Cloud Security Risk Lead Assessor

hace 2 semanas


Madrid, España BNP Paribas A tiempo completo

The RISK ORM (Operational Risk Management) Technology Risk Intelligence Digital Solutions department is part of the Group Risk Functions within BNP Paribas. It is a part of the 2nd line of defence under the Bank’s Enterprise Risk Management and Chief Operational Risk Officer. The department has responsibility for identification of key technology risks to the Bank and influencing business and technology partners to take sound risk management decisions. Our work involves following initiatives, for example:

- Application & Infrastructure Risk Assessments working with the Business and Technology teams to identify security issues in existing and new systems, and agree corresponding actions to mitigate or accept risks
- Tracking issues and agreed actions to completion
- Horizontal and Vertical Risk Assessments
- Partnership to the Business and Technology teams in helping them understand their technology risk profile and influencing their risk management decisions.

**ROLE**

This role is in alignment with 2LoD involvement required on BNP Paribas dedicated hybrid Cloud that is core of Cloud Strategy. The scope of the role involves coordinate, oversight and advice:

- BNP Paribas Group dedicated hybrid Cloud Program, Cloud adoption and operations with periodic and event based risk reporting to management and risk committees in alignment with IT Group Cloud Program & team, Group CISO & team, IT Group Production & teams and Cloud Service Provider teams.
- Community building, collaboration and partnering as dedicated hybrid Cloud security expert with RISK ORM and cross functional stakeholders on policies, procedures, control requirements, poles and entities dedicated hybrid Cloud adoption, Operational resilience, crisis management, data centre and telecom plan, Cloud security operations, third party technology risk management, emerging technology, pole and entities IT strategy & strategic programs, etc.

The position is based in Madrid reporting directly to the Global RISK ORM Iberian Centre of Excellence and functionally to RISK ORM Technology Risk Intelligence Digital lead located in London.

**SCOPE**

KEY RESPONSIBILITIES
- Coordinate, oversight and advice RISK ORM contribution and oversight on BNP Paribas Group dedicated hybrid Cloud Program, Cloud adoption and operations with periodic and event based risk reporting to management and risk committees in alignment with IT Group Cloud Program, Group CISO, IT Group Production teams, Cloud service providers, etc.
- Participate in multiple Group Cloud program and operations governance committees for dedicated hybrid Cloud with IT Group Cloud Program, Group CISO, IT Group Production teams, Cloud service provider, etc. covering topics of Cloud strategy, Cloud security & ICT (Information and Communications Technology) risks, Cloud adoption, operational security, remediation actions, etc.
- Periodic (weekly, monthly, quarterly, half yearly, annual) and need or event based risk reporting to management and group risk committees on dedicated hybrid Cloud services adoption status and plan, risks, issues, Cloud security maturity, remediation actions, etc.
- Define minimum baseline dedicated hybrid Cloud security controls in collaboration with IT Group Production security teams, Cloud security experts, Operational risk officers, ICT risk officers, etc.
- Define process and workflow to automate monitoring and reporting of compliance to minimum baseline dedicated hybrid Cloud security controls on Cloud security posture management solutions in collaboration with IT Group Production teams, Cloud service provider, ICT risk officers, operational risk officers, etc.
- Identify and update risk reporting methods using automated solutions, leveraging existing or new solutions of Governance, Risk and Compliance (GRC) tools for dedicated hybrid Cloud services asset register, risk register, remediation tracking, etc. Cloud Security Posture Management solutions, operational risk management solutions, IT service management solutions, reporting & dashboard solutions, etc.
- Promote and manage the Cloud community building, collaboration and partnering as dedicated hybrid Cloud security expert with operational Risk stakeholders and cross functional teams on policies, procedures, control requirements, poles and entities dedicated hybrid Cloud adoption, operational resilience, crisis management, Cloud security operations, data centre and telecom plan, third party technology risk management, emerging technology, pole and entities IT strategy & strategic programs, etc.
- Lead and liaise with third party risk management teams periodically (weekly / monthly / quarterly) and on need or event based for Contract committees, security committees with Cloud providers and Independent Software vendors (ISVs), 3rd parties management committees and reporting to management on Cloud provider risks, 3rd parties, ISVs risks, issues, remediation actions, etc.
- Lead and liaise with Operational risk and ICT risk of


