ICT Security Risk Officer – Banking Compliance
Job Summary
The ICT & Security Risk Officer will play a key role in supporting the organization’s cybersecurity and information security risk management framework. This dual-role position is responsible for assisting in the implementation of security policies, monitoring IT risks, and ensuring compliance with industry standards and best practices. The successful candidate will work closely with IT, Risk, Compliance departments, and business units to safeguard digital assets and minimize cybersecurity threats.
Key Responsibilities
Information Security Responsibilities:
Assist in the development and enforcement of security policies, procedures, and guidelines.
Monitor and analyze security alerts, incidents, and vulnerabilities, and provide recommendations for mitigation.
Support the management of security awareness programs and training for employees.
Participate in security assessments, penetration testing, and vulnerability scans.
Assist in reviewing and implementing access control measures to protect sensitive data.
Contribute to incident response planning and support investigations when necessary.
Stay updated with emerging threats, vulnerabilities, and security trends.
ICT Risk Responsibilities:
Assist in identifying, assessing, and mitigating IT and cybersecurity risks.
Support the execution of ICT risk assessments and audits.
Maintain risk registers and track remediation actions to reduce exposure to threats.
Contribute to business continuity and disaster recovery planning and testing.
Ensure compliance with regulatory and industry standards such as ISO 27001, NIST, GDPR, DORA and other relevant frameworks (CSSF and others).
Work with internal teams to implement risk management strategies and controls.
Prepare reports and presentations on security and risk findings for management.
Qualifications & Experience:
2-5 years of experience in information security, risk management, or IT governance.
Good knowledge of security frameworks such as ISO 27001, ISO 27005, NIST CSF, and ISACA.
Familiarity with risk management methodologies and security controls.
Familiarity with financial industry and its regulations (CSSF).
Knowledge of DORA (Digital Operational Resilience Act).
Good understanding of networking, infrastructure security, and data protection concepts.
Experience with security tools such as SIEM, IDS/IPS, and vulnerability scanners is a plus.
Scripting, Automation skills and Industry certifications such as CompTIA Security+, CRISC, or ISO 27001 and others foundation are an advantage.
Vergelijkbare banen
De perfecte match is nog maar één stap hiervandaan.
Stuur ons direct uw CV en wij brengen u in contact met een van onze gespecialiseerde recruiter die u zal begeleiden in de zoektocht naar uw droombaan!
Laatste artikels
Een succesvolle employer branding-strategie, in 7 stappen
Employer branding is essentieel voor elk bedrijf dat talent wil aantrekken én behouden. Er zijn tal van goede redenen om een sterk merk als werkgever uit te bouwen. Maar zoiets doe je niet van vandaag op morgen. Hoe pak je dat aan, starten met employer branding?
De strafste employer branding-trends van 2024
Employer branding is in sneltempo uitgegroeid tot een echte must voor werkgevers die het verschil willen maken, in de strijd om toptalent.
7 risico’s die jouw imago als werkgever beschadigen
Bedrijven investeren vandaag aanzienlijke budgetten in de marketing van hun merk als aantrekkelijke werkgever.
Sluit aan bij onze community van professionals en ontdek je potentieel om een verschil te maken in de wereld.
Blijf op de hoogte van het laatste nieuws.