IT Risk

hace 2 meses


Madrid, España BNP Paribas A tiempo completo

BNP Paribas is an international bank with leading positions in the European market. It is present in 74 countries and employs more than 192,000 people, 146,000 of whom are in Europe. The Group holds key positions in its three main areas of activity: Domestic Markets and International Financial Services (whose retail banking and financial services network is part of Retail Banking & Services), as well as Corporate & Institutional Banking, which offers services to corporate and institutional clients. The Group supports its customers (individuals, entrepreneurs, SMEs, large companies and institutions) to help them carrying out their projects by providing financing, investment, savings and insurance services.

In Europe, the Group has four domestic markets (Belgium, France, Italy and Luxembourg) and BNP Paribas Personal Finance is number one in retail financing in Europe.

BNP Paribas is developing its integrated retail banking model in the Mediterranean countries, Turkey, Eastern Europe and has an important network on the US West Coast. In both its Corporate & Institutional Banking and International Financial Services activities, BNP Paribas has leading positions in Europe, a strong presence in the Americas and a solid and growing network in the Asia-Pacific region.

The CIB IT Platform for EMEA is responsible to provide IT Services to our Clients ensuring a Digital Market evolution, in a secured and performant environment, and with a reliable quality. This function includes Global Markets Application Production, Local Territory IT Development, the Core Infrastructure environment including Datacentres, Application Production, Security, Architecture as well as elements of the Global Services organisation.

Within BNP Paribas Group IT, the filiere Production Security is in charge of answering operationally to the challenges of cybersecurity with an end-to-end vision and consistently across the Bank.

**MISSION**

We are looking for an IT Risk & Cyber Security Analyst in charge of assessing Cyber risks on the IT production perimeter for outsourced activities as well as a contribution of Cyber expertise in support of the CISO.

**RESPONSIBILITIES**

The main activities and missions will be:

- In charge of CISO activities related to Third Parties Risk Management on IT production perimeter:

- Step 1 - Cyber Risk Identification & Assessment:

- Identify and assess the ICT and Cyber Security Risk of the activity in a context of an externalization.
- Initiate the overall process which includes preliminary risk identification, analysis and evaluation.
- Define / recommend activities that are adequate to the risk level to perform before the validation committee.
- Identify ICT and cyber security need.
- Step 2 - IT Risk & Cyber Security Due Diligence:

- Assess the compliance of the proposal of the service provided by the suppliers to the ICT applicable requirements for protecting BNP Paribas
- Select the most suitable supplier among the shortlisted ones.
- Step 3 - Contract Negotiation
- Formalize the applicable conditions to the service provided and the Supplier's commitment to implement agreed Cyber Security measures.
- Proposal and validation of evolutions in the hardening rules of the security of the products used within the Group:

- Assist product owner in writing hardening rules
- Review hardening rules published previously
- Align hardening rules with other production security teams
- Coordinate the implementation of control rules
- Analyze and assess the Asset Classification from a Security perspectives
- Review the answers of Security and IT Architecture questionnaire
- Add Key requirements from Group BNPP Security framework to comply with

Technical & Behavioral Competencies
- Expertise in computer security standards and frameworks and the main IT & security risk frameworks (NIST, CIS, ISO27001, EBIOS, etc.),
- Expertise in the main types of cybersecurity incidents and how to protect against them.
- Technical expertise in IT/Cloud infrastructures, usual products and technologies
- Critical mind, good analytical and synthesis skills.
- Rigor, curiosity, autonomy, involvement, availability and taste for teamwork.
- Ability to listen and communicate to convince, adapting to one's interlocutors.
- Ability to take a step back and formalize needs, write synthesis documents and report on work.
- Animation of transversal working groups.
- Very good command of English (written/spoken).
- French speaking will be appreciated.

