Cloud Security Risk Lead Assessor
hace 2 semanas
The RISK ORM (Operational Risk Management) Technology Risk Intelligence Digital Solutions department is part of the Group Risk Functions within BNP Paribas. It is a part of the 2nd line of defence under the Bank’s Enterprise Risk Management and Chief Operational Risk Officer. The department has responsibility for identification of key technology risks to the Bank and influencing business and technology partners to take sound risk management decisions. Our work involves following initiatives, for example:
- Application & Infrastructure Risk Assessments working with the Business and Technology teams to identify security issues in existing and new systems, and agree corresponding actions to mitigate or accept risks
- Tracking issues and agreed actions to completion
- Horizontal and Vertical Risk Assessments
- Partnership to the Business and Technology teams in helping them understand their technology risk profile and influencing their risk management decisions.
**ROLE**
This role is in alignment with 2LoD involvement required on BNP Paribas dedicated hybrid Cloud that is core of Cloud Strategy. The scope of the role involves coordinate, oversight and advice:
- BNP Paribas Group dedicated hybrid Cloud Program, Cloud adoption and operations with periodic and event based risk reporting to management and risk committees in alignment with IT Group Cloud Program & team, Group CISO & team, IT Group Production & teams and Cloud Service Provider teams.
- Community building, collaboration and partnering as dedicated hybrid Cloud security expert with RISK ORM and cross functional stakeholders on policies, procedures, control requirements, poles and entities dedicated hybrid Cloud adoption, Operational resilience, crisis management, data centre and telecom plan, Cloud security operations, third party technology risk management, emerging technology, pole and entities IT strategy & strategic programs, etc.
The position is based in Madrid reporting directly to the Global RISK ORM Iberian Centre of Excellence and functionally to RISK ORM Technology Risk Intelligence Digital lead located in London.
**SCOPE**
KEY RESPONSIBILITIES
- Coordinate, oversight and advice RISK ORM contribution and oversight on BNP Paribas Group dedicated hybrid Cloud Program, Cloud adoption and operations with periodic and event based risk reporting to management and risk committees in alignment with IT Group Cloud Program, Group CISO, IT Group Production teams, Cloud service providers, etc.
- Participate in multiple Group Cloud program and operations governance committees for dedicated hybrid Cloud with IT Group Cloud Program, Group CISO, IT Group Production teams, Cloud service provider, etc. covering topics of Cloud strategy, Cloud security & ICT (Information and Communications Technology) risks, Cloud adoption, operational security, remediation actions, etc.
- Periodic (weekly, monthly, quarterly, half yearly, annual) and need or event based risk reporting to management and group risk committees on dedicated hybrid Cloud services adoption status and plan, risks, issues, Cloud security maturity, remediation actions, etc.
- Define minimum baseline dedicated hybrid Cloud security controls in collaboration with IT Group Production security teams, Cloud security experts, Operational risk officers, ICT risk officers, etc.
- Define process and workflow to automate monitoring and reporting of compliance to minimum baseline dedicated hybrid Cloud security controls on Cloud security posture management solutions in collaboration with IT Group Production teams, Cloud service provider, ICT risk officers, operational risk officers, etc.
- Identify and update risk reporting methods using automated solutions, leveraging existing or new solutions of Governance, Risk and Compliance (GRC) tools for dedicated hybrid Cloud services asset register, risk register, remediation tracking, etc. Cloud Security Posture Management solutions, operational risk management solutions, IT service management solutions, reporting & dashboard solutions, etc.
- Promote and manage the Cloud community building, collaboration and partnering as dedicated hybrid Cloud security expert with operational Risk stakeholders and cross functional teams on policies, procedures, control requirements, poles and entities dedicated hybrid Cloud adoption, operational resilience, crisis management, Cloud security operations, data centre and telecom plan, third party technology risk management, emerging technology, pole and entities IT strategy & strategic programs, etc.
- Lead and liaise with third party risk management teams periodically (weekly / monthly / quarterly) and on need or event based for Contract committees, security committees with Cloud providers and Independent Software vendors (ISVs), 3rd parties management committees and reporting to management on Cloud provider risks, 3rd parties, ISVs risks, issues, remediation actions, etc.
