Job offer
ICT & Cyber Auditor - Sector Manager
BCV is seeking an experienced manager for its ICT and Cyber Audit division who will implement preventive security measures, coordinate internal audits, and oversee risk management in the areas of IT and cybersecurity. The ideal candidate has at least 10 years of professional experience in banking, as well as in-depth knowledge of regulatory requirements and IT security standards.
ICT & Cyber Auditor - Sector Manager
Vos missions
- Implement preventive measures related to IT security (IT / IoT / OT / OTS / OPS / etc.) with the assistance of the IT Engineering Department at various levels of the group, as well as with the relevant third-party entities—under the supervision of the ICT & Cyber Team Leader and the audit method manager
- Contribute to regulatory oversight, particularly regarding the management of ICT and cybersecurity risks associated with the introduction or reintroduction of acquired IT resources into the scope of each activity within the audited sector
- Plan, coordinate, and oversee the execution of internal audit engagements such as:
- audits of processes related to continuous improvement (effectiveness assessments, performance, improvement);
- performance analyses conducted by the ICT/IT technical managers responsible for their internal and external projects;
- data integrity control programs, particularly when they involve certain IT assets that are subject to significant financial risks.
- Act as an audit manager and in accordance with current procedures for skills development and innovation activities related to the use of new ICT and IT technologies
- Skill development and supervision of the operations team, as well as collaboration with the finance, sales, legal, R&D, and insurance product development departments
- Contribute to strengthening Business Continuity Management through ongoing training designed to foster a better understanding of the nature and functioning of ICT and cyber activities. Ensure that this expertise is shared internally, for example during awareness-raising seminars targeted at the relevant communities.
- Provide senior management with the relevant information they need to make fundamental strategic decisions regarding the impacts on Univers and ITG. This information must be provided regularly based on feedback from the ICT & Cyber Audit Manager. Ensure a sufficient historical record (annual reports) to guarantee the correct and effective application of technical standards relating to the Areas of Application/Areas of Application/Area/Internal Audits, particularly in accordance with the multi-year IT & Cyber audit plan in cross-functional audits.
- Ensure the management of ICT and cyber risks in the context of the purpose and reporting of internal and external audit engagements. The primary role will be that of a lead expert on the audit methodology, who will personally manage—as well as in cooperation with the heads of the relevant accounting units (CEOs/CFOs)—in particular: identifying specific issues revealed by internal audits (monitoring the deployment, maintenance, and operation of computerized systems designed to serve customers, including digital tools such as smart meters). Work continuously with other areas of the group, particularly with administrative staff. Coordinate technical interventions related to this work by supporting ITT and TC project managers and representing Internal Audit to the relevant stakeholders.
- Review the results observed over the past year and identify critical issues encountered, in collaboration with the teams responsible for managing incidents and anomalies related to information system security. Actively participate in drafting the annual report on the technical and methodological aspects of the audit activities conducted by the Lead ICT & Cyber Auditor.
- Contribute to the continuous improvement of processes related to ICT and cyber activities, taking into account the recommendations from previous internal and external audits. Design and implement corrective action plans tailored to the specific situations identified during internal audit campaigns
- Assess the feasibility of certain intellectual property proposals submitted by industrial partners, both from a technical standpoint and in terms of compliance
Job details