IT Risks

hace 1 mes


Madrid, España BNP Paribas Personal Finance A tiempo completo
BNP Paribas is an international bank with leading positions in the European market. It is present in 74 countries and employs more than 192,000 people, 146,000 of whom are in Europe. The Group holds key positions in its three main areas of activity: Domestic Markets, International Financial Services and Corporate & Institutional Banking.

We are South Europe Technologies (S.ET); the IT Data and Operations Shared Service Center of BNP Paribas Personal Finance, delivering the best IT Solutions to PF entities around the world such as Cetelem (specialized, between others, in financial partnership of major retailers, consumer goods companies and car dealerships).

Between other services, such as:
• Applications Management (Architecture, Project Management, Development, and Quality Assurance).
• IT Risks & Cybersecurity Services.
• Platforms Management.
• Ad-hoc, T&M development.
• Data.
• Operations.
We are recruiting in the IT Risk & Cybersecurity Area.
Our offices are located in Madrid, Spain. The company brings together over 160+ employees, with expertise in various technologies (Java, .Net, Python, Tibco) and other operational roles (Functional Analyst, Project Manager, Business Analyst). We keep growing

MISSION:

The IT Risks & Cyber SSC Engineer has the responsibility of coordinate the Vulnerability Management, Penetration Tests, Identity & Access Management, 3rd-Party Due Diligence, Monitoring of Risk Treatment (Action Plans), Reporting the Risk Exposure (by asset, by entity, by territory…), etc.

RESPONSIBILITIES:

The main responsibilities of the IT Risks & Cyber SSC Engineer are:
- Provide advice and user support across the Organization on the use of IT Risk and Cyber tools and systems.
- Deliver IT Risk & Cyber services in contribution to identification, evaluation, treatment, monitoring, reporting and closing of IT operational risks.
- Deliver various IT Risk&Cyber services in response to local entities’ requests, ensuring achievement of agreed service levels (on-time delivery, quality, exhaustiveness, accuracy...), compliance with established policies.
- Establish a strong, long term and trust-based relationship with local entities and central team.
- Deliver Vulnerability Management services (based on internal and external scans + ad hoc alerts).
- Coordinate pentests, 3rd-party due diligence, risk exposure reporting, advisory and monitoring of risk mitigating actions.
- Coordinate risk assessments of applications, processes or 3rd-parties, including onsite audits.
- Deliver IT Risk & Cybersecurity services according to defined processes.
- Respect of SLAs, ensuring that all standards are met, and procedures are followed. 
- Establishes priorities and schedules of main activities.
- Seek to improve, contribute to identify trends and problem areas, reporting on risks, key performance indicators and propose corrective action or new approaches having improvement of services as final goal.
- Seek to help, propose solutions, promote BNPP Group standards in response to entities raised issue. If required, supports system deployment activities to ensure smooth adoption by clients of the Centre.
- Define and respect SLAs, accurate proposals and swift reaction to requests.
- Liaise on issues in the implementation of established policies, procedures and solutions.

REQUIREMENTS:

Training:

 • We are not looking for a person with a specific college degree, as long as it meets the other specifications of the position.

Experience:

• 2 years of minimal experience in related responsibilities. We are growing very fast and for this reason, we are looking for several profiles with different years of experience and knowledge.
• Experience in the Finance sector is a plus.
• Desirable Certification: Certifications such as CISM, CISA, ISO27001 LI/LA, CISSP.
• Desirable Practices: NIST CyberSecurity Framework (NCF) or ISO/IEC27001 and best practices such as OWASP.

Languages:

 •  English:Fluent
 •  Spanish:Fluent
 •  French:Optional

SKILLS:

Technical:

The IT Tools that has to use the IT Risks & Cyber SSC Engineer in their functions are:
- NIST, CIS, ISO27001, EBIOS.
- Corporate IT Tools.
- Advanced user in the office tools: Microsoft Excel, Microsoft Word and Microsoft Power Point.

