Information Security, Officer at State Street
Kraków, małopolskie, Poland -
Full Time


Start Date

Immediate

Expiry Date

26 Jun, 25

Salary

0.0

Posted On

26 Mar, 25

Experience

0 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Email, Research, Information Security, Word Processing, Power Bi, Computer Skills, Cisa, Business Requirements, Plus, Sharepoint, Cissp

Industry

Financial Services

Description

The Information Security Analyst - Officer will be part of a team responsible for ensuring the security of the business and functional teams are in line with company security policy and risk tolerances. Information Security Analyst will drive compliance with global cybersecurity controls in their business unit/region/country/functional area which they represent.
We are searching for a strong cyber controls analyst with experience in project management and identifying cyber risk aligned to business functions. The Information Security Analyst will support Protection Needs Analysis program within State Street Bank International. This candidate should be able to correlate State Street cyber risk taxonomy aligned to applicable business processes to conclude on the residual cyber risks aligned to the business functions and critical business services.

Responsibilities

  • Support implementation and maintenance of information security risk assessment processes and procedures in accordance with regulatory requirements (ECB, DORA, EBA Guidelines etc.)
  • Collaborate with key stakeholders to identify information assets and assess the protection needs requirements for the entire line of business and legal entity.
  • Monitor the completion of protection needs analysis in State Street Bank International, managing escalation, and preparing reports
  • Being able to establish and maintain continuous improvement practices for the protection needs analysis function
  • Actively participate in cyber risk forums and committees with other stakeholders including Executive Management, Internal Audit, Enterprise Technology Risk Management, Compliance, Legal, and Regulatory
  • Presenting to mid to senior level executive leadership on protection needs outcomes and controls
  • Integrate information security risk review into lifecycle processes such as Incident Management, Vulnerability Management, Third-Party Risk Review, Cyber Resiliency, SDLC, Change and Project management
  • Assess information security risk associated with high risk/critical business processes and technology and apply information security supplemental requirements to mitigate risk

Competencies and Qualifications

The Information Security Analyst should possess the following skills/experience.

  • 4+ years of experience in information security, preferably in a risk management capacity
  • Project Management experience leading successful completion
  • Modern technical understanding and experience developing and implementing innovated techniques to delivering cost efficient security solutions
  • Experience with business concepts including financial, business requirements, compliance, and risk management
  • Strong analytical, communication, research, and organizational skills
  • Experience with European Central Bank (ECB) ICT guidelines and EBA Guidelines) guidelines preferable but not required
  • Strong computer skills including knowledge of word processing, spreadsheet, email and collaborative tools
  • Knowledge of SharePoint – List Building, Views, Workflows, Permissions, Power BI and/or Power Query, InfoPath a plus
  • CISSP, CISM, CRISC, CISA or similar certification a plus

We Offer:

  • Permanent contract of employment from day one
  • Additional holidays (Birthday Day Off, 3rd and 5th year anniversary Day Off)
  • Gold medical package for employees and their families (partner and children)
  • Premium life insurance package and private pension plan
  • Employee savings plan
  • Multisport Card
  • Wide range of soft skills training, technical workshops, language classes and development programs
  • Opportunities to volunteer your time to company-driven initiatives, employee networks or organizations of your choice
  • Variety of well-being programs
  • Technical or leadership career pathway

Are you the right candidate? Yes!
We truly believe in the power that comes from the diverse backgrounds and experiences our employees bring with them. Although each vacancy details what we are looking for, we don’t necessarily need you to fulfil all of them when applying. If you like change and innovation, seek to see the bigger picture, make data driven decisions and are a good team player, you could be a great fit.
Why this role is important to us
Our technology function, Global Technology Services (GTS), is vital to State Street and is the key enabler for our business to deliver data and insights to our clients. We’re driving the company’s digital transformation and expanding business capabilities using industry best practices and advanced technologies such as cloud, artificial intelligence and robotics process automation.
We offer a collaborative environment where technology skills and innovation are valued in a global organization. We’re looking for top technical talent to join our team and deliver creative technology solutions that help us become an end-to-end, next-generation financial services company.
Join us if you want to grow your technical skills, solve real problems and make your mark on our industry.
About State Street
What we do. State Street is one of the largest custodian banks, asset managers and asset intelligence companies in the world. From technology to product innovation, we’re making our mark on the financial services industry. For more than two centuries, we’ve been helping our clients safeguard and steward the investments of millions of people. We provide investment servicing, data & analytics, investment research & trading and investment management to institutional clients.
Work, Live and Grow. We make all efforts to create a great work environment. Our benefits packages are competitive and comprehensive. Details vary by location, but you may expect generous medical care, insurance and savings plans, among other perks. You’ll have access to flexible Work Programs to help you match your needs. And our wealth of development programs and educational support will help you reach your full potential.
Inclusion, Diversity and Social Responsibility. We truly believe our employees’ diverse backgrounds, experiences and perspectives are a powerful contributor to creating an inclusive environment where everyone can thrive and reach their maximum potential while adding value to both our organization and our clients. We warmly welcome candidates of diverse origin, background, ability, age, sexual orientation, gender identity and personality. Another fundamental value at State Street is active engagement with our communities around the world, both as a partner and a leader. You will have tools to help balance your professional and personal life, paid volunteer days, matching gift programs and access to employee networks that help you stay connected to what matters to you.
State Street is an equal opportunity and affirmative action employer.
State Street’s Speak Up Lin

Responsibilities
  • Support implementation and maintenance of information security risk assessment processes and procedures in accordance with regulatory requirements (ECB, DORA, EBA Guidelines etc.)
  • Collaborate with key stakeholders to identify information assets and assess the protection needs requirements for the entire line of business and legal entity.
  • Monitor the completion of protection needs analysis in State Street Bank International, managing escalation, and preparing reports
  • Being able to establish and maintain continuous improvement practices for the protection needs analysis function
  • Actively participate in cyber risk forums and committees with other stakeholders including Executive Management, Internal Audit, Enterprise Technology Risk Management, Compliance, Legal, and Regulatory
  • Presenting to mid to senior level executive leadership on protection needs outcomes and controls
  • Integrate information security risk review into lifecycle processes such as Incident Management, Vulnerability Management, Third-Party Risk Review, Cyber Resiliency, SDLC, Change and Project management
  • Assess information security risk associated with high risk/critical business processes and technology and apply information security supplemental requirements to mitigate ris
Loading...