Data Security/ Compliance

Information Security Risk Manager

The Information Security team, which forms part of Enterprise Risk, has an oversight role in ensuring that information security and technology risks are managed in line with ESW’s risk appetite.

The Information Security Risk Manager will directly support the CISO to collaboratively assess, analyze and quantify information security risks.  The IS Risk Manager will be assigned to primarily support technology and 3rd party risk related activities where priorities will be identified.

ESW has outstanding international reputation in its field and great value is placed on development. The scope of the offer, the freedom and autonomy to drive your career forward all comes up to a great place to work. If you have what it takes, are passionate about ecommerce and want to elevate yourself into management, this is an excellent opportunity to work with an industry leader in cross boarder ecommerce, that is constantly innovating and breaking new ground. Great career opportunities await the right person in this exciting Information Security Risk Manager position.

Key Responsibilities

  • Manage ongoing engagements and partnering with the business to support technology risk assessment, monitoring and reporting
  • Co-Ordinating and delivering technology risk related actions and activities within a team environment.
  • Identify and act upon opportunities to improve Information Security Risk Governance processes and framework; and promoting awareness of technology and 3rd party risks across various business units.
  • Expected to evaluate the extent to which technology managers can demonstrate they are in compliance with internal and external technology control standards, as well as regulatory and audit requirements.
  • Securing ESW supply chain via 3rd party risk assessment, review and reporting.
  • Advise on best practices leveraging expertise and industry insights.

What’s on offer?

  • Career growth – tailored learning & development, tuition assistance and professional certification.
  • Health & Wellbeing – dental & health insurance, reduced corporate gym membership.
  • Work Life Balance – 25 days annual leave, flexible working, sports & social club.
  • Family – paid maternity & paternity leave, life assurance, income disability cover.
  • Financial – competitive salary, pension, bike to work, travel TaxSaver, relocation assistance.
  • 5+ years experience with IT and Risk management (governance, operations, audit, control functions, compliance, risk management).
  • Outstanding communication and influencing skills through all levels of the organization and with external partners and vendors.
  • Ability to work independently while sharing expertise with others
  • Ability to effectively communicate complex topics to a broad audience.
  • Exposure to cloud controls and third-party management controls.
  • Experience with internationally recognised standards (ISO 27001, ISO 27701, PCI DSS).
  • Exposure to working with Risk related tools such as OneTrust would be an advantage.
  • CISA, CRISC, CISM, CGEIT, CISSP or equivalent certifications.