Risk Management, Compliance and Information
vor 1 Woche
Background:
The OSCE has a comprehensive approach to security that encompasses politico-military, economic and environmental, and human aspects. It therefore addresses a wide range of security-related concerns, including arms control, confidence
- and security-building measures, human rights, combating human trafficking, national minorities, democratization, policing strategies, counter-terrorism and economic and environmental activities. All 57 participating States enjoy equal status, and decisions are taken by consensus on a politically, but not legally binding basis.
The OSCE Secretariat in Vienna assists the Chairpersonship in its activities, and provides operational and administrative support to the field operations, and, as appropriate, to other institutions.
The OSCE Secretariat’s Department of Management and Finance (DMF) is responsible for managing the material and financial resources of the Organization. The objective of DMF is to provide efficient and effective management of non-staff resources in support of OSCE programmatic activities. It provides policy guidance on the management of OSCE financial and material resources and develops and maintains OSCE Financial Regulations and Rules and Financial Administrative Instructions. DMF consists of Budget and Finance Services, Mission Support Section, Information and Communication Technology Section and the Information Security and Co-ordination Unit.
The Risk Management, Compliance and Information Security (RMCIS) Unit, in the Office of the Director, performs a diverse set of OSCE-wide governance, risk and compliance-related functions related to Second Line of Defence duties. In addition to overseeing the Organization's Risk Management Framework, co-ordinating the Internal Control system, and supporting Information Security, the Unit deals with the Secretariat’s Implementing Partner portfolio, OSCE-wide Data Privacy matters, and advises senior management on a host of related activities.
Tasks and Responsibilities:
The unit plays a Second Line of Defence role under the Three Lines of Defence model. It enables risk owners across OSCE to identify emerging risks in their daily operations, so that they can provide reasonable assurance on their objectives. It does this by providing compliance and oversight in the form of advisory work, frameworks, policies, tools, and techniques to support managers in their handling of their risks and the internal controls in place to manage those risks.
As Risk Management, Compliance and Information Security Officer, you will report to the Chief, Risk Management, Compliance and Information Security.
Functions required from the incumbent of the post are best understood as having two levels of analysis. At the basic level, the unit plays three distinct 2nd-line-of-defence roles: risk management; internal control; and information security. A second, superimposed level of analysis touches upon areas of activity that require playing one or more of the three roles for a given topic, namely: project reviews, including via implementing partners; a variety of internal consultancy work; the interpretation, review and redrafting of policies regulating daily operations across OSCE; and the deployment of digital fluency skills as an enabler and effect-multiplier helping the roles of RMCIS.
More specifically, you will be responsible for the following:
- Risk Management
- OSCE bases itself on ISO31000 standard. The incumbent will have a vertically-integrated approach to risk management, on two levels: at the basic level, handling and interprets risk-related information; providing risk assessments, whether qualitative or quantitative, on a variety of activities; collaborating with risk owners in the identification and assessment of emerging or current risks; preparing and compiling reports, summaries and presentations to communicate findings and providing advice to key stakeholders; collaborating with stakeholders on reporting and evaluation techniques to support the updating of relevant information feeding OSCE’s risk exposure;
- At a higher level, is responsible for (re)designing and implementing risk methodologies that can help with better decision-making and better processes at different levels of the organization.
2. Internal Control
- Oversees the effectiveness of the internal control system and practices, particularly as regards OSCE’s Common Regulatory Management System (CRMS);
- Whereas risk management monitors and assesses current and emerging risks, internal control co-ordinates the monitoring and reporting of risks by assessing the effectiveness of internal controls put in place to bring the risk exposure to within acceptable levels. It does so by assessing, drafting and communicating policies, guidance and advice on internal controls, including the coordination and challenge of mandatory checks and verifications by risk owners;
- Plays a major role in the annual Internal Control Walkthrough exercise, an impo
-
Senior Information Security and Risk Management
vor 1 Woche
Wien, Österreich OSCE Vollzeit**Background**: The OSCE has a comprehensive approach to security that encompasses politico-military, economic and environmental, and human aspects. It therefore addresses a wide range of security-related concerns, including arms control, confidence - and security-building measures, human rights, combating human trafficking, national minorities,...
