Ipswich, UK or Paris, France
AXA XL is an Equal Opportunity Employer.
The Policy and Standards Specialist is an expanding role and entails managing and communicating the changes to the AXA XL Information Security Policy (ISP) and supporting Standards, for the reference and benefit of all employees and contractors.
What you’ll be doing
What will your essential responsibilities include?
Responsibilities
The specialist will work under the responsibility of The Head of IS Services & Risk Management and will report to the Security Policy & Standards Lead. The responsibilities will include the following:
- You must have a established IT background and good understanding of IT and Security technologies
- Translating technical jargon and complex IT risks into business language is a must
- Maintaining the ISP and Standards, ensuring proposed changes are evaluated, writing additional Standards and Guidelines
- Capture updates from both AXA Group and AXA XL stakeholders
- Participate in the AXA Group Policy Working Group (PWG), make suggestions and provide feedback on proposed changes. Perform gap analysis of changes against AXA XL ISP and Standards, highlight differences and discuss with stakeholders to see what effort would be required to comply, if this is to be a BAU activity or project
- Prepare and present new and existing security policies and standards requiring change to the Information Security Steering Committee (ISSC) for discussion, answering questions and seeking approval
- Present Information Security Policy and Security Standards updates to the Security Committee (SecCom) including C-level participants.
- Maintain and improve the Policy and Standards Tracker, ensuring all changes are accurately recorded
- Provide formal feedback to AXA Group Security on changes agreed or rejected by AXA XL
- Ensure all IS documentation is reviewed at least annually, recording approved updates
- Use diverse sources to monitor emerging threats and technologies, perform gap analysis against the existing ISP and Standards and produce recommended updates for the ISSC to review
- Promote use of the ISP and Standards across AXA XL by collaborating with Internal Communications and other team leads as required
- Provide guidance in response to questions on ISP and Standards requirements
- Maintain and update the Policies and Standards page of the IS SharePoint site
What you’ll bring
We’re looking for someone who has these abilities and skills:
Required Skills And Abilities
- Hold an active ISC2 CISSP or ISACA CISM certification (Required)
- A good understand of Cloud technologies (Preferred).
- Effective English written and verbal skills mandatory
- Proficient in writing security policies and security standards (Required)
- Expert analytical and reporting skills (Required)
- Expert in Microsoft Office (Word, Excel, PowerPoint, SharePoint) (Required)
- Ability to effectively communicate and positively influence diverse stakeholders and team members (Required)
- Excellent attention to detail and the ability to create clear, concise and engaging presentations (Required)
Desired Skills And Abilities
- Experience in global companies (Preferred)
- Experience in information security management reporting and related methodologies (Preferred)
- Experience in implementing ISO 27001/NIST/CSA (Preferred)
- Knowledge of Information Security and Information Technology in relation to application of Policies (Preferred)
What we offer
Inclusion
AXA XL is committed to equal employment opportunity and will consider applicants regardless of gender, sexual orientation, age, ethnicity and origins, marital status, religion, disability, or any other protected characteristic. At AXA XL, we know that an inclusive culture and enables business growth and is critical to our success. That’s why we have made a strategic commitment to attract, develop, advance and retain the most inclusive workforce possible, and create a culture where everyone can bring their full selves to work and reach their highest potential.
It’s about helping one another — and our business — to move forward and succeed.
- Five Business Resource Groups focused on gender, LGBTQ+, ethnicity and origins, disability and inclusion with 20 Chapters around the globe.
- Robust support for Flexible Working Arrangements
- Enhanced family-friendly leave benefits
- Named to the Diversity Best Practices Index
- Signatory to the UK Women in Finance Charter
Learn more at axaxl.com/about-us/inclusion-and-diversity. AXA XL is an Equal Opportunity Employer.
Total Rewards
AXA XL’s Reward program is designed to take care of what matters most to you, covering the full picture of your health, wellbeing, lifestyle and financial security. It provides competitive compensation and personalized, inclusive benefits that evolve as you do.
We’re committed to rewarding your contribution for the long term, so you can be your best self today and look forward to the future with confidence.
Sustainability
At AXA XL, Sustainability is integral to our business strategy. In an ever-changing world, AXA XL protects what matters most for our clients and communities. We know that sustainability is at the root of a more resilient future. Our 2023-26 Sustainability strategy, called “Roots of resilience”, focuses on protecting natural ecosystems, addressing climate change, and embedding sustainable practices across our operations.
Our Pillars
- Valuing nature: How we impact nature affects how nature impacts us. Resilient ecosystems - the foundation of a sustainable planet and society - are essential to our future. We’re committed to protecting and restoring nature - from mangrove forests to the bees in our backyard - by increasing biodiversity awareness and inspiring clients and colleagues to put nature at the heart of their plans.
- Addressing climate change: The effects of a changing climate are far-reaching and significant. Unpredictable weather, increasing temperatures, and rising sea levels cause both social inequalities and environmental disruption. We're building a net zero strategy, developing insurance products and services, and mobilizing to advance thought leadership and investment in societal-led solutions.
- Integrating ESG: All companies have a role to play in building a more resilient future. Incorporating ESG considerations into our internal processes and practices builds resilience from the roots of our business. We’re training our colleagues, engaging our external partners, and evolving our sustainability governance and reporting.
- AXA Hearts in Action: We have established volunteering and charitable giving programs to help colleagues support causes that matter most to them, known as AXA XL’s “Hearts in Action” programs. These include our Matching Gifts program, Volunteering Leave, and our annual volunteering day - the Global Day of Giving.
For more information, please see axaxl.com/sustainability.
Who we are
AXA XL, the P&C and specialty risk division of AXA, is known for solving complex risks. For mid-sized companies, multinationals and even some inspirational individuals we don’t just provide re/insurance, we reinvent it.
How? By combining a comprehensive and efficient capital platform, data-driven insights, leading technology, and the best talent in an agile and inclusive workspace, empowered to deliver top client service across all our lines of business − property, casualty, professional, financial lines and specialty.
With an innovative and flexible approach to risk solutions, we partner with those who move the world forward.
Learn more at axaxl.com