This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We are looking for an Information Security Analyst to join our Risk, Legal and Compliance team on a 6‑month fixed‑term contract. In this role, you will drive our cyber resilience programs and maintain a robust cyber security operations environment. You will report into the Senior Manager, Information Security and Technology Risk, and work alongside LOD2 Risk and Compliance managers, IT delivery leads and project managers.
Job Responsibility:
Responsible for maintaining a strong security environment, reducing cyber risk exposure, and supporting security operations, monitoring, and reporting
Contributes to LGT WM’s information security strategy and risk framework while embedding security requirements into key business projects from the outset
Participates in initiatives to ensure compliance with privacy laws and external regulatory obligations, including GS 007
Support the cyber security assurance program, assisting audit activities and owning the remediation of findings
Support an effective cyber security assurance strategy over third parties / suppliers, enabling the business to engage with strategic partners without taking excessive risk
Actively participate in cyber security strategy formulation, prioritizing the protection of mission critical digital assets and maximizing the value of security investments
Participate in project delivery teams to provide security input throughout the solution lifecycle, from early design through to implementation and go-live
Participate in operational change management and ensure security related changes are adequately tested prior and post implementation, to reduce business impacts
Requirements:
5+ years in security operations or related IT functions, such as networking or IT systems engineering
Strong understanding of security concepts such as server hardening & patching, M365 & Azure configuration, Endpoint Protection solutions, Vulnerability Management, Firewall configuration, user access management, data loss prevention
Strong understanding of security architecture concepts across on-premises, cloud, and SaaS environments
Experience assessing solution designs and identifying security risks at an architectural level
Ability to translate complex technical and policy-driven security requirements into business-friendly language
Strong pragmatic, risk-based mindset with the ability to balance security, usability, cost, and delivery timelines
Experience engaging in business projects, conduct threat modelling, risk assessments, controls design as well as validating the design and implementation of key controls
Experience driving security initiatives to align technical services with security policies
Strong problem-solving abilities, with a logical and methodical approach to tasks
Excellent communication skills, able to translate technical concepts for non-technical stakeholders
Commitment to maintaining high-quality standards in all tasks
Ability to manage changing priorities and work in a dynamic, and a proactive manner
A passion for emerging technologies and an interest in industry developments in this fast-moving sector
Computer Science Bachelor’s Degree or substantial equivalent experience
Related industry certifications, or working towards obtaining, such as CISSP, CISM
Nice to have:
Related industry certifications, or working towards obtaining, such as CISSP, CISM