-
Mitarbeiter:in Risk Management
vor 2 Wochen
Wien, Österreich IQAM Invest GmbH VollzeitIQAM Invest ist eine moderne Fonds-Manufaktur mit langer Markterfahrung. Seit mehr als 30 Jahren stehen unsere Kunden und ihre Ziele im Mittelpunkt unseres Tuns. Mit Standorten in Salzburg und Wien bietet IQAM Invest professionellen Anlegern erstklassige Investmentfonds und maßgeschneiderte Investmentlösungen an. Durch die Umsetzung aktueller...
-
Information Systems Compliance Manager
vor 1 Woche
Wien, Österreich Canonical - Jobs VollzeitThe Information Systems (IS) Compliance Manager leads our work to achieve relevant certifications such as SOC2 as well as compliance with regulatory frameworks such as GDPR, SOC2 and other relevant standards. This role is to ensure that Canonical conducts its business processes in compliance with laws and regulations, international standards, and accepted...
-
Regional Information Management and Technology
Vor 4 Tagen
Wien, Österreich International Organization for Migration VollzeitPosition Title**: Regional Information Management and Technology Officer** Duty Station**: Vienna, Austria** Classification**: Professional Staff, Grade P4** Type of Appointment**: Fixed term, one year with possibility of extension** Estimated Start Date**: As soon as possible** Closing Date**: 17 December 2024** - Established in 1951, IOM is a Related...
-
Consultant Risk Management
Vor 4 Tagen
Wien, Wien, Österreich Schulmeister Management Consulting Vollzeit € 65.000 - € 85.000 pro JahrConsultant Risk Management (m/w/d)Unternehmensberatung | Banken & Versicherungen | Work-Life-BalanceDeine Aufgaben:Du berätst Kunden bei der Harmonisierung von Prozessen und Methoden für verschiedene RisikoartenDu entwickelst quantitativ orientierte Prozesse und Methoden für verschiedene Risikoarten, wie z.B. Kreditrisiko und Liquiditätsrisiko...
-
Junior Compliance Officer
Vor 4 Tagen
Wien, Österreich BOC Information Technologies Consulting VollzeitYour role Improve existing compliance programs and processes by actively identifying information security requirements and applicable controls (in the context of ISMS) Develop, review, and adapt information security policies and procedures Assist with internal/external audits preparation and action plans to ensure proper implementation and operation of...
-
Leitung Risk- und Compliance Manager
Vor 6 Tagen
wien, Österreich PMC International GmbH VollzeitLeitung Risk- und Compliance Manager (all genders) Unser Auftraggeber ist eine unabhängige, bundesweit tätige Institution, deren Daten die Grundlage für faktenbasierte wirtschafts- und gesellschaftspolitische Entscheidungen bilden. Wir unterstützen unseren Kunden bei der Suche nach einem Experten bzw. einer Expertin im Bereich Risk- und Compliance...
-
Leitung Risk- und Compliance Manager
vor 1 Tag
Wien, Österreich PMC International GmbH VollzeitLeitung Risk- und Compliance Manager (all genders) Unser Auftraggeber ist eine unabhängige, bundesweit tätige Institution, deren Daten die Grundlage für faktenbasierte wirtschafts- und gesellschaftspolitische Entscheidungen bilden. Wir unterstützen unseren Kunden bei der Suche nach einem Experten bzw. einer Expertin im Bereich Risk- und Compliance...
-
Wien, Wien, Österreich Western Union Vollzeit € 50.000 - € 70.000 pro JahrInformation Security and Resilience Risk Manager– Vienna, AustriaAre you ready to take ownership of a high-impact cybersecurity and risk function in a global financial institution? Do you want to lead the oversight of DORA (Digital Operational Resilience Act) execution while influencing senior leadership and regulatory bodies? Join Western Union as an...
-
Wien, Wien, Österreich Western Union Vollzeit € 60.000 - € 120.000 pro JahrInformation Security and Resilience Risk Manager– Vienna, AustriaAre you ready to take ownership of a high-impact cybersecurity and risk function in a global financial institution? Do you want to lead the oversight of DORA (Digital Operational Resilience Act) execution while influencing senior leadership and regulatory bodies? Join Western Union as an...