**REQUIREMENTS**

**Training**:
Education Level: Master Degree or equivalent

**EXPERIENCE**:
At least 5 years

**Languages**
- English: fluent
- French: optional.

**SKILLS**:

- Ability to collaborate / Teamwork
- Analytical Ability
- Ability to set up relevant performance indicators
- Ability to inspire others & generate people's commitment
- Analytical Ability

**BENEFITS**
- Training programs, career plans and internal mobility opportunities, national and international thanks to our presenc


  • IT Risk

    hace 3 semanas


    Madrid, Madrid, España eXalt A tiempo completo

    El desafío n.o 1 de toda empresa que busca desarrollarse es el reclutamiento de nuevos talentos"Crear una cultura de empresa basada en la agilidad y valorar la experiencia de nuestros empleados" es lo que te ofrecemos al unirte a la aventura #eXalt.Actualmente en pleno crecimiento y con 5 años de existencia, nuestra empresa desea implementar una...

  • IT Risk

    hace 1 semana


    Madrid, Madrid, España eXalt A tiempo completo

    El desafío n.o 1 de toda empresa que busca desarrollarse es el reclutamiento de nuevos talentos"Crear una cultura de empresa basada en la agilidad y valorar la experiencia de nuestros empleados" es lo que te ofrecemos al unirte a la aventura #eXalt.Actualmente en pleno crecimiento y con 5 años de existencia, nuestra empresa desea implementar una...

  • IT Risk

    hace 3 semanas


    Madrid, España eXalt A tiempo completo

    El desafío n.º 1 de toda empresa que busca desarrollarse es el reclutamiento de nuevos talentos!"Crear una cultura de empresa basada en la agilidad y valorar la experiencia de nuestros empleados" es lo que te ofrecemos al unirte a la aventura #eXalt.Actualmente en pleno crecimiento y con 5 años de existencia, nuestra empresa desea implementar una...

  • IT Risk Assesor

    hace 1 mes


    Madrid, España BNP Paribas A tiempo completo

    RISK ORM (RISK Operational Risk Management) is part of the Group BNP Paribas second line of defence (2LoD). It belongs to the Risk Function (RISK) of BNP Paribas and is under the responsibility of the Group Chief Operational Risk Officer. The department has responsibility for independently challenging and supervising the Operational Risk Management (ORM) of...


  • Madrid, España Sdi Digital Group A tiempo completo

    Description As IT Risk & Compliance Specialist, your mission is to keep key IT risks away from Hitachi Energy. You are responsible for IT risk monitoring and reporting and IT risk & compliance assurance for the whole organization. You facilitate effective IT risk & compliance decisions by defining, maintaining, communicating and promoting IT risks &...


  • Madrid, España Sdi Digital Group A tiempo completo

    DescriptionAs IT Risk & Compliance Specialist, your mission is to keep key IT risks away from Hitachi Energy. You are responsible for IT risk monitoring and reporting and IT risk & compliance assurance for the whole organization.You facilitate effective IT risk & compliance decisions by defining, maintaining, communicating and promoting IT risks & compliance...


  • Madrid, España Sdi Digital Group A tiempo completo

    DescriptionAs IT Risk & Compliance Specialist, your mission is to keep key IT risks away from Hitachi Energy. You are responsible for IT risk monitoring and reporting and IT risk & compliance assurance for the whole organization.You facilitate effective IT risk & compliance decisions by defining, maintaining, communicating and promoting IT risks & compliance...


  • Madrid, España Sdi Digital Group A tiempo completo

    DescriptionAs IT Risk & Compliance Specialist, your mission is to keep key IT risks away from Hitachi Energy. You are responsible for IT risk monitoring and reporting and IT risk & compliance assurance for the whole organization.You facilitate effective IT risk & compliance decisions by defining, maintaining, communicating and promoting IT risks & compliance...


  • Madrid, España Sdi Digital Group A tiempo completo

    DescriptionAs IT Risk & Compliance Specialist, your mission is to keep key IT risks away from Hitachi Energy. You are responsible for IT risk monitoring and reporting and IT risk & compliance assurance for the whole organization.You facilitate effective IT risk & compliance decisions by defining, maintaining, communicating and promoting IT risks & compliance...


  • Madrid, España Sdi Digital Group A tiempo completo

    Description As IT Risk & Compliance Specialist, your mission is to keep key IT risks away from Hitachi Energy. You are responsible for IT risk monitoring and reporting and IT risk & compliance assurance for the whole organization. You facilitate effective IT risk & compliance decisions by defining, maintaining, communicating and promoting IT risks &...


