Information Security Specialist for Second Line of Defense

vor 4 Wochen


Frankfurt am Main, Hessen, Deutschland Deutsche Börse AG Vollzeit

Your Area of Expertise:

The Chief ICT Risk Officer/CISO at Deutsche Börse Group combines IT and IS risk management in the 2nd Line of Defense. The department's mandate is to set the IT and IS risk governance and framework, control objectives, control review methodology, and risk assessment methodology. Additionally, they conduct independent risk assurance of 1st LoD IT and IS controls and monitor and report on the level of IT and IS risk.

Your Responsibilities:

  • Prepare and execute assessments/testing to ensure that control requirements are effectively implemented by the first line.
  • Prepare assessment reports and communicate findings to relevant managers within designated departments or units.
  • Follow up on nonconformities and recommended improvements related to assessments to ensure timely resolution and implementation.
  • Participate in the continual improvement and provide support in second-line ICT Risk Assurance methodology, frameworks, and processes to ensure their ongoing effectiveness.
  • Support the development and organization of the scope for ICT risk assurance activities.
  • Identify areas of weakness and potential for improvement, devising practical solutions to enhance controls and processes.
  • Validate regulatory nonconformities and corrective actions to ensure compliance with relevant regulations and standards.
  • Provide guidance and support for ad-hoc assessment topics as needed.

Your Profile:

  • Successfully completed a university degree (bachelor, master, or comparable) in a relevant field.
  • At least two years of professional experience in IT and Information Security performing external audit/internal audit/second-line assurance/implementation.
  • Experience working in the financial sector (ideally in EU-regulated financial services), with familiarity with regulations such as BAIT, MaRisk, CSSF, and DORA.
  • Proven knowledge of common IT standards such as CSA-CCM, COBIT, BSI Grundschutz, ITIL, ISO/IEC 27000 series, and professional certifications, e.g., CISA, CISM, CISSP, CEH, or CIA.
  • Strong understanding of the Three Lines of Defense model, risk management frameworks, methodologies, and best practices.
  • High analytical skills, quick conceptual understanding of complex matters, and thinking outside the box.
  • Strong interpersonal skills, organizational talent, ability to work under pressure, assertiveness, communication style in line with seniority, with a focus on clarity and integrity.
  • Effective communication and report-writing skills.
  • Very good knowledge of the English language, both written and spoken; German is an advantage.

Why Deutsche Börse Group?

We are committed to providing a work environment where everyone feels welcome and can reach their full potential. Our standards go far beyond simply matching candidates with the right position.

Mobility:

We enable you to move freely with our job tickets, job (e-)bikes, and free parking opportunities.

Work Environment:

Collaboration, communication, or deep focus – in our modern office buildings, you will find the perfect work environment. Free drinks and food, and meal allowances included.

Health and Wellbeing:

We care for your health and wellbeing, and besides various health promotion measures, we offer you a group accident insurance and additional insurance offers at discounted rates.

Financial Stability:

We provide financial stability by offering attractive salaries, company pension schemes, participation in our Group Share Plan, as well as bonuses, subsidies, and discounts.

Hybrid Work:

Collaborate and exchange on-site or work remotely several days a week in line with business needs and local regulations. Our hybrid working model combines the best of both worlds.

Flexible Working Hours:

We want your job to fit your life situation and offer flexible working time models, childcare allowance, or the possibility to study alongside your job.

Internationality:

Our market infrastructures are globally connected. Working with us means collaborating with like-minded colleagues across over 60 locations from more than 100 nations.

Development:

We promote individual development by offering internal development programs, mentoring, further education, and training budgets.



  • Frankfurt am Main, Hessen, Deutschland Deutsche Börse AG Vollzeit

    Your area of work:The Chief ICT Risk Officer/CISO combines IT and IS Risk Management in the 2nd Line of Defense. The department's mandate is to set the IT and IS risk governance and framework, set the control objectives, control review methodology, and risk assessment methodology. They conduct independent risk assurance of 1st LoD IT and IS controls and...


  • Frankfurt am Main, Hessen, Deutschland Deutsche Börse AG Vollzeit

    Your area of work:The Chief ICT Risk Officer/CISO combines IT and IS Risk Management in the 2nd Line of Defense. The department's mandate is to set the IT and IS risk governance and framework, set the control objectives, control review methodology, and risk assessment methodology. They conduct independent risk assurance of 1st LoD IT and IS controls and...


  • Frankfurt am Main, Hessen, Deutschland 360T Vollzeit

    About the RoleWe are seeking a highly motivated and experienced Information Security Specialist to join our team at 360T. As a key member of our Information Security and Data Protection Team, you will be responsible for ensuring the security and integrity of our systems and data.Key ResponsibilitiesDevelop and implement security policies and procedures to...


  • Frankfurt am Main, Hessen, Deutschland Deutsche Börse AG Vollzeit

    Your role in our team:You will be a key member of our central Information Security 2nd Line of Defence team, embedded in the Chief Risk Officer area of Deutsche Börse Group. This function provides effective independent oversight and monitoring of information security. Within the IS Risk team, you will contribute to all 2nd line of defence processes, which...


  • Frankfurt am Main, Hessen, Deutschland Deutsche Bank Vollzeit

    Job Description: As a key member of the Deutsche Bank team, we are seeking an experienced Information Security Specialist/Expert to join our Digital Asset Custody (DAC) project. The successful candidate will be responsible for managing information security and its risks within the DAC project. The ideal candidate will have a strong background in...


