Information Risk Programs Manager

il y a 1 mois


Puteaux, Nanterre, France AXA Group Temps plein
Whatever their stage of life, we provide over 108 million customers with the products and services they need to progress. From insurance to personal protection, and savings to wealth management, no matter the need we're always there for them. And we're always there for our employees. In 50 countries, we work hard to inspire pride and a sense of belonging in our people. To provide opportunities that challenge them, inspire them, and reward them. And to create a culture that's open, supportive, and empowering. Because we know that's the real secret to success - and the best way for us to keep building a better world for both our customers and the talented people who put them first.

Your work environment:

The headquarters of the AXA Group (GIE AXA) brings together our corporate activities. It provides guidance and support to subsidiaries around the world, to ensure the coordination and monitoring of the Group's global strategy, the application of its standards, the consistency of commercial approaches and the sharing of best practices. The headquarters gathers approximately 1000 employees and is distinguished by its strong international culture (45 nationalities), which makes it a rich and stimulating place to work.

YOUR TEAM

Within the Group, you will be part of the Group Risk Management department and join the Group Information Risk Management team reporting to the Head of the department.

In the context of growing cybersecurity threats and global information risks, regulators require AXA to get a solid second line of defense to ensure the overall risks are adequately managed and that risk appetite is mastered in that respect. Although protection of information is a shared responsibility of all AXA entities, including all AXA employees, agents, and advisors, GRM has set a specific department to guide and control AXA in this effort: Group Information Risk Management (GIRM) is responsible for leading the enterprise's approach for managing existing and emerging risks associated with the stewardship of AXA information. The "Information Risk Framework, Program Management and Reporting" team oversees the risk management processes from end-to-end (from identification to mitigation and monitoring): through the setting and animation of an Information Risk Management framework, it defines and challenges the expected level of controls to be implemented by the AXA entities, as well as it regularly reports to the Group stakeholders about the level of residual risks from the ground, to generate, drive and follow-up good risk-based decisions. In addition, when a financial institution relies upon third parties to provide operational services, they also rely on those service providers to have sufficient recovery capabilities for the specific services they perform on behalf of the financial institution: therefore, an effective vendor risk management helps to identify, measure, monitor, and mitigate the risks associated with outsourcing.

YOUR JOB AND DAILY MISSIONS

  • With the Digital Operational Resilience Act (DORA) as a key driver, you will reinforce, maintain and improve the existing Information Risk Framework, ensuring that it properly integrates the requirements of the new global Information and Communication Technologies (ICT) risk management framework, as part of the DORA regulation.
    • Drive its implementation and maintenance at corporate and entity level:
      • Ensure that the qualitative risk assessment campaign is performed at local level in respect of the Group Operational Risk guidance and analyze results at both local and global levels.
      • Supervise the development and maintenance of the quantitative models on IT risks (cyber-attack, cloud outage, infrastructure failure, non-compliance with data privacy regulation) in coordination with Group Operational Risk team and other corporate stakeholders. Analyze quantitative models results on IT risks at both entities and global levels.
      • Ensure quantitative models on IT risks are well implemented in alignment with Group guidance by doing Qualitative Assurance Reviews of entities models (QAR).
      • Contribute to ensure that appropriate mitigation actions are defined at local level for the risks identified according to the risk tolerance level for those risks.
      • Drive Strategic and Transversal projects for calculation of the Value at Risk reduction.
      • Refine and improve the Information incidents monitoring and the quality of service at corporate and entity level. As part of DORA regulation, coordinate the ICT incident reporting (workflow with Group COO teams, notification to supervisor in a timely manner, follow-up).
      • Develop, automatize, and maintain the quarterly Key Risk Indicators Dashboard on Information Risks. Analyze results of the entities indicators to highlights key risks.
    • Develop, maintain, and analyze results of the Information Risk Appetite Framework (existing exposures and additional upcoming ones).
    • Develop, maintain and coordination the annual ICT report at corporate center and entity level.
    • Oversee relevant Information Risk Management policies or instructions.
  • With the third-party risk requiring further attention, you will develop and maintain the global vendor risk management framework in coordination with corporate stakeholders (i.e., Group Procurement and Group COO teams)
    • Ensure its implementation and maintenance at corporate center and entity level (incl. the third-party risk management strategy, as part of DORA requirement).
    • Oversee relevant Vendor Risk Management policies or instructions.
    • Ensure the adherence with the Internal Control Programme.
    • Animate and drive the Vendor Risk Management Community ensuring information and decision are shared.
    • Oversee the vendor registration process at both corporate center and entity level in coordination with Group Procurement team, as part of DORA regulation requirement.
  • Develop and maintain the Group Internal Control framework on Technology, Data Management and Procurement macro-processes and to the integration of internal control in the Group and local business processes, on a risk-based approach:
    • Support its implementation and maintenance at corporate and entity level, and assistance to business and entities for the Information risk and vendor risk frameworks, controls and reporting activities.
  • Animate and drive the Information Risk Management Community ensuring information and decision are shared.
    • Provide support and assistance to business and entities in support of both Information risk, ICT risk framework and vendor risk activities and controls
    • Ensure risk issue escalation and management which should be defined, efficient and aligned with AXA Group risk appetite framework
    • Maintain an active and shared awareness of both Information risk, ICT risk framework and vendor risk industry best practices and regulatory developments.