Trasversal & Behavioral:

 •  Attention to detail/rigor
 •  Analytical Ability
 •  Ability to set up relevant performance indicators

BENEFITS:

• Training programs, career plans and internal mobility opportunities, national and international thanks to our presence in different countries.
• Diversity and Inclusion Committee that ensures an inclusive work environment. In recent years, several employee communities have been created to organize diversity and inclusion awareness actions (PRIDE, We Generations and MixCity).
• Corporate volunteering program (1 Million Hours 2 Help) in which employees can dedicate time out of their working hours to volunteer activities.
• Flexible compensation plan
• Hybrid telecommuting model (50%)
• 31 vacation days

Diversity and Inclusion commitment

BNP Paribas Group in Spain is an equal opportunity employer and proud to provide equal employment opportunity to all job seekers. We are actively committed to ensuring that no individual is discriminated against on the grounds of age, disability, gender reassignment, marriage or civil partnership status, pregnancy and maternity/paternity, race, religion or belief, sex or sexual orientation. Equity and diversity are at the core of our recruitment policy because we believe that they foster creativity and efficiency, which in turn increase performance and productivity. We strive to reflect the society we live in, while keeping with the image of our clients.

  • Madrid, España Axpo A tiempo completo

    Risk Management / Market Intelligence / Analysis - Baden, Madrid - Hybrid Remote **Workload: 100% | Madrid / Baden** We are creating a new Internal Audit function at Axpo, Switzerland largest producer of renewable energy. In your role as an Internal Audit Manager with specialization in IT & Digital Risks, you will ensure that Axpo has the right assurance...


  • Madrid, España Sdi Digital Group A tiempo completo

    Description As IT Risk & Compliance Specialist, your mission is to keep key IT risks away from Hitachi Energy. You are responsible for IT risk monitoring and reporting and IT risk & compliance assurance for the whole organization. You facilitate effective IT risk & compliance decisions by defining, maintaining, communicating and promoting IT risks &...


  • Madrid, España HITACHI ENERGY SERVICES SP. Z O.O. A tiempo completo

    Description : As IT Risk & Compliance Specialist, your mission is to keep key IT risks away from Hitachi Energy. You are responsible for IT risk monitoring and reporting and IT risk & compliance assurance for the whole organization. You facilitate effective IT risk & compliance decisions by defining, maintaining, communicating and promoting IT risks &...


  • Madrid, España Sdi Digital Group A tiempo completo

    Description As IT Risk & Compliance Specialist, your mission is to keep key IT risks away from Hitachi Energy. You are responsible for IT risk monitoring and reporting and IT risk & compliance assurance for the whole organization. You facilitate effective IT risk & compliance decisions by defining, maintaining, communicating and promoting IT risks &...


  • Madrid, España Hitachi Automotive Systems Americas, Inc. A tiempo completo

    IT Risk and Compliance Specialist page is loaded IT Risk and Compliance Specialist Apply locations Madrid, Spain time type Full time posted on Posted 2 Days Ago job requisition id R0028491 Location: Madrid, SpainJob ID: R0028491Date Posted: 2023-08-01Company Name: HITACHI ENERGY SERVICES SP. Z O.O.Profession (Job Category): General ManagementJob...


  • Madrid, España AXA Group A tiempo completo

    CONTEXT To support our business strategy and digital transformation, AXA is building a new Group Information Security Practice to ensure a coordinated response to the increasing cyber security threat, enable risk decisions to be made consistently across the organization and establish sustainable security capabilities that are integrated with the...


  • Madrid, España Axa Group A tiempo completo

    CONTEXT To support our business strategy and digital transformation, AXA is building a new Group Information Security Practice to ensure a coordinated response to the increasing cyber security threat, enable risk decisions to be made consistently across the organization and establish sustainable security capabilities that are integrated with the business....

  • IT Assistant

    hace 3 semanas


    Madrid, España Advantio A tiempo completo

    **About Advantio** Established in 2009, Advantio maintains an extensive team of consultants and security testing experts to provide digital security and assurance to its customers. Originally established as a payment compliance market leader, Advantio has grown from an established and leading payment security and compliance organisation in Europe to develop...

  • Dock IT Support

    hace 1 mes


    Tres Cantos, Madrid provincia, España Airbus A tiempo completo

    In the framework of the IT area of Space Electronics, in order to cope with new challenges of industrialization and digitalization, we have created a new digital platform in Airbus Crisa to enable the development process for Electronic Units. It changes the way of working from design to manufacturing, fostering collaboration through shared databases and...