  • Frankfurt am Main, Hessen, Deutschland Deutsche Bank Vollzeit

    Job Description:As an Information Security Specialist, you will be responsible for implementing and further developing the Segregation of Duties (SoD) approach within Deutsche Bank. This involves close collaboration with an international project team to ensure effective separation of functions and compliance with regulatory requirements. Your tasks will...


  • Frankfurt am Main, Hessen, Deutschland 360T Vollzeit

    About the RoleWe are seeking a highly motivated and detail-oriented Information Security Specialist to join our team at 360T. As a Junior Cybersecurity Manager, you will be responsible for ensuring the security and integrity of our systems and data.Key ResponsibilitiesEnsure awareness and alignment on security and data protection topicsExecute and improve...


  • Frankfurt am Main, Hessen, Deutschland GEODIS Vollzeit

    Job OverviewWe are seeking a highly skilled Strategic Defense Industry Account Manager to join our team at GEODIS. This role will be responsible for developing a strong pipeline of prospective customers in the Defense Industry and maintaining customer relationships that correspond with customer needs.Key ResponsibilitiesDevelop a strong pipeline of...


  • Frankfurt am Main, Hessen, Deutschland GEODIS Vollzeit

    Job OverviewWe are seeking a highly skilled Strategic Defense Industry Account Manager to join our team at GEODIS. As a key member of our Business Development team, you will be responsible for developing and maintaining strong relationships with our customers in the Defense Industry.Key ResponsibilitiesDevelop a strong pipeline of prospective customers in...


  • Frankfurt am Main, Hessen, Deutschland DB Energie GmbH Vollzeit

    StellenbeschreibungZum nächstmöglichen Zeitpunkt suchen wir dich als Senior Information Security Manager:in Risk & Audit (w/m/d) für die DB Energie GmbH am Standort Frankfurt (Main).Deine Aufgaben:Als Senior Information Security Manager:in Risk & Audit bist du verantwortlich für die Implementierung und Weiterentwicklung des Information Security...


  • Frankfurt am Main, Hessen, Deutschland METROl Vollzeit

    About METRO.digitalWe are a leading international wholesaler specializing in food, and we're driving the technology for our digital transformation. Our team is passionate about food and hunger for tech, and we're looking for talented individuals to join us in shaping the future of wholesale.Job SummaryWe're seeking a highly skilled Business Information...


  • Frankfurt am Main, Hessen, Deutschland 360T Vollzeit

    About the RoleAs a Junior Information Security Manager at 360T, you will be part of a dynamic team responsible for maintaining and improving our state-of-the-art security organization and setup. Your primary goal will be to ensure compliance with applicable laws and standards, including ISO27001, BAIT, and GDPR.Your ResponsibilitiesEnsure awareness and...


  • Frankfurt am Main, Hessen, Deutschland Deutsche Bank Vollzeit

    Job Title: Information Security Risk Team LeadAbout the Role:We are seeking an experienced Information Security Risk Team Lead to join our team at Deutsche Bank. As a key member of our Information Security team, you will be responsible for leading a team of specialists in identifying, assessing, and mitigating information security risks across the...


  • Frankfurt am Main, Hessen, Deutschland GEODIS Vollzeit

    Position description Job role As a Regional Key Account Manager - Defense Sector, you will be responsible for developing a strong pipeline of prospective customers in the Defense Industry and maintaining customer relationships that correspond with customer needs. Key responsibilitiesDeveloping a strong pipeline of prospective customers in the Defense...


  • Frankfurt am Main, Hessen, Deutschland Deutsche Börse AG Vollzeit

    About the RoleThe Group Security department plays a critical role in the Deutsche Börse Group's information security strategy. As a central service provider, Group Security is responsible for protecting information assets by enforcing information security controls based on regulatory requirements and international standards like ISO 27000-series.Your...


  • Frankfurt am Main, Hessen, Deutschland Geodis Interservices Vollzeit

    We are seeking a seasoned Defense Industry expert to join our team as a Regional Key Account Manager. In this role, you will be responsible for developing a strong pipeline of prospective customers in the Defense Industry and maintaining customer relationships that meet their needs.Key responsibilities include:Creating a Defense Win Plan for Europe in line...


  • Frankfurt am Main, Hessen, Deutschland Control Risks Vollzeit

    Cyber Security Risk Assessment SpecialistControl Risks is seeking an experienced Cyber Security Risk Assessment Specialist to join its rapidly growing Digital Risks team. This is a unique opportunity that requires a highly motivated and diligent individual to help deliver Control Risks' cyber security risk assessment engagements primarily across the EMEA...


  • Frankfurt am Main, Hessen, Deutschland Deutsche Börse AG Vollzeit

    About the Role:The Deutsche Börse Group is seeking a highly skilled Cyber Security Threat Detection Specialist to join our team. As a key member of our Cyber Defense Framework team, you will be responsible for defining comprehensive requirements, setting strategic goals, and conducting maturity evaluations to enhance our threat detection capabilities.Your...


  • Frankfurt am Main, Hessen, Deutschland PAYONE Gmbh Vollzeit

    Wir suchen in Vollzeit für PAYONE in Frankfurt am Main:Third Party Risk Specialist ProcurementDein Verantwortungsbereich umfasst die operative Steuerung des Third-Party-Risk-Prozesses als Schnittstelle zwischen der 1. und 2. Line of Defense und die Sicherstellung von Complianceanforderungen.Du führst Due-Diligence-Bewertungen und -Freigaben durch und...


  • Frankfurt am Main, Hessen, Deutschland Interxion Vollzeit

    About the RoleThe Chief Information Security Officer provides technical service to Data Center security systems and supervises external parties contracted to maintain all security systems. This position is responsible for the technical functioning of the internal security systems and security-related local applications, as well as providing 1-3 level support...