CERN Organisation Européenne pour la Recherche Nucléaire
Governance, Risk and Compliance Lead (CIO-2026-108-LD)
📍 Geneva
Role and responsibilities
Lead and coordinate Governance, Risk, and Compliance activities across the Office of the CIO (OCIO). Represent the OCIO in senior management forums and technical committees, ensuring alignment and visibility. Develop and manage OCIO work plans, monitor progress, and proactively flag risks or issues to the CIO. Serve as the primary point of contact for all audit-related matters within the CIO function.
Team / description
At CERN, the European Organization for Nuclear Research, physicists and engineers are probing the fundamental structure of the universe. Using the world's largest and most complex scientific instruments, they study the basic constituents of matter - fundamental particles that are made to collide together at close to the speed of light. The process gives physicists clues about how particles interact, and provides insights into the fundamental laws of nature. Our groundbreaking work brings together not only physicists but also a diverse range of professionals from engineering, technical, scientific, and administrative fields. Together, we foster an environment where innovation and collaboration thrive. Diversity is a core value of CERN since its foundation, and it remains central to our mission and continued success.
Qualifications and Skills
Master's Degree or PhD or equivalent relevant experience in the field of Information Technology or a related field.
Ability to design and implement policy frameworks in areas such as data governance, cybersecurity and computing architecture.
Experience of stakeholder-management including facilitating multi-party collaboration.
Excellent analytics skills with an ability to work effectively in a federated environment with distributed responsibilities.
Understand risk management methodologies and enterprise risk frameworks.
Familiarity with cybersecurity standards and best practices (such as ISO 27001, NIST).
Architecture and design of ICT systems.
Process analysis, definition and improvement.
Implementation of vision and strategic agility.
Knowledge of best practices for implementing ICT security standards and policies.
Risk management.