  • Madrid, España HITACHI ENERGY SERVICES SP. Z O.O. A tiempo completo

    Description : As IT Risk & Compliance Specialist, your mission is to keep key IT risks away from Hitachi Energy. You are responsible for IT risk monitoring and reporting and IT risk & compliance assurance for the whole organization. You facilitate effective IT risk & compliance decisions by defining, maintaining, communicating and promoting IT risks &...


  • Madrid, España HITACHI ENERGY SERVICES SP. Z O.O. A tiempo completo

    Description : As IT Risk & Compliance Specialist, your mission is to keep key IT risks away from Hitachi Energy. You are responsible for IT risk monitoring and reporting and IT risk & compliance assurance for the whole organization. You facilitate effective IT risk & compliance decisions by defining, maintaining, communicating and promoting IT risks &...

  • IT Risk Officer

    hace 3 días


    Madrid, España Apollo Solutions A tiempo completo

    A great opportunity for a Senior IT Risk / IT Auditor with experience within Cybersecurity to join a leading bank in Madrid, Spain. This would be great for anyone with experience within IT Audit / IT Risk who also has a background in Cybersecurity within a Financial Services Organisation. **You will be part of the team responsible for**: Conducting...


  • Madrid, España Hitachi Automotive Systems Americas, Inc. A tiempo completo

    IT Risk and Compliance Specialist page is loaded IT Risk and Compliance Specialist Apply locations Madrid, Spain time type Full time posted on Posted 2 Days Ago job requisition id R0028491 Location: Madrid, SpainJob ID: R0028491Date Posted: 2023-08-01Company Name: HITACHI ENERGY SERVICES SP. Z O.O.Profession (Job Category): General ManagementJob...


  • Madrid, España Hitachi Automotive Systems Americas, Inc. A tiempo completo

    IT Risk and Compliance Specialist page is loaded IT Risk and Compliance Specialist Apply locations Madrid, Spain time type Full time posted on Posted 2 Days Ago job requisition id R0028491 Location: Madrid, SpainJob ID: R0028491Date Posted: 2023-08-01Company Name: HITACHI ENERGY SERVICES SP. Z O.O.Profession (Job Category): General ManagementJob...

  • It Risk Analyst

    hace 2 semanas


    Madrid, España Dentons A tiempo completo

    At Dentons we are committed to excellence in supporting legal professionals with cutting-edge solutions. Our dynamic and diverse team collaborates seamlessly to provide a wide range of services, including finance, IT, human resources, marketing, and more. We pride ourselves on fostering a culture of continuous improvement and adaptability.  As an IT risk...

  • It Risk Analyst

    hace 1 semana


    Madrid, España Dentons A tiempo completo

    At Dentons we are committed to excellence in supporting legal professionals with cutting-edge solutions. Our dynamic and diverse team collaborates seamlessly to provide a wide range of services, including finance, IT, human resources, marketing, and more. We pride ourselves on fostering a culture of continuous improvement and adaptability.  As an IT risk...

  • IT Risk Analyst

    hace 2 semanas


    Madrid, España Dentons A tiempo completo

    At Dentons we are committed to excellence in supporting legal professionals with cutting-edge solutions. Our dynamic and diverse team collaborates seamlessly to provide a wide range of services, including finance, IT, human resources, marketing, and more. We pride ourselves on fostering a culture of continuous improvement and adaptability. As an IT risk...

  • IT Risk Analyst

    hace 1 semana


    Madrid, España Dentons A tiempo completo

    At Dentons we are committed to excellence in supporting legal professionals with cutting-edge solutions. Our dynamic and diverse team collaborates seamlessly to provide a wide range of services, including finance, IT, human resources, marketing, and more. We pride ourselves on fostering a culture of continuous improvement and adaptability. As an IT risk...


  • Madrid, España CK Search Global A tiempo completo

    Our client is the Risk Advisory Practice of a global advisory firm based in Madrid. Their Risk Advisory experts advise organisations on how to manage technological, operational, financial and business process risks for a range of Spanish and international clients.. - They are looking for dedicated and experienced Risk specialists at various levels to join...