Overview
Join to apply for the Information Security Lead role at AXA Group Operations.
Context and AXA Group Security
Throughout AXA, the security community represents 1000 security professionals, working daily to protect our employees, customers, operations and brand. Our operating model gathers the three security disciplines Information Security, Operational Resilience and Physical Security & Safety. Our security mission is to ensure that AXA is safe, secure and resilient.
AXA Group Security, as part of AXA GO, defines the security strategy, standards and provides assurance to the Group on the security maturity of all entities across AXA. In its role, it also supports our professional family in entities in maintaining their security posture and respond and coordinate responses to crisis.
This is accomplished through four strategic levers :
- Safe : It is about our people, have them ready to face security challenges including third parties, health professionals
- Secure : Secure the business of today and tomorrow, by increasing security effectiveness on a risk-based approach for all entities.
- Resilient : Enhance anticipation, detection and reaction capabilities in case of events & Security by design
- Simple : Simplify, converge and automate our services and activities
To support our business strategy and Security transformation, AXA has created an Advisory and Standards function to support effective implementation of security arrangements throughout the AXA Group. Our vision for the Advisory and Standards function is to ‘create a body of security experts that can provide subject matter expertise, advice, leadership and guidance where it is needed most, to reduce risk, accelerate security transformation and ensure the effective implementation of security arrangements throughout the Group.”
Team members will lead and support the definition of the target Information Security management systems, frameworks, policies, instructions and guidance.
Reporting to the Information Security Executive Manager, this role is accountable for helping build and embed the end-to-end strategic approach to AXA Information Security throughout the Group, including governance and oversight of Information Security activity and the provision of security advisory. The role is a key member of the Group Information Security Function and may be required to act as deputy to the Executive Manager including some responsibility for budgetary and people management.
The scope of work includes :
- Overseeing day to day activities of the Group Information Security team
- Ensuring that Group Information Security goals, targets and deadlines are met
- Providing expertise, advice and guidance to business leadership and colleagues on matters relating to Information Security to support strategic intent
- Defining and maintaining for Information Security, management systems, policies, instructions and detailed guidance for AXA
- Influencing the business agenda
- Embedding Information Security requirements throughout the AXA Group
- Embedding a security culture and ensuring security "by design"
- Supporting the management of group level Information Security threats, incidents and crises
- Upskilling of security practitioners
- Driving simplification, innovation, and convergence of security
- Contributing to information security good practice and support its adoption across the group
- Delivery is through direct engagement with geographical and functional leadership (CEOs, CIOs, Heads of Professional families, IT functions, Program Management) and the wider Security community
Key responsibilities – Information Security
- Support leadership, governance and oversight of the Group Information Security Function and act as a deputy to the Executive Manager - including budgetary management and people leadership for the Information Security function.
- Support the Executive Manager to lead the Information Security team and provide oversight of Information Security activity throughout the Group - to ensure an integrated Information Security capability that supports the Group strategic intent.
- Contribute to the definition of the Security strategy, framework, operating model and capabilities, bringing expert knowledge, skills, experience, best practice and innovation to enhance Information Security throughout the Group.
- Be a primary Subject Matter Expert with key technical skills and high-level exposure within GO or AXA or key external parts, serving as a global point of contact for Information Security; broad a comprehensive expertise in leading-edge theories, techniques and / or technologies within own function or discipline.
- Help to influence the business and functional agendas and build internal sponsorship at the top of the organization.
- Engage with relevant risk management disciplines plus geographic and other functional leadership (e.g. CEOs and Heads of Professional Families plus strategic supply partners) to align information Security to the requirements of the group.
- Help to design and lead the implementation of governance requirements for Information Security throughout the Group
- Act as subject matter expert / key point of contact during incidents and crises providing leadership and professional support to the Group Crisis Management Teams and helping to coordinate the Information Security response to multi-entity crises as required.
- Analyze emerging technology trends. Assess the impact on the business environment and drive the evolution of the framework.
Required technical competencies
- Information Security & Cyber Resilience
- Program Management
- Customer needs analysis
- Third party management
- Quality management
Required soft skills & behavioural competencies
- Leadership.
- Strategic Thinking
- Problem solving
- Planning
- Decision making
- Coaching and Mentoring
Your Profile
- Education
- Appropriate education, leadership & technical training and professional membership for role and seniority.
- Certification
- Current Information Security Certifications
Overall work experience
- At least 15 years’ experience working in Information Security
- Experience working within a global environment
- Consulting and advisory experience preferred
- Experience managing a team of consultants including budget, people leadership and program execution.
- Skills / abilities Facilitation, negotiation and conflict resolution skills
- Possess strong relationship building, communication and presentation skills (written and verbal – English) Be able to prioritize and execute tasks in a high-pressure environment
- Strong networking skills
- Team player, but self-motivated, proactive, independent, and responsive
- Professional and positive approach, diligent with attention to detail
- People leadership in a multi-cultural environment
- Customer centricity
- Result-oriented mindset
Seniority level
Employment type
Job function
Industries
- IT Services and IT Consulting
J-18808-Ljbffr