- Location
- Genève - Avenue Giuseppe-Motta 50, Switzerland
- Type
- Full-time
- Department
- Legal
- Seniority
- Senior
- Clearance
- Required
- Source
- Workday
Description
Line of Service
AdvisoryIndustry/Sector
Not ApplicableSpecialism
Cybersecurity & PrivacyManagement Level
ManagerJob Description & Summary
- Lead and deliver multidisciplinary engagements that help clients determine the applicability and impact of cybersecurity laws and regulations across legal entities, jurisdictions, business services, products and supply chains.
- Translate legal and regulatory obligations into practical governance models, policies, control frameworks, target operating models and risk-based implementation roadmaps.
- Design, establish and enhance end-to-end cybersecurity compliance programmes, including regulatory inventories, obligation and control mapping, ownership models, evidence management, control testing, issue and remediation management, metrics, reporting and regulatory change monitoring.
- Perform regulatory readiness, gap and maturity assessments, define proportionate remediation measures, and support clients through implementation, testing and independent review.
- Advise clients on the capabilities required by applicable regulatory regimes, including cybersecurity risk management, incident response and regulatory reporting, third-party and supply-chain security, vulnerability management, secure product development, business continuity and executive oversight.
- Facilitate workshops and briefings with boards, executive management and stakeholders across Legal, Compliance, Risk, IT, Security, Product and Engineering, turning complex regulatory and technical matters into clear decisions and actions.
- Serve as a trusted advisor and key client contact, managing engagements end to end, including scope, delivery teams, budget, quality and stakeholder expectations.
- Develop long-term client relationships and contribute to the growth of our practice through new offerings, thought leadership, industry events and collaboration across the PwC network.
- Coach and develop team members and contribute to a collaborative, inclusive and quality-driven working environment.
- You have at least five years of relevant experience in cybersecurity governance, risk and compliance, technology or digital regulation, information security, digital resilience, or a related field. Experience gained in consulting, a Big Four firm, a regulated organisation, or a technology or product company is particularly relevant.
- You have practical knowledge of one or more cybersecurity regulatory regimes, such as NIS2 and its national implementations, the Cyber Resilience Act, DORA, FINMA requirements, or comparable Swiss and international sector-specific requirements.
- You have proven experience translating regulatory requirements into executable compliance programmes, governance arrangements, controls and operational processes.
- You have led or contributed to regulatory applicability assessments, readiness or gap assessments, control mapping, remediation programmes, regulatory change initiatives or compliance assurance engagements.
- You understand cybersecurity governance and risk-management practices and are familiar with relevant standards and frameworks, such as ISO/IEC 27001 and 27002, the NIST Cybersecurity Framework, CIS Controls and, where relevant, IEC 62443 or secure software and product-development practices.
- You hold a bachelor’s or master’s degree in cybersecurity, information security, information systems, engineering, business or a related field, or have an equivalent professional qualification.
- Professional certifications such as CISSP, CISM, ISO 27001 Lead Implementer or Lead Auditor, or a relevant project-management qualification are an advantage.
- You demonstrate strong project-management, analytical, communication and presentation skills, with the ability to engage senior stakeholders and bridge legal, business and technical perspectives.
- You have a commercial mindset and experience contributing to proposals, market development and long-term client relationships.
- You are fluent in English. German and/or French are a strong advantage.
Education (if blank, degree and/or field of study not specified)
Degrees/Field of Study required:Degrees/Field of Study preferred:Certifications (if blank, certifications not specified)
Required Skills
Optional Skills
Accepting Feedback, Accepting Feedback, Active Listening, Agile Methodology, Analytical Thinking, Azure Data Factory, Coaching and Feedback, Communication, Creativity, Cybersecurity, Cybersecurity Framework, Cybersecurity Policy, Cybersecurity Requirements, Cybersecurity Strategy, Embracing Change, Emotional Regulation, Empathy, Encryption Technologies, Inclusion, Intellectual Curiosity, Learning Agility, Managed Services, Optimism, Privacy Compliance, Professional Courage {+ 13 more}Desired Languages (If blank, desired languages not specified)
Travel Requirements
Available for Work Visa Sponsorship?
Government Clearance Required?
Job Posting End Date