Let's talk about the job
We offer exciting jobs for different areas. We are active in the areas of permanent employment, freelance projects and temporary work. Simply upload your profile and we will contact you immediately. If there is no suitable job for you, we would be pleased to receive your unsolicited application.
Is this a good fit for you?
Senior Cyber Risk Specialist (m/w/d) (DE)
STI Consulting GmbH [2097]
Cyber Risk, IT-Security
Aufgaben: ·Keeping risk treatment plans within clients risk appetite ·Managing risks within predefined SLAs ·Monthly reporting of risk status and escalations ·Execution of asset risk assessments per predefined yearly plan ·Integration of asset based risks into IT Application Roadmap Must-Have-Skills: ·Minimum 8 years of relevant experience in IT Security Minimum 4 years of experience in IT governance, risk, and compliance ·Deep understanding of IT audit, compliance, risk management methodologies, business risk analysis and making complex business/risk trade-off recommendations and decisions ·Strong Knowledge of regulatory standards such as SOX, PCI, Data Protection, etc. ·Knowledge in IT and security management frameworks such as COBIT, ITIL, NIST, ISO, and more ·Experience in policy and security requirements development pertaining to IT security in large organizations ·Experience with risk assessments and security requirements for vendors and third-parties ·Security fundamentals with a solid understanding of security concepts, threats, vulnerabilities, risks, defenses, security principles and policies ·Experience with standards development, implementation and compliance initiatives (e.g., ISO 27001/2, PCI, SOC) Start: asap Dauer: 30.09.2022 mit Option Einsatzort: München und remote Branche: Telekommunikation Auslastung: 100%
- Keeping risk treatment plans within clients risk appetite
- Managing risks within predefined SLAs
- Monthly reporting of risk status and escalations
- Execution of asset risk assessments per predefined yearly plan
- Integration of asset based risks into IT Application Roadmap
- Minimum 8 years of relevant experience in IT Security Minimum 4 years of experience in IT governance, risk, and compliance
- Deep understanding of IT audit, compliance, risk management methodologies, business risk analysis and making complex business/risk trade-off recommendations and decisions
- Strong Knowledge of regulatory standards such as SOX, PCI, Data Protection, etc.
- Knowledge in IT and security management frameworks such as COBIT, ITIL, NIST, ISO, and more
- Experience in policy and security requirements development pertaining to IT security in large organizations
- Experience with risk assessments and security requirements for vendors and third-parties
- Security fundamentals with a solid understanding of security concepts, threats, vulnerabilities, risks, defenses, security principles and policies
- Experience with standards development, implementation and compliance initiatives (e.g., ISO 27001/2, PCI, SOC)
