarding internal and external security audits

  • Supervise governance for DR test planning and execution


 


Lead the Organization



  • Manage a cost-efficient information security organization. This includes hiring (and conducting background checks), training, staff development, performance management.

  • Ensure HR & IM&T global processes are followed


 


You?


Are you someone who wants to grow shape and shape your own world? Who thrives being in a culture where you can express yourself in a creative team environment?


Who wants to collaborate and learn together with teams who are as passionate as you are? Then come join us - and impact your world.


 


Your professional profile includes:



  •  A Master's Degree or equivalent.

  •  Minimum 5 years of experience in IT.

  •  Minimum 5 years of experience in Security Management.

  •  Minimum 3 years experience in being an international team player working across countries with multiple functions and at the global level.

  • Strategic leader and builder of both vision and bridges, and able to energize the appropriate teams in the organization.

  • Extensive knowledge of Security Management and Frameworks (such as ISO/IEC 27001, ITIL, COBIT, NIST)

  • Extensive knowledge in Risk Management.

  • Excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate information security and risk-related concepts to technical and nontechnical audiences at various hierarchical levels, ranging from board members to technical specialists. Excellenet stakeholder management skills.

  • Proven track record and experience in developing information security policies and procedures, as well as successfully executing programs that meet the objectives of excellence in a dynamic business environment.

  • Fluent in English. One additional language is a plus.

  • Poise and ability to act calmly and competently in high-pressure, high-stress situations


 


Your next career step?


Givaudan is not only the global leader in the creation of flavours and fragrances, but also a place where you can impact your world and contribute to solutions that touch and delight people all over the world every day. We encourage our employees to work on varied challenges and opportunities that foster growth and promote career development. For the latest opportunities, visit Job Opportunities on Engage to grow and shape your path.

Details