European Investment Bank (EIB) logo

Associate Information Security Officer - based in Luxembourg

European Investment Bank (EIB)
Posted 4 hours ago
Relocation support
AustriaBelgiumLuxembourg
Engineering & Development
Is this job info correct?
This position is based at our Luxembourg headquarters and requires regular office presence. The EIB offers you the opportunity to live and work in a truly international and multi-cultural environment. We also offer relocation support.

The EIB, the European Union's bank, is seeking to recruit for its Group Risk and Compliance Directorate - Office of the Group Chief Compliance Officer (GR&C-OCCO) – Group Non-Financial Risk Department (GNFR), Project Management and Information Security Division (PMI), Information Security Risk Unit (InfoSec) at its headquarters in Luxembourg, an Associate Information Security Officer*.

This is a full-time temporary position at grade 4.

The term of this contract will be until 15.12.2027 as this is a temporary replacement assignment, no extension or conversion of the contract is foreseen.

  • internal benchmark Associate Officer Non-Financial Risk

Panel interviews are foreseen as from October 2026.

Purpose

You will contribute to protecting the EIB’s information, systems and operational integrity by carrying out information security risk management activities and supporting compliance with relevant policies, regulations and industry standards. In this role, you will help identify, report and mitigate information security risks and threats across the organisation.

Operating Network

You will report to the Head of Information Security Risk Unit. You will work in collaboration with the Office of the Group Chief Compliance Officer (GR&C-OCCO), Inspector General’s Office (IG) and other relevant services as required for the investigation and escalation of events arising from non-compliance with the information security policies. You will also work with Group Information Systems Directorate (GIS) and all directorates of the Bank for the implementation of agreed information security measures. You will also interact with security-related professions outside of the EIB Group.

Accountabilities

Support the implementation of an Information Security Management System (ISMS) consistent with the imposed requirements and/or regulations; this will include:

  • Assist in the development and maintenance of the Bank’s information security-related policies, standards and procedures, in close cooperation with IT Security, IPAQ (Information Protection, Access Control and Quality), Physical Security, Data Protection Office and other EIB Group services whenever required.
  • Assist in the implementation, review and update, inter-alia, of the Bank’s Information Security Policies framework
  • Formulate proposals for the integration of information security into the Bank’s policies
  • Ensure close collaboration with peers in European Investment Fund (EIF).

Participate in the implementation and monitoring of the EIB’s risk assessment process.

Contribute to the development of relevant key risk indicators and associated reporting dashboards and implementation of consequent information security controls in collaboration with other relevant services.

Execute Key Processes Related To Information Security Policies, In Order To Ensure Successful Implementation, Maintenance And Continuous Improvement Of Of Agreed Information Security Measures In The Information Security Management System (ISMS); This May Include

  • Supporting Business Owners in carrying out information security risk assessments
  • Monitoring the implementation of agreed information security controls
  • Identify and perform due diligence in line with EIB Group processes for the implementation of adequate tooling
  • Working in close collaboration with IS (Information Systems) for the development of a work plan and agreed actions for the protection of EIB’s information assets and the confidentiality, integrity and availability of EIB documents and data
  • Contributing to providing support for internal and external audit requests
  • Contributing to Information Security Incident Management response
  • Coordinate Information Security Awareness Program actions amongst staff (both permanent staff and consultants/contractors) through training and communication programmes
  • Collaborating with FC/-/ICA/- (Financial Control, Internal Controls and Assertions) on Internal Control Framework (ICF).

Qualifications

  • University degree (minimum an equivalent to a Bachelor) ideally complemented with relevant post-graduate studies in field of risk management, IT or information management
  • Minimum 3-years of relevant experience in the area of information security, preferably in the financial sector
  • Experience in supporting information security implementation, information security audit, preferably in a financial services domain
  • Understanding of the financial services sector and interdependence linked to cybersecurity
  • Knowledge sharing skills, including presentation, drafting of documentation
  • Knowledge of ethical hacking techniques and understanding of how to test and validate defences (hands-on experience or oversight) would be an asset,
  • Relevant certifications e.g. CISA, CISSP, CISM, GCIH would be an advantage
  • Experience with Cloud Service Providers would be an advantage
  • Excellent knowledge of English (***). (Knowledge of other EU languages would be an advantage).

Competencies

Find Out More About EIB Core Behavioural Skills Here

To find out more about our eligibility criteria click here

(***) Unless stated explicitly as a required qualification, a good command of French is not a pre-requisite for hire. As both English and French are however official working languages of the EIB, proficiency in both languages is a pre-requisite for your future career development. Any language clause in your contract must be fulfilled in order for you to be eligible for a promotion (either via the annual appraisal cycle or via an internal selection process). Proficiency is understood to mean the attainment of level 5 of the Inter Institutional language courses, corresponding to B1.2 of the Common European Framework of Reference for Languages (CEFRL). The Bank offers appropriate training support.

We hire and value talent with unique characteristics, creating a work environment where they can be themselves. We believe that Diversity, Equity and Inclusion makes us a performing and innovative organisation. We encourage all suitably qualified and eligible candidates to apply regardless of their gender identity/expression, age, racial, ethnic and cultural background, religion and beliefs, sexual orientation, disability or neurodiversity.

If you require reasonable accommodation during the recruitment process due to a disability, neurodivergence, or a chronic health condition, please contact the EIB Recruitment team Jobs@eib.org who will manage your request appropriately.

By applying for this position, you acknowledge the importance of maintaining the security and integrity of the Information of the EIB Group. In case of selection for the position you agree to comply with all measures (policies, controls, document classification and management) implemented by the EIB Group to prevent unauthorised disclosure of any information or any damage to the EIB Group reputation.

This is an open campaign to consecutively fill open positions. The campaign will remain open until position is filled. Applications will be reviewed in order of receipt.

Similar jobs