  • Cloud Security Risk Lead

    hace 13 horas


    Madrid, España Apollo Solutions A tiempo completo

    **Cloud Security Risk Lead** Location: Madrid, Spain Salary €90K - €95K plus benefits & bonus A great opportunity for a **Cloud Security Risk Lead** to join a leading Banking organisation based in the **Madrid, Spain**. This position will have a strong focus on Business Continuity and Technology Resilience. **As a Cloud Security Risk Lead, you will be...

  • Consultant Kudelski Security

    Encontrado en: Talent ES C2 - hace 1 semana


    Madrid, España Kudelski Security A tiempo completo

    Stimulating. Motivating. Challenging. Leveraging its long-standing expertise in securing digital content as well as fighting piracy, Kudelski Security, a division of the Kudelski Group, is a provider of cybersecurity solutions and services focused on protecting data, processes and systems for companies and organizations around the world, safeguarding...

  • Global Security

    hace 3 días


    Madrid, España optimaes A tiempo completo

    **GLOBAL SECURITY & RISK DIRECTOR**: **Nuestro cliente pertenece a un importante grupo industrial internacional con más de 8000 empleados en varias plantas tanto en Latam como en Europa. La compañía desea incorporar en su sede en Madrid a un responsable global de Seguridad física y gestión del riesgo, para personas, bienes y operaciones de amenazas...


  • Madrid, España Axa Group A tiempo completo

    CONTEXT To support our business strategy and digital transformation, AXA is building a new Group Information Security Practice to ensure a coordinated response to the increasing cyber security threat, enable risk decisions to be made consistently across the organization and establish sustainable security capabilities that are integrated with the business....

  • Security In Projects Risks Assessor

    Encontrado en: Talent ES C2 - hace 2 semanas


    Madrid, España AXA Group A tiempo completo

    CONTEXT To support our business strategy and digital transformation, AXA is building a new Group Information Security Practice to ensure a coordinated response to the increasing cyber security threat, enable risk decisions to be made consistently across the organization and establish sustainable security capabilities that are integrated with the...


  • Madrid, España Ericsson A tiempo completo

    **About this opportunity**: The objective of Ericsson Consulting is to deliver engagements that generate value for our customers and enable greater value to Ericsson. **Location - Potential locations Spain, Italy, Turkey, India.** We are looking for a highly ambitious Global Mobile Telco Security Solution / Services Leader who is passionate about building...


  • Madrid, España Planet A tiempo completo

    **About Us**: The payments market is the most exciting technology market in the world today for good reason. McKinsey values it globally at over $2 trillion and it’s growing between 13-15% year-on-year. Some of the largest most dynamic brands are investing in this sector; Apple has ApplePay, Google has GooglePay, Amazon has AmazonPay, and it’s not just...


  • Madrid, España Fortis Games A tiempo completo

    **Who we are** At Fortis Games we aspire to make great games that bring people together while redefining how game companies work. We believe in building a sense of belonging through our games, their communities, and how we operate and treat each other. Through our game communities, we will create powerful connections and lasting memories. We will foster a...

  • Cloud Security Engineer

    Encontrado en: beBee S ES - hace 4 semanas


    Madrid, España English Language Learning A tiempo completo

    Role: Cloud Security Engineer Company: Pearson Division: English Language Learning Location: Madrid, Spain (Remote or Hybrid*) *If you live in Madrid, you will be able to enjoy our brand-new office because we a have a remote / hybrid working model policy in place! About Pearson: Our purpose: At Pearson we ‘add life to a lifetime of...


  • Madrid, España Swiss RE A tiempo completo

    **Join a team of cybersecurity professionals and help Swiss Re to fulfil its mission in making the world more resilient. As the Cloud Security Engineer, you'll be tasked with defining the security boundaries for our Cloud setup, implementing preventive and detective security-enforcing controls, and automating monitoring and metrics. What's more, you'll be...