  • Information Security

    hace 3 semanas


    Madrid, España Verisure Sàrl A tiempo completo

    Do you want to have an impact every day by making people safe - and bringing them peace of mind? Interested in being part of a dedicated, passionate team which believes that security is a human right? Looking to join a company where innovation and technology are at the heart of its solutions?   What we look for Highly motivated individuals with...

  • Information Security

    hace 3 semanas


    Madrid, España Verisure A tiempo completo

    Do you want to have an impact every day by making people safe - and bringing them peace of mind? Interested in being part of a dedicated, passionate team which believes that security is a human right? Looking to join a company where innovation and technology are at the heart of its solutions?   What we look for Highly motivated individuals with...

  • Global Junior IT Buyer

    hace 4 días


    Madrid, España SGS A tiempo completo

    **Company Description** We are SGS - the world's leading testing, inspection and certification company. We are recognized as the global benchmark for sustainability, quality and integrity. Our **99,600 employees operate a network of 2,600 offices and laboratories,** working together to enable a better, safer and more interconnected world. As a **Junior IT...

  • Global Junior IT Buyer

    hace 4 días


    Madrid, España SGS A tiempo completo

    Job Description As a Junior IT Buyer within the Global Procurement & Real Estate team at SGS, you will play a role in sourcing and purchasing IT-related products and services for our organization. Based in Madrid, you will collaborate closely with various stakeholders to ensure cost-effective and high-quality procurement of IT assets . Reporting...


  • Madrid, España Unilabs A tiempo completo

    The Internal Audit Department provides the Audit Committee of the Board of Directors with an independent and objective assessment of the reliability and integrity of financial and select operating information, the effectiveness and efficiency of Unilabs and its consolidated subsidiaries’ (systems and internal controls, and compliance with the Company’s...


  • Madrid, España Amadeus A tiempo completo

    IT Services Purchasing Lead page is loaded IT Services Purchasing Lead Apply locations Madrid time type Full time posted on Posted 2 Days Ago job requisition id R15773 Job Title IT Services Purchasing Lead Be the driving force in our Corporate Purchasing Team! As the IT Services Purchasing Lead, you'll redefine global category practices for IT Services,...


  • Madrid, España Page Personnel España A tiempo completo

    Lead strategic initiatives to drive business transformation. - Partner with Office executives to develop and implement business strategies. - Identify and address business challenges and opportunities. - Coordinate cross-functional teams to ensure successful project execution. - Monitor project progress and adjust as needed. - Report project outcomes and/or...

  • Senior IT Auditor

    hace 4 semanas


    Madrid, Madrid, España Swiss Re A tiempo completo

    Are you a critical thinker who likes to analyze complex topics and provide insights on technology risks? Do you enjoy working in a diverse team that employs innovative techniques and tools? Join us at Group Internal Audit and help us to advance Swiss Re's resilience.About the Role As a Senior Auditor with focus on IT in Group Internal Audit (GIA), you will...

  • IT Analyst

    hace 1 mes


    Madrid, España Matchtech Group (UK) Ltd A tiempo completo

    **Ref no.** - BHN552453**Location** - Community of Madrid, Spain**Start date** - ASAP**Job type** - Permanent**Job status** - Open**Job summary**: Matchtech is a STEM recruitment specialist, with over 35 years' experience in successfully matching STEM professionals with hiring employers in multiple sectors, all over the world. **Key skills required for this...


  • Madrid, España Jet Aviation A tiempo completo

    As a Senior IT Project Manager, you will be designing, implementing, delivering, and maintaining enterprise IT services and solutions. The person will manage projects throughout the entire lifecycle and have excellent knowledge of Business Applications, Data Analytics and Visualization, IT Infrastructure, Cloud Services and Automation. The Senior IT Project...


  • Madrid, España Twtspain A tiempo completo

    At the Whiteam we are seeking a Perimetral Security Engineer to join our team remotely and work with European Public Agencies. MAIN TASKS: Implementation and maintenance of WAF and FW in projects and digital services Assessment of risks and proposals for implementation including designs and implementation from other contractors Design of secure...