Cornèr Bank in Lugano seeks a Senior Security GRC professional to strengthen cybersecurity, risk, and compliance capabilities within a regulated banking environment.
This position supports the organization's cybersecurity, risk, and compliance functions in a regulated banking setting. The role serves as a bridge between IT, business leadership, and regulators to embed security and compliance practices throughout the company.
Responsibilities
- Conduct cyber and ICT risk assessments, business impact analyses, and risk treatment plans
- Ensure adherence to FINMA circulars, ISO 27001, LPD, PCI DSS, and other applicable regulations
- Manage third-party and vendor risk oversight
- Maintain and improve the information security management system, policies, and control framework
- Supervise internal and external IT and security audits
- Create GRC dashboards, KPIs, and reporting for the CISO
Requirements
- At least five years of experience in cybersecurity, IT risk, audit, or GRC, preferably in banking or fintech
- Deep understanding of ISO 27001, NIST, and PCI DSS
- Familiarity with regulatory frameworks, with FINMA experience highly valued
- Skill in translating technical risks into business insights
- Fluent proficiency in English and Italian
Nice to have
- Professional certifications such as CISSP, CISM, CISA, CRISC, or CDPSE
- German language proficiency
What the company offers
- Flexible remote work and adaptable working hours to support work-life balance
- A range of benefits and incentives
- Well-being, motivational, and team-building activities
Quelle: öffentlich zugängliche Karriereseite des Arbeitgebers. Batchly ist nicht der Arbeitgeber und steht nicht notwendigerweise in einem Vertragsverhältnis mit dem Unternehmen.