  • Information Security

    Encontrado en: Talent ES C2 - hace 2 semanas


    Madrid, España Verisure Sàrl A tiempo completo

    Do you want to have an impact every day by making people safe - and bringing them peace of mind? Interested in being part of a dedicated, passionate team which believes that security is a human right? Looking to join a company where innovation and technology are at the heart of its solutions?   What we look for Highly motivated individuals with...

  • Information Security

    Encontrado en: Talent ES C2 - hace 2 semanas


    Madrid, España Verisure A tiempo completo

    Do you want to have an impact every day by making people safe - and bringing them peace of mind? Interested in being part of a dedicated, passionate team which believes that security is a human right? Looking to join a company where innovation and technology are at the heart of its solutions?   What we look for Highly motivated individuals with...

  • Cybersecurity Risk Analyst

    Encontrado en: beBee jobs ES - hace 2 semanas


    Madrid Centro, Madrid, España CMA CGM A tiempo completo

    Led by Rodolphe Saadé, the CMA CGM Group, a global leader in shipping and logistics, serves more than 420 ports around the world on five continents. With its subsidiary CEVA Logistics, a world leader in logistics, and its air freight division CMA CGM AIR CARGO, the CMA CGM Group is continually innovating to offer its customers a complete and increasingly...

  • Cloud Lead Architect

    hace 1 semana


    Madrid, España SGS A tiempo completo

    Company Description **We are SGS - the world’s leading testing, inspection and certification company. We are recognized as the global benchmark for sustainability, quality and integrity. Our 97,000 employees operate a network of 2,650 offices and laboratories, working together to enable a better, safer and more interconnected world.** **Job...

  • Information Security Expert

    Encontrado en: beBee jobs ES - hace 3 semanas


    Madrid, Madrid, España AXA Group A tiempo completo

    ContextThe Security Consultant plays an integral role in defining and assessing security requirements, security strategy and practices for Group Security and AXA global projects and clients. The security consultant will be required to effectively translate business objectives and risk management strategies into specific security requirements and processes...

  • Senior Cloud Engineer.

    Encontrado en: Talent ES C2 - hace 3 semanas


    Madrid, España Kudelski Security A tiempo completo

    Stimulating. Motivating. Challenging. Leveraging its long-standing expertise in securing digital content as well as fighting piracy, Kudelski Security, a division of the Kudelski Group, is a provider of cybersecurity solutions and services focused on protecting data, processes and systems for companies and organizations around the world, safeguarding...

  • Lead IT Security

    Encontrado en: Talent ES C2 - hace 2 semanas


    Madrid, España dormakaba A tiempo completo

    The Lead IT Security (Operation Center) is the responsible role for the secure operation of all IT Services and IT Processes within IT in the areas of endpoint security, application security, network security and cloud security. In this role you will act as a controller and navigator of the IT security organization within dormakaba. You will collaborate...


  • Madrid, España SR Technics A tiempo completo

    Do you want to make aviation more secure? Do you want to work with advanced aviation industry solutions? You will work with Security team, IT architects, solution engineers to develop new infrastructure and our digital core, in more secure environment. As a single point of contact for operational security, you will have opportunity to design new secure...

  • Cloud Architect

    hace 4 días


    Madrid, España Straumann Group A tiempo completo

    **Job Requirements **Work Experience** - Cloud Design and Development (70%) - Demonstrate knowledge of cloud architecture and implementation features. (OS, multi-tenancy, virtualization, orchestration, elastic scalability) - Demonstrate knowledge of DevOps tool chains and processes. - Act as a Subject Matter Expert to the organization for cloud end-to-end...

  • Information Security Expert

    Encontrado en: beBee S ES - hace 3 semanas


    Madrid, España AXA Group A tiempo completo

    ContextThe Security Consultant plays an integral role in defining and assessing security requirements, security strategy and practices for Group Security and AXA global projects and clients. The security consultant will be required to effectively translate business objectives and risk management strategies into specific security requirements and processes...