At Franklin Templeton, we’re advancing our industry forward by developing new and innovative ways to help our clients achieve their investment goals. Our dynamic and diversified firm spans asset management, wealth management, and fintech, offering many ways to help investors make progress toward their goals.
What is an ICT Risk Officer / Business Information Security Officer (BISO) responsible for?
The ICT Risk Officer / Business Information Security Officer (BISO) will provide oversight, strategy and serve as a trusted advisor on behalf of FTIS, Luxembourg ManCo and Global Service Organizations. This role provides support, leadership and guidance for Franklin Templeton Risk, Security and Technology programs supporting local and enterprise business initiatives.
This role works with the business across multiple services to enhance and mature risk frameworks while advising decisions with business, technical and security risk in mind. The role must understand information security risks, governance, technologies and local regulations. As a business enabler, the Risk Officer and BISO role is an effective communicator with the technical aptitude to drive risk fundamentals into aspects of the business.
What are the ongoing responsibilities of a Business Information Security Officer?
- Serve as a trusted advisor with FTIS, Luxembourg ManCo Conducting Officer(s) and business leadership.
- Work closely with risk, security and business leadership to instill policies and practices to address operational, incident, application and infrastructure risk.
- Act as a liaison to ensure practices are built into business initiatives for the entire lifecycle.
- Be actively informed and engaged in projects and strategic efforts across the business.
- Enforce the strong risk and security culture, ensuring uniformity across risk leadership, business units and employees.
- Advise business units on enterprise-wide people, process and technology security recommendations.
- Maintain up-to-date knowledge related to security threats, vulnerabilities and mitigations set forth to reduce the attack surface; circulate this knowledge through the business units.
- In conjunction with security and Conducting Officer(s), define key performance indicators (KPIs), metrics and reports.
- Stay abreast of new laws, regulations and standards, and assess their business impact. Act as point of contact with the CSSF.
- Review and approve risk exceptions (with the support of the Conducting Officer).
- Support Security and Risk Audit Process and Procedures.
What ideal qualifications, skills & experience would help someone to be successful?
Required Qualifications:
- 6-10 years cybersecurity and/or risk experience (or information technology coupled with cybersecurity).
- Strong written and verbal communication skills across all levels of the organization.
- Capable of working with diverse teams and promoting an enterprise-wide positive security culture.
- High level of integrity, trustworthiness and confidence, and able to represent the company and security leadership with the highest level of professionalism.
- Adept at understanding business focus and processes and ability to inject cybersecurity into the business through teamwork and influence.
- Experience leading geographically distributed and culturally diverse workgroups.
- Excellent written and verbal communication skills, French and English language fluency strongly preferred.
- Strong organization and planning skills.
- Strong interpersonal / relationship management skills.
- Bachelor's degree in Computer Information Systems, Computer Science, or an equivalent combination of education, certification, and experience.
Desired Qualifications:
- Experience in Financial Services.
- CISSP, CRISC, CISM and/or SANS certification a plus.
- Prior experience in a Risk, IT Engineering, Architect or Operations Service Delivery role.
Franklin Templeton is an Equal Opportunity Employer. We are committed to providing equal employment opportunities to all applicants and existing employees.