See all the jobs at Caixa Mágica Software here:
, , | Cybersecurity | Full-time | Partially remote
Overview:
The CIB (Corporate Institutional Banking) Cybersecurity Control Officer contributes to the operational execution of the CIB Cyber Strategy across all regions (EMEA, AMER, APAC) and CIB-dependent Group entities. Within the Cyber Program team, the officer manages projects delivery, assists committees’ preparation and coordination, supports alignment with Group (CDF) on requirement interpretation, challenges and validates the evidence collected by project teams and leads assessment campaigns of the project deliverables.
Beyond delivery, the officer actively contributes to the modernization of the CIB Cyber Program: streamlining assessment campaigns, industrializing reporting, and embedding automation and AI-enabled use-cases into day-to-day program operations.The officer will be expected to perform deep-dive analyses into complex IT and cybersecurity operational subjects and must possess technical acumen and a proactive mindset to critically challenge operational assumptions.
Beyond the technical details, the candidate must be able to step back from the operational details to evaluate the broader situation, assess associated risks, and synthesize complex technical data into a clear, high-level 'big picture'.
What will you do?
- Program Steering & Governance.
- Support program and projects steering: monitor the delivery, milestones, risks and dependencies for in-scope CIB entities. Escalate alerts and attention points.
- Document projects activities: plans, status reports, risk analyses and reasoned positions supporting program decisions.
- Prepare and coordinate committees (OpCo, Panorama): prepare schedule, materials, minutes and action tracking, with stakeholders at different management levels.
- Act as dedicated point of contact for assigned scopes (project, business line etc.): weekly project monitoring with Project Managers, communication with internal and external stakeholders.
- Collect and challenge maturity evidence: collect and assess evidence of compliance to cyber-requirement through projects / BAU. Formalize and demonstrate maturity to Group reviewers.
- Support Cyber-framework alignment: develop relation with Group reviewers and organize pre-submission alignment on disputed or ambiguous cyber-requirements, document the position with rationale, and track remediation of group’s challenges to closure.
- Reporting improvement: define standard operational success indicators on followed scope or propose improvement to existing ones, define and validate target with the program management, organize periodic review and propose action plan / roadmap to achieve the objectives.
- Identify and prioritize automation opportunities across the program processes: evidence collection, campaign tracking, committee reporting, minutes production and status consolidation.
- Reduce manual effort and single-person dependencies by using standardized inputs, templates and reporting pipelines across territories and cycles.
What are we looking for?
- Ability to collaborate / teamwork.
- Communication skills (oral & written) ability to synthesize and simplify.
- Personal impact / ability to influence.
- Adaptability and rigor: meticulous attention to detail.
- Organizational skills: capacity to manage multiple entities and cycles in parallel.
- Ability to understand, explain and support change.
- Ability to challenge information and evidence quality.
- Ability to inspire others and generate commitment.
- Ability to develop and leverage cross-functional networks (security operations, risk, IT, compliance).
- Ability to anticipate business and regulatory evolution.
- Business skills.
- Cybersecurity: general knowledge of cybersecurity risks, domains and program management.
- Rules & norms: knowledge of regulatory standards applicable to cybersecurity.
- Control: ability to verify operations, challenge evidence and ensure procedures are followed.
- Risk opinion: ability to challenge, approve and defend positions with reasoned rationale.
- IT knowledge: global understanding of IT processes, assets and solutions.
- Business/IT relationship: ability to understand business needs.
- Cybersecurity maturity frameworks and assessment methodologies.
- Microsoft Office (Excel, PowerPoint): data manipulation and executive presentation.
- SharePoint: administration and data management.
- Power BI: dashboarding and reporting.
- Power Automate / SharePoint: workflow automation.
- AI / LLM tools: hands-on exposure to practical use-cases.
- English fluent.
- French is an optional plus.
What can you expect from us?
- A permanent job contract for a long term project;
- Tech equipment + SIM Card + personal smartphone;
- Health and Life Insurance;
- Social events and team buildings;
- The commitment of letting you grow with us, and be rewarded accordingly;
- A dynamic and young team that will be always there to support you;
- Training in the latest technologies;
- Coffee, fruits, snacks and a warm welcoming when you pass by the office.
Fetching your Linkedin profile ...