Experience:

  • Bachelor's degree minimum; Master's degree preferably in IT systems,
  • Minimum of 10 years' work experience, preferably in Financial Services industry, including risk management experience,
  • Experience as business analyst profile with ability to analyze data,
  • Knowledge of IT systems, processes and controls,
  • Experience in cooperating with relationships within a global company.

Technical and professional skills:

  • Understanding of information risk, vendor risk and operational risk management and controls,
  • Understanding of Financial services industry regulatory frameworks,
  • Understanding of Technology/Security Frameworks
  • Analytical skills,
  • Project management skills,
  • Constructive challenging ability in a collaborative environment.
  • Strong organizational skills and demonstrates high reliability, quality and timeliness of deliverables
  • Demonstrated leadership ability in a team-oriented and collaborative environment.
  • Ability to work well under pressure while completing timely, executive level deliverable
  • Strong experience in managing relationships within a global company

Communication skills:

  • Superior communication and presentation skills
  • Ability to interact with multiple stakeholders
  • Ability to work within an international and multicultural environment
  • Ability to elicit cooperation from a wide variety of sources, including Group and subsidiaries' points of contact, business experts
  • Fluent in English
  • Rigorous
  • Proactive

Why AXA ? Every day, we work together for human progress by protecting what matters. A mission that puts a smile on your face and makes you want to get up in the morning

One of the world's leading insurers in the protection of property, people and assets, AXA is 145,000 employees and contributors who are committed to our customers on a daily basis, 51 countries in which we distribute our products and services and more than 90 million customers who place their trust in us worldwide. As a responsible corporate citizen, AXA is committed to social and environmental causes on a daily basis. We are committed to an inclusive policy that recognizes and values individual differences. Do these ambitions speak to you ? Then come and change the world with us

The headquarters of the AXA Group is based in Paris - La Défense (Majunga Tower) and brings together the Group's corporate activities. It is distinguished by its strong international culture.

  • Puteaux, Nanterre, France GIE Axa Temps plein

    Whatever their stage of life, we provide over 108 million customers with the products and services they need to progress. From insurance to personal protection, and savings to wealth management, no matter the need we're always there for them. And we're always there for our employees. In 50 countries, we work hard to inspire pride and a sense of...

  • P&C Risk Analyst

    il y a 1 mois


    Puteaux, Nanterre, France GIE Axa Temps plein

    Whatever their stage of life, we provide over 108 million customers with the products and services they need to progress. From insurance to personal protection, and savings to wealth management, no matter the need we're always there for them. And we're always there for our employees. In 50 countries, we work hard to inspire pride and a sense of...

  • P&C Risk Analyst

    il y a 1 mois


    Puteaux, Nanterre, France AXA Group Temps plein

    Whatever their stage of life, we provide over 108 million customers with the products and services they need to progress. From insurance to personal protection, and savings to wealth management, no matter the need we're always there for them. And we're always there for our employees. In 50 countries, we work hard to inspire pride and a sense of...

  • Regional Ethics

    il y a 2 semaines


    Puteaux, Nanterre, France CMA CGM Temps plein

    THE ROLE :The Ethics & Compliance Department is responsible for compliance and regulatory matters for CMA CGM Group’s business globally in the following fields: ethics and business integrity (including fight against corruption as well as third parties’ risk assessment), “devoir de vigilance” (including human rights), trade compliance (embargos,...

  • Regional Ethics

    il y a 1 semaine


    Puteaux, Nanterre, France CMA CGM Temps plein

    THE ROLE :The Ethics & Compliance Department is responsible for compliance and regulatory matters for CMA CGM Group’s business globally in the following fields: ethics and business integrity (including fight against corruption as well as third parties’ risk assessment), “devoir de vigilance” (including human rights), trade compliance (embargos,...


  • Puteaux, Nanterre, France ITSM Solutions International Temps plein

    Location: Puteaux, FranceLanguages Required: French and EnglishWe are seeking a dynamic and experienced ServiceNow Technical Project Manager to lead a critical migration project aimed at consolidating our ServiceNow instances. The ideal candidate will possess robust expertise in ServiceNow administration, technical project management, and a proven track...


  • Puteaux, Nanterre, France CMA CGM Temps plein

    THE ROLEAs part of the CMA CGM Group's Ethics & Compliance department, you will be involved in all matters relating to ethics and business integrity (the fight against corruption, influence peddling) and money laundering on an international scale.RESPONSIBILITIESYou will play an active role in rolling out the anti-corruption and influence peddling...


