Description du poste
The Cybersecurity Control Officer plays a key role in driving the execution of the organization's cybersecurity strategy across multiple regions and entities.
As part of the Cyber Program Team, you will oversee cybersecurity governance activities, coordinate strategic initiatives, challenge delivery teams on cybersecurity requirements, and ensure alignment with Group cybersecurity standards. Acting as a trusted partner across IT, Security, Risk and Business teams, you will contribute to strengthening the organization's cybersecurity posture while helping modernize and streamline program operations through automation, data analytics and AI-driven solutions.
This role requires a combination of cybersecurity expertise, project governance capabilities, analytical thinking and stakeholder management skills, with the ability to translate complex technical matters into clear business insights and actionable recommendations.
Key Responsibilities
Program Governance & Strategic Oversight
- Support the governance and steering of cybersecurity initiatives, monitoring milestones, risks, dependencies and delivery progress.
- Identify, escalate and track critical risks, issues and remediation plans to ensure successful program execution.
- Prepare executive-level reporting, status updates, risk assessments and decision-support materials.
- Coordinate governance forums and committees, including agenda preparation, meeting facilitation, minutes production and action tracking.
- Serve as the primary point of contact for assigned projects, business lines or entities, maintaining ongoing engagement with project managers and key stakeholders.
Cybersecurity Control & Compliance
- Collect, review and challenge evidence demonstrating compliance with cybersecurity requirements and maturity objectives.
- Conduct assessments of project deliverables and operational controls to validate implementation effectiveness.
- Support cybersecurity framework alignment by collaborating with Group security teams to clarify requirements, resolve ambiguities and drive consistent interpretations.
- Document and defend risk positions and remediation strategies with well-supported rationale.
- Track compliance gaps and oversee remediation plans through to closure.
Reporting, Performance & Continuous Improvement
- Define, monitor and improve cybersecurity program KPIs, KRIs and operational performance indicators.
- Develop executive dashboards and reporting solutions leveraging Power BI and Microsoft ecosystem tools.
- Produce data-driven insights to support decision-making and program prioritization.
- Contribute to the continuous enhancement of governance, assessment and reporting processes.
Automation & Innovation
- Identify opportunities to automate recurring activities such as evidence collection, tracking campaigns, reporting production and committee management.
- Leverage Microsoft Power Platform (Power Automate, SharePoint) and AI/LLM technologies to improve operational efficiency.
- Drive the adoption of standardized processes, templates and reporting frameworks across regions.
- Reduce manual effort, operational risk and key-person dependencies through scalable and sustainable solutions.
- Explore and implement innovative use cases combining cybersecurity governance with emerging AI capabilities.
Strategic Analysis & Advisory
- Perform deep-dive analyses of complex cybersecurity, IT and operational risk topics.
- Challenge existing assumptions and control frameworks through critical thinking and evidence-based assessment.
- Translate technical findings into concise executive-level communications.
- Assess risks within a broader business context and provide clear recommendations to support strategic decision-making.