(J-886) | Digital Risk Manager
Pubblicato il 31-01-2025 - Generali Italia in Trieste
Generali is a major player in the global insurance industry - a strategic and highly important sector for the growth, development and welfare of modern societies.
Within the Group Risk Management area we are looking for a Digital Risk Manager. Being part of the Group Risk Management Head Office unit dedicated to the Digital Risk Management:
Digital Risk Identification
- Support the identification of potential threats and vulnerabilities to the organization’s people, processes and technology to enable IT risk measurement, management and reporting
- Define a comprehensive set of Digital risk scenarios
- Support the evolution of the IT & Cyber risk management methodology
- Support the rollout of the methodology group-wide,
creating a network of relationship with local stakeholders
Digital Risk Assessment
- Analyze Digital risk scenarios to determine the likelihood and impact of an identified risk
- Identify the current state of existing controls and evaluate their effectiveness for IT & Cyber risk mitigation
- Foster continuous alignment between Group and Local Business Units about risks, vulnerabilities, incidents
- Support special risk assessment, in particular on specific projects or emerging technologies
Digital Risk Response Mitigation
- Consult with risk owners to select and align recommended risk responses with business objectives and enable informed risk decisions
Digital Risk and Control Monitoring and Reporting
- Report on the performance of, changes to, or trends in the overall risk profile and control environment to relevant stakeholders to enable decision making
**Must have**
- 5+ years’ experience in IT/Cyber Security/Digital Risk Management or similar professional sector within complex organizations
**Nice to have**
- IT Processes, risk & controls framework and best practices
- IT and Network architecture
- Cyber Security Management Systems
- Risk Management processes and methodology based on best practices (ISO/IEC 27005:2018, COSO, ISO)
- The achievement of one or more of the following professional certifications is a plus: CISA, CISM, CGEIT, CRISC, ISO27001 LA, COBIT 5 Foundation, CSX Fundamentals, CSX Practitioner, CCAK, ITIL v3 Foundation, CIA, CRMA