The Cantone Ticino is seeking a mid-level Information Security Specialist in Lugano to act as a security partner for projects, ensuring Secure-by-Design principles and conducting risk assessments. This temporary hybrid role requires 3–7+ years of experience in information security, IT risk, or security governance, along with fluency in English and Italian. Candidates must reside in Ticino or be willing to relocate. The position offers flexibility in working hours and remote work, along with various well-being and team-building benefits. Preferred qualifications include FINMA regulatory experience, relevant certifications (CISSP, CISM, CISA), and additional language skills in German or French.
The Cantone Ticino is looking for an Information Security Specialist to serve as a dedicated security partner for various projects and initiatives. In this role, you will be responsible for embedding Secure-by-Design principles into development processes and conducting thorough risk and control assessments across both IT systems and business operations. This position plays a crucial part in maintaining robust security governance and ensuring that regulatory expectations are met throughout the organization's digital landscape.
Responsibilities
- Serve as a trusted security advisor for ongoing projects and initiatives, guaranteeing that Secure-by-Design principles are integrated from the outset.
- Perform comprehensive risk and control assessments to evaluate the security posture of IT infrastructure and business processes.
- Collaborate with cross-functional teams to identify potential vulnerabilities and implement effective mitigation strategies.
- Monitor compliance with established security standards and regulatory requirements, providing guidance on best practices.
- Document and report on security risks, control effectiveness, and remediation efforts to relevant stakeholders.
Requirements
- Possess 3 to 7+ years of professional experience in information security, IT risk management, or security governance.
- Demonstrate hands-on experience in project security, security assurance, and the implementation of control frameworks.
- Maintain a strong understanding of risk management methodologies and current regulatory expectations.
- Be fluent in both English and Italian, with excellent verbal and written communication skills.
- Currently reside in the Ticino region or be prepared to relocate there for the duration of the contract.
Nice to have
- Prior experience working with FINMA regulatory frameworks and requirements.
- Hold professional certifications such as CISSP, CISM, or CISA.
- Possess additional language skills in German and/or French to support broader communication needs.
What the company offers
- Enjoy a flexible work environment that allows for remote work and adaptable working hours to promote a healthy work-life balance.
- Access to a range of benefits and incentives designed to support employee well-being, motivation, and team cohesion.
- Opportunity to work in a hybrid model, combining office collaboration with the convenience of remote work.
- Contribute to meaningful public sector initiatives while advancing your career in information security.
About the company
The Cantone Ticino is a public administration entity dedicated to serving the residents and businesses of the Ticino region. The organization values integrity, transparency, and a commitment to public service. By fostering a collaborative and supportive work environment, the Cantone Ticino aims to attract talented professionals who are passionate about making a positive impact. The company emphasizes work-life balance and employee well-being, providing a stable and rewarding workplace for its staff.
- Emphasis on work-life balance through flexible working arrangements.
- Commitment to employee well-being and motivation through various incentives.
- Collaborative team environment that values open communication and mutual support.
- Focus on public service and making a tangible difference in the community.
Quelle: öffentlich zugängliche Karriereseite des Arbeitgebers. Batchly ist nicht der Arbeitgeber und steht nicht notwendigerweise in einem Vertragsverhältnis mit dem Unternehmen.