  • Puteaux, Nanterre, France Michael Page Temps plein

    Acteur de référence des services professionnels notamment : Audit, Consulting, Financial Advisory, Risk Advisory et Tax & Legal. Notre client intervient sur de diverses problématiques, allant de la fiabilisation des informations financières à l'accompagnement de ses clients sur leur développement stratégique.Pour répondre aux exigences de ses...


  • Puteaux, Nanterre, France Michael Page Temps plein

    Acteur de référence des services professionnels notamment : Audit, Consulting, Financial Advisory, Risk Advisory et Tax & Legal. Notre client intervient sur de diverses problématiques, allant de la fiabilisation des informations financières à l'accompagnement de ses clients sur leur développement stratégique.Pour répondre aux exigences de ses...

  • IT Compliance Officer H/F

    il y a 3 jours


    Puteaux, Nanterre, France Michael Page Temps plein

    Acteur de référence des services professionnels notamment : Audit, Consulting, Financial Advisory, Risk Advisory et Tax & Legal. Notre client intervient sur de diverses problématiques, allant de la fiabilisation des informations financières à l'accompagnement de ses clients sur leur développement stratégique.Pour répondre aux exigences de ses...

  • Account Manager Assurance

    il y a 2 jours


    Puteaux, Nanterre, France Confidentielle Temps plein

    Nous recherchons pour notre client, une ESN de plus de 10 000 collaborateurs en France, un Account Manager / Assurance (F/H) au sein de la "practice" BFA.Il s'agit d'une entreprise de conseil en technologie de l’information (TI) internationale.Vous intégrez une équipe dynamique en charge du développement commercial et du suivi des opérations...

  • Business Manager

    il y a 2 semaines


    Puteaux, Nanterre, France ASTRELYA Temps plein

    ASTRELYA est un groupe de conseil et d’expertise IT fondé en 2017, présent en France (Paris et régions) et en Suisse (Genève). Aujourd’hui plus de 280 collaborateurs accompagnent nos clients dans l’accélération et la transformation de leurs organisations.Dans le cadre de notre développement, nous recherchons un Business Manager (F/H)Vos Rôles &...


  • Puteaux, Nanterre, France Worldline Temps plein

    This is WorldlineWorldline helps businesses of all shapes and sizes to accelerate their growth journey - quickly, simply, and securely. We are the innovators at the heart of the payments technology industry, shaping how the world pays and gets paid. Our technology powers the growth of millions of businesses across 5 continents. And just as we help our...

  • Internal Auditor

    Il y a 2 mois


    Puteaux, Nanterre, France Worldline Temps plein

    Internal AuditorLa Défense, France The Opportunity If you want to be a part of a company that encourages personal growth in a complex and fascinating industry and see yourself enjoying driving business results, improving business processes through collaboration and informed analysis – we look forward to hearing from you today. The position requires to...


  • Puteaux, Nanterre, France GIE Axa Temps plein

    Whatever their stage of life, we provide over 108 million customers with the products and services they need to progress. From insurance to personal protection, and savings to wealth management, no matter the need we're always there for them. And we're always there for our employees. In 50 countries, we work hard to inspire pride and a sense of...


  • Puteaux, Nanterre, France AQUANTIS l Cabinet de recrutement Temps plein

    Entreprise Notre client, acteur majeur dans le domaine des services financiers, recrute un(e) Assistant(e) de Direction.Poste et missionsVous serez en appui de 4 associés et jouerez un rôle clé dans la gestion administrative dedu département. Vos principales responsabilités seront les suivantes :Gestion administrative générale (préparation des...


  • Puteaux, Nanterre, France Michael Page Temps plein

    Une société de conseil, de plus de 10000 collaborateurs, qui accompagne les entreprises à travers des services professionnels dans les domaines de l'audit, du risk advisory, de la fiscalité, du consulting et du financial advisory.#ModernWorkplace #GreatplacetoworkAu sein de la DSI Corporate du groupe et entant que Responsable Cloud, Infrastructure &...


  • Puteaux, Nanterre, France Michael Page Temps plein

    Une société de conseil, de plus de 10000 collaborateurs, qui accompagne les entreprises à travers des services professionnels dans les domaines de l'audit, du risk advisory, de la fiscalité, du consulting et du financial advisory.#ModernWorkplace #GreatplacetoworkAu sein de la DSI Corporate du Groupe et en tant que Responsable Cloud, Infrastructure &...


  • Puteaux, Nanterre, France Michael Page Temps plein

    Acteur de référence des services professionnels notamment : Audit, Consulting, Financial Advisory, Risk Advisory et Tax & Legal. Notre client intervient sur de diverses problématiques, allant de la fiabilisation des informations financières à l'accompagnement de ses clients sur leur développement stratégique.Pour répondre aux exigences de ses...


  • Puteaux, Nanterre, France Michael Page Temps plein

    Acteur de référence des services professionnels notamment : Audit, Consulting, Financial Advisory, Risk Advisory et Tax & Legal. Notre client intervient sur de diverses problématiques, allant de la fiabilisation des informations financières à l'accompagnement de ses clients sur leur développement stratégique.Pour répondre aux exigences de ses...