CSIRT Manager

September 12, 2023
Employment contract
Standard / Permanent
Location
CH-GE-Geneva
Job / Mission
INFORMATION TECHNOLOGY
Reference
1 B000631
Apply for this job

YOUR TEAM

The CISO office is responsible of the Cybersecurity and the IT Risk Management at BNP Paribas Switzerland. The CSIRT is one of the four teams within the CISO Office and consists in a team of 5 experts. The CSIRT team is in continuous interaction with the rest of the CISO office and the production teams.

DAILY WORK

  • As the head of the BNP Paribas Switzerland Business CSIRT, you will manage a team of 4 security analysts, and you will ensure the day-to-day CSIRT operations as described below, in order to provide a quality service to BNP
  • Conducting all security investigations related to Swiss territory assets or data 
  • Preparing the IT department for potential security events:
    • Ensuring readiness of the CSIRT, the CISO Office and the overall IT Department
    • Developing the procedures, KB and runbook required to ensure readiness
    • Exercising the teams and processes through table top sessions, trainings or crisis exercices
  • Assisting with and managing Cyber crises:
    • Reacting to Cyber incidents in coordination with all stakeholders (Group CSIRT, etc..)
    • Coordinating action in the event of Cyber Security incidents and crises and ensuring that the entity’s essential services are restored
    • Developing and monitoring post-incident action plans
  • Developing local Cyber Threat Intelligence:
    • Carrying out daily monitoring of Group, NCSC CTI material, as well as public information
    • Analysing and summarising specific cyber threats, detecting and issuing publications on compromised third parties
    • Actively participating in the Group’s Cyber Threat Intelligence community
  • Managing Procedures
  • Maintaining a comprehensive list of up-to-date procedures on the Cyber Security Risk perimeter
    • Coordinate the end-to-end procedure management process
    • Contribute to the procedure status follow-up

PROFILE
  • 10+ years experience in several fields of IT Security
  • 5+ years experience in a similar position
  • Certifications in Cyber Security is a plus
  • Technically savvy with several domains of IT
  • Good understanding of the swiss banking regulation
  • Good communication, organizational and people skills and the ability to work across functional groups
  • Good written and verbal communication skills
EXPERTISE AND SKILLS
Business skills: 
  • Business/IT Relationship (Beginner)
  • IT Risk and Cyber Security (Expert)
  • Architecture (Beginner)
  • IT Infrastructure (Proficient)
  • IT Knowledge (Proficient) 
Transversal skills: 
  • Ability to develop others & improve their skills (Proficient)
  • Ability to develop and adapt a process  (Proficient)
  • Analytical Ability (Proficient)
  • Ability to understand, explain and support change (Proficient)
  • Ability to develop and leverage networks (Proficient) 
Behavioural skills: 
  • Ability to Synthetise/Simplify (Proficient)
  • Ability to collaborate/Teamwork (Proficient)
  • Ability to share/pass on knowledge (Proficient)
  • Organisational Skills (Proficient) 
Languages: 
  • French (Fluent)
  • English (Operational) 
Why join us ?

BNP Paribas in Switzerland is a bank of reference active in Geneva, Zurich and Lugano. It is a major European partner for companies, as well as institutional and private clients. Joining BNP Paribas will give you the opportunity to take part in an authentic company project, in which innovation and career management act as driving forces to help talents emerge, express themselves fully and open up to career opportunities on an international level, by integrating a group that stands as a leader within the Eurozone. Please visit us at BNP Paribas Suisse.

In a changing world, diversity, equity and inclusion are key values for the well-being and the good performance of teams. At BNP Paribas, we wish to welcome and retain all talents, without any distinction: together we will build the finance of tomorrow, innovative, responsible and sustainable.

Finally, we insist on the particular importance of having our employees act daily in a spirit of ethical and professional responsibility.

NB: all terminologies apply in both the feminine and the masculine.