- Lead and liaise with Operational risk and ICT risk of
-
Cloud Security Risk Assessor
hace 2 semanas
Madrid, España Apollo Solutions A tiempo completo**Cloud Security Risk Lead** Location: Madrid, Spain Salary €60K - €65K plus benefits & bonus A great opportunity for a **Cloud Security Risk Lead** to join a leading Banking organisation based in the **Madrid, Spain**. This position will have a strong focus on Business Continuity and Technology Resilience. **As a Cloud Security Risk Lead, you will be...
-
Cloud Security Risk Assessor
hace 2 semanas
Madrid, España Apollo Solutions A tiempo completoCloud Security Risk Lead **Location**: Madrid, Spain Salary â¬60K - â¬65K plus benefits & bonus A great opportunity for a Cloud Security Risk Lead to join a leading Banking organisation based in the Madrid, Spain. This position will have a strong focus on Business Continuity and Technology Resilience. **As a Cloud Security Risk Lead, you...
-
Cyber Security
hace 2 semanas
Madrid, España Apollo Solutions A tiempo completoA great opportunity for a Senior Cyber Security IT Risk Assessor  with experience within Cybersecurity to join a leading bank in Madrid, Spain. **You will be part of the team responsible for**: Conducting Independent Technical Tests - Cybersecurity Assessments, including Penetration Testing and Red Teaming. Application & Infrastructure Risk...
-
FinTech Information Security Lead | Risk
hace 1 semana
Madrid, España COLIBRIX ONE A tiempo completoA fintech company in Madrid seeks an experienced Information Security Manager to lead security policy development, manage risks and incidents, and ensure compliance with relevant standards like PCI DSS and GDPR. Ideal candidates will have a robust understanding of cloud security, experience in risk management, and strong vendor relations. The role offers...
-
Cloud Security Architect
hace 1 semana
Madrid, España Arrow Electronics, Inc. A tiempo completo**Position**: Cloud Security Architect We are looking for a qualified Security - Architect to join our ArrowSphare team based in Paris. As a member of the R&D department, you will work closely with the infrastructure team as well as the development team on all aspects of software development and in close collaboration with telecom companies across...
-
Security Risk Assessment Expert
hace 2 semanas
Madrid, España AXA Group A tiempo completoAbout AXA As a world-leading insurance company, we act for human progress by protecting what matters. With 153,000 employees in 54 countries working for 105 million customers, we’ve created a truly dynamic and vibrant community. Inclusion and diversity link closely with our values, and together we’re nurturing a culture of respect, for each other, for...
-
Security Risk Assessment Expert
hace 7 días
Madrid, España AXA Group A tiempo completoAbout AXA As a world-leading insurance company, we act for human progress by protecting what matters. With 153,000 employees in 54 countries working for 105 million customers, we’ve created a truly dynamic and vibrant community. Inclusion and diversity link closely with our values, and together we’re nurturing a culture of respect, for each other, for...
-
Security Risk Management Specialist
hace 2 semanas
Madrid, España Canonical A tiempo completoJoin to apply for the Security Risk Management Specialist role at Canonical Join to apply for the Security Risk Management Specialist role at Canonical In security risk management we're looking to harness the power of industry best practice combined with driving new innovation on how we do security risk assessments and modelling. Our security risk management...
-
Information Security Risk
hace 1 semana
Madrid, España RHEA Group A tiempo completoAre you looking for a new opportunity in a fast-moving global company with a family feel? A job where you could have an impact? We are looking for an Information Security Risk & Compliance Officer to work in Madrid, Spain. As an Information Security Risk & Compliance Officer, you will be responsible for the delivery of the risk management and compliance...
-
Security Lead
hace 4 semanas
Madrid, España Prism Digital A tiempo completoOT Security Lead | Operational Technology | ICS/SCADA & PLC Security | Build OT Security from Scratch Across Global Manufacturing~ Salary:Up to €140,000 + bonus + benefits ~ Location:Seggovia, Spain - hybrid ~( Please note: sponsorship is not available at this time. )The Role You’ll be the first dedicated OT Security hire, owning the OT cyber agenda...