Senior Information Security Risk Analyst
ExternalPrepare for this interview
EliteAI-generated questions, company research, and talking points tailored to this role
About the role
We're the world's leading provider of secure financial messaging services, headquartered in Belgium. We are the way the world moves value - across borders, through cities and overseas. No other organisation can address the scale, precision, pace and trust that this demands, and we're proud to support the global economy. We're unique too. We were established to find a better way for the global financial community to move value - a reliable, safe and secure approach that the community can trust, completely. We're always striving to be better and are constantly evolving in an ever-changing landscape, without undermining that trust. Five decades on, our vibrant community reflects the complexity and diversity of the financial ecosystem. We innovate diligently, test exhaustively, then implement fast. In a connected and exciting era, our mission has never been more relevant. Swift now has a presence in 200+ countries and legal territories to serve a community of more than 12,000 banks and financial institutions. Are you passionate about security Governance, Risk and Compliance (GRC)? Do you thrive in a dynamic environment where your experience and your security expertise can shape the future of our organization? We are looking for a Cyber Risk/Information Security Risk Specialist like you to join our growing Information Security Governance team. In this role, you will: Support information security risk assessments across business initiatives, technologies, and third‑party engagements, ensuring risks to confidentiality, integrity, and availability are properly identified, assessed, and documented. Maintain and continuously improve the security risk management framework, including methodologies, policies, standards, and supporting documentation. Coordinate the monitoring, reporting, and escalation of security risks, including maintaining the Security Risk Registry and supporting risk review and decision forums. Partner with stakeholders across Technology, Business, and Security teams to ensure consistent risk treatment, risk acceptance, and remediation tracking in line with risk appetite. Contribute to security governance activities, including preparation of management and committee reporting, metrics, and risk insights for senior stakeholders. Support compliance with regulatory, oversight, and audit expectations by providing clear evidence of effective information security risk management. Promote risk awareness and security-by-design by advising on controls, design decisions, and risk trade‑offs throughout the lifecycle of projects, products, and services. Act as a trusted subject‑matter expert on cyber and information security risk, continuously tracking emerging threats, control gaps, and best practices.
Responsibilities
- You have the unique talent of marrying business concepts, including SWIFT services, operations and technologies with information security risks and compliance obligations.
- You have excellent inter-personal skills and can manage relationships effectively. You are able to see win-win outcomes and drive discussions toward such outcomes.
- While you will follow a standardized approach, you will innovate and change processes as needed. You will spot areas of improvement and work towards making meaningful changes. You will ensure that SWIFT tackles the most urgent and highest priorities, using data and your analytical skills.
Requirements
- What will make you successful
- Technical skills & knowledge:
- Broad knowledge of cyber security concepts including cryptography, authentication and authorization, access control, secure architectures, threat modeling, vulnerabilities and software security.
- Strong knowledge of regulatory requirements (e.g. GDPR, ISO27001, PCI-DSS) and experience in regulatory reporting.
- 3-5 years of experience in GRC and/or security risk management
- A bachelor's degree in computer science, Cyber Security or similar disciplines.
- Excellent interpersonal skills and the ability to communicate effectively with technical and non-technical audience.
- Good analytical skills to translate complex GRC activities into clear and actionable insight.
- Relevant security certifications (e.g. CRISC, CISA, CISSP) are a plus.
- Expertise in cyber security working for financial institutions or other critical infrast
Benefits
Your Match
How well this role fits your profile.
Company Intel
What employees say
Worked at swift? Share your experience