Job
- Level
- Senior
- Job Feld
- IT, Security, Test/QA
- Anstellung
- Vollzeit
- Vertragsart
- Unbefristetes Dienstverhältnis
- Ort
- Berlin
- Arbeitsmodell
- Hybrid, Onsite
Job Zusammenfassung
In dieser Position entwickelst du Methoden zur Verbesserung des ICT-Risikomanagements, koordinierst riskante Fälle und unterstützt bei der Risikoanalyse und -minderung durch enge Zusammenarbeit mit betroffenen Abteilungen.
Job Technologien
Deine Rolle im Team
- Drive and maintain the underlying methodology approaches for all ICT risk processes and operations, ensuring process robustness and consistency.
- Coordinate ICT risk management across the organization, including designing and operating standardized processes for handling ICT risk cases.
- Support the identification, analysis, evaluation, and mitigation of ICT risks, collaborating closely with affected departments. You also coordinate with the 2nd line of defense units on risk treatment strategies and acceptance.
- Advise risk owners on effective risk treatment strategies and assist management with related decision-making.
- Monitor the implementation status of all defined risk treatment measures and provide necessary oversight.
- Provide actionable insights on strengthening controls and mitigating risks in daily operations.
- Actively develop and enhance the 1st Line of Defense ICT risk management process in collaboration with 2nd line of defense units.
- Prepare management reports detailing the overall ICT risk profile and the progress of risk mitigation efforts.
Unsere Erwartungen an dich
Ausbildung
- Bachelor's or Master's degree in Engineering, Computer Science, Business Administration, or a related technical field.
Qualifikationen
- Professional certifications such as CISSP, CISM, or CRISC are a strong plus.
- Strong knowledge of ICT risk management principles and practices, including risk assessment, mitigation, and monitoring.
- Deep knowledge of banking regulations, standards, and frameworks (e.g., NIST, ISO 2700x, MaRisk/BAIT, DORA, GDPR, and/or PCI DSS).
- Excellent analytical, problem-solving, and decision-making abilities.
- Strong technical understanding of ICT risks, including expertise in securing databases both in transit and at rest.
- Familiarity with AI solutions and an understanding of LLM models is a significant plus.
- Strong collaboration and communication skills, necessary for advising and coordinating across diverse departments and 2nd Line of Defense units.
- Familiarity with tools such as Service Now, G Suite, Web app firewall, Linux, Jira, and Confluence is desirable.
Erfahrung
- 3-5 years of hands-on experience in information security, ICT risk management, or a closely related field.
- Experience working within the banking or financial services industry is highly desirable, with a preference for candidates from a smaller firm or Fintech background for better cultural fit.
Unser Angebot
- Employee Development Budget of €2,000 and four full training days per year.
- Flexible working hours, home office and 30 vacation days.
- A company pension scheme (Betriebliche Altersvorsorge), which we support with 20%.
- Enjoy more than 50+ different sports with Urban Sports Club: We subsidize your membership with more than €20 per month.
- Do you miss being in the office? The Deutschland Ticket gets you there, which we subsidize with €25 per month.
- Love cycling? With JobRad, lease the bike of your choice and enjoy tax savings, plus Raisin covers your monthly insurance costs.
- Snacks, daily fresh fruit as well as drinks provided at the office.
- You are moving from another country or city to join us? We may support your relocation.
Benefits
Gesundheit, Fitness & Fun
Essen & Trinken
Work-Life-Integration
Mehr Netto
Themen mit denen du dich im Job beschäftigst
Job Standorte
Das ist dein Arbeitgeber
Raisin Bank AG
Wir sind Raisin, ein dynamisches und schnell wachsendes FinTech Unternehmen und Vorreiter für Open Banking im Bereich Sparen und Investieren. Als eines der erfolgreichsten europäischen FinTech Unternehmen haben wir Marktplätze aufgebaut, über die unsere Kund:innen einen einfachen Zugang zu Anlagemöglichkeiten in ganz Europa erhalten.
Description
- Unternehmensgröße
- 1-49 Employees
- Sprachen
- Englisch
- Unternehmenstyp
- Etablierte Firma
- Arbeitsmodell
- Hybrid, Onsite
- Branche
- Industrie, Produktion