Job Search and Career Advice Platform

Aktiviere Job-Benachrichtigungen per E-Mail!

ICT Risk Manager

Payments & Cards Network

Berlin

Vor Ort

EUR 80.000 - 100.000

Vollzeit

Vor 2 Tagen
Sei unter den ersten Bewerbenden

Erstelle in nur wenigen Minuten einen maßgeschneiderten Lebenslauf

Überzeuge Recruiter und verdiene mehr Geld. Mehr erfahren

Zusammenfassung

A leading fintech company is seeking a Senior ICT Risk Manager / Information Security Officer in Berlin to enhance its information security framework. You'll be responsible for overseeing ICT risk management, establishing effective security policies, and monitoring risks. With over 5 years of experience in a financial services context, you'll ensure compliance with DORA and ISO/IEC 27001 standards, all while fostering a strong security culture across departments. This role offers dynamic challenges in a fast-paced environment.',

Qualifikationen

  • 5+ years professional experience in ICT risk management or information security.
  • Experience in establishing and managing an ISMS.
  • Ability to connect technical, regulatory, and business perspectives.

Aufgaben

  • Oversee governance and effectiveness of ICT risk management framework.
  • Establish and improve the Information Security Management System (ISMS).
  • Monitor ICT and cyber risks across the institution.

Kenntnisse

5+ years of experience in ICT risk management
Expert knowledge of DORA
Expert knowledge of ISO/IEC 27001
Analytical and structured working style
Excellent communication skills
Jobbeschreibung
Senior ICT Risk Manager / Information Security Officer

Location: Berlin

A leading fintech company at the forefront of e-mobility payments is looking for a Senior ICT Risk Manager / Information Security Officer to build out the company's information security framework.

Your Tasks
  • You take formal responsibility as the Information Security Officer (ISO) and as the ICT Risk Control Function under DORA, overseeing the governance and effectiveness of the ICT and cyber risk management framework.
  • You establish, operate, and continuously improve the Information Security Management System (ISMS) in alignment with ISO/IEC 27001, DORA, and company strategy, ensuring appropriate policies, controls, and awareness measures are in place.
  • You monitor ICT and cyber risks across the institution, review and challenge first-line assessments, and ensure transparent reporting to the Management Board and Risk Committee.
  • You coordinate the Local Security Incident Response Team (LSIRT) and act as the central contact for information security incidents, ensuring appropriate escalation, documentation, and regulatory notifications.
  • You ensure that internal ICT and security policies, standards, and documentation are consistent, up to date, and embedded effectively across all departments.
  • You are responsible for performing and reviewing third-party and ICT-outsourcing risk assessments, ensuring external providers are evaluated and monitored for security and operational resilience in line with DORA and internal standards.
  • You design and deliver awareness and training programmes on information security and ICT risk topics, fostering a strong security and resilience culture.
  • You stay informed about emerging regulatory, technological, and threat developments to proactively adapt the ICT risk and security frameworks to evolving requirements.
  • You prepare and deliver ICT risk and security reports for internal governance bodies, auditors, and supervisory authorities, ensuring a clear and consistent communication of the institution's ICT risk profile.
  • You prepare and deliver ICT-risk and security reports for internal governance bodies, auditors, and supervisory authorities, and contribute to audits, BaFin inspections, and Risk Committee meetings by providing clear analyses, professional reporting, and proactive recommendations.
  • You will work in close coordination with the Group ISO to ensure consistent alignment of security and ICT risk management practices across both organisations.
Your Profile
  • 5+ years of professional experience in ICT risk management, information security, or operational resilience, within a financial-services or fintech environment.
  • Expert knowledge of DORA, ISO/IEC 27001, and information-security best practices.
  • Experience in establishing, managing, and improving an ISMS, including ICT and third-party-risk control processes.
  • Analytical, structured, and proactive working style with the ability to connect technical, regulatory, and business perspectives.
  • You are a problem solver: You proactively contribute to finding pragmatic solutions for real complex problems in regard to information security.
  • Excellent communication and stakeholder-management skills; confident in engaging with management, auditors, and external partners.
  • Entrepreneurial, proactive, and comfortable in dynamic, international environments.
Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
eine PDF-, DOC-, DOCX-, ODT- oder PAGES-Datei bis zu 5 MB per Drag & Drop ablegen.