Good understanding of, and experience with Information Risk Management, IT Security and Compliance and Security Controls and AuditAdvanced understanding of internal and external IT security standards, SOX, PCI, SOC2/1, ISO27001 standards and relevant legal compliance aspects.Robust understanding of, and solid experiences with the impact of Security on application development and operations as well as the IT Infrastructure.Ability to promote high performance teams, working with inclusiveness and cultural diversity, across organizational boundaries.Good understanding of cloud security requirements and third-party control assurance.Ability to interface with different groups (Third parties, Business and IT) internal and external to IT (security) and to network globally across Group businesses, as well as with external groups.Technical knowledge & relevant experience in security domains /technologies related to:Infrastructure/Network securityIdentity and Access ManagementBusiness Impact AssessmentApplication securityData Leakage PreventionEnd-Point ProtectionWeb filtering technologies, Proxies and firewalls.Vulnerability Assessment / Penetration TestingKnowledge of Data Security Standards, Privacy PrinciplesDriving Platform / Application security and complianceAbility to foresee and identify mitigation strategies for RisksCandidate must also:Display excellent communicating and influencing skillsDisplay analytical and problem-solving skillsBe pro-active and self-motivatedDisplay strong interpersonal and negotiating skills with all levels of staff.Display Ability and eagerness to quickly learn new technologies.QualificationsA qualification in CISSP, CISA, CRISC or CISM