Information Security Specialist
at Deutsche Bank
București, Municipiul București, Romania -
Start Date | Expiry Date | Salary | Posted On | Experience | Skills | Telecommute | Sponsor Visa |
---|---|---|---|---|---|---|---|
Immediate | 01 Feb, 2025 | Not Specified | 02 Nov, 2024 | N/A | Sig,Nist,Information Security,Ccm | No | No |
Required Visa Status:
Citizen | GC |
US Citizen | Student Visa |
H1B | CPT |
OPT | H4 Spouse of H1B |
GC Green Card |
Employment Type:
Full Time | Part Time |
Permanent | Independent - 1099 |
Contract – W2 | C2H Independent |
C2H W2 | Contract – Corp 2 Corp |
Contract to Hire – Corp 2 Corp |
Description:
POSITION OVERVIEW
Job Title: Information Security Specialist
OVERVIEW
We are looking for a knowledgeable Information Security Specialist to operate as a member of the Chief Security Office (CSO) Third Party Security team (TPS). As an Information Security Specialist, you will be responsible for supporting the development, execution, and maintenance of Deutsche Bank’s information security strategy and program under the management of the CSO. You will work in strategic alignment and partnership with Deutsche Bank’s vendor risk management program under Third Party Management (TPM).
YOUR SKILLS AND EXPERIENCE:
Knowledge of technical and organizational controls regarding Information Security, and Risk Management principles
Experience with ISO27001 standard and current industry and agency standards, best practices and frameworks including NIST, ENISA, ISO27001, ISO27017, SOC2, SoX, PCI, and MITRE ATT&CK
Understanding of Governance Risk and Control (GRC) tools, services, frameworks, and best practices
Experience with standardized assessment programs such as the Cloud Security Alliance (CSA), Cloud Controls Matrix (CCM), and CSS Consensus Assessment Initiative Questionnaire (CAIQ), Shared Assessment Program (SIG), etc will be an added advantage.
Understanding of financial regulations which impact information security.
We strive for a culture in which we are empowered to excel together every day. This includes acting responsibly, thinking commercially, taking initiative and working collaboratively.
Together we share and celebrate the successes of our people. Together we are Deutsche Bank Group.
We welcome applications from all people and promote a positive, fair and inclusive work environment
Responsibilities:
Support and coordinate Vendor Information Security Review processes, track vendors and services, escalate issues, when necessary, negotiate with vendor security, and legal team on the contractual security obligations
Assist with compliance and risk assessment programs which support corporate wide security programs, and participate in additional key control projects related to the overall enhancement of the assessment function
Conduct Risk evaluation and business impact analysis of the identified gaps, and provide comprehensive documentation of the identified gaps
Review vendor policies related to Information Security, comparison, and gap analysis to the Deutsche Bank security requirements
Track vendors and services, escalate issues when necessary, negotiate with vendor security and legal team on the contractual security obligations
Formulate remediation recommendations, and actively work with vendors and project managers on Information Security related findings to resolve issues as quickly as possible to help build and strengthen the relationship
REQUIREMENT SUMMARY
Min:N/AMax:5.0 year(s)
Information Technology/IT
IT Software - Network Administration / Security
Systems Administration
Graduate
Proficient
1
București, Romania