¡Activa las notificaciones laborales por email!
Genera un currículum adaptado en cuestión de minutos
Consigue la entrevista y gana más. Más información
Una empresa innovadora busca un Auditor de Riesgos de TI y Ciberseguridad para unirse a su equipo en Madrid. En este rol, serás responsable de la gobernanza y gestión de controles de ciberseguridad, apoyando evaluaciones basadas en la norma ISO 27001. Con un enfoque en la atención al cliente y la entrega de servicios, tendrás la oportunidad de trabajar en un entorno multicultural y dinámico que fomenta el crecimiento profesional. La empresa ofrece un modelo de trabajo híbrido, capacitación continua y un ambiente inclusivo que valora la diversidad. Si tienes habilidades analíticas y un enfoque proactivo para la resolución de problemas, esta es la oportunidad ideal para ti.
Descripción del trabajo Third Party Risk IT & Cybersecurity Auditor
Who are we?
We are South Europe Technologies (S.ET), the IT, Data and Operations Shared Service Center of BNP Paribas Personal Finance, with delivery centers in Spain and Portugal, providing the best solutions to BNPP PF entities around the world such as Cetelem (specialized, between others, in financial partnership of major retailers, consumer goods companies and car dealerships).
Among other services, our portfolio is composed of : Applications Management (Architecture, Project Management, Development, and Quality Assurance), IT Risks Cybersecurity Services, Platforms Management, Data Analytics and AI, Operations. Our offices are in Spain (Madrid) and Portugal (Lisbon, Porto). The company brings together over 200+ employees, with expertise in various technologies (Java, .Net, Python, Tibco, APIGee) and other operational roles (Functional Analyst, Project Manager, Business Analyst, Auto Stock Financing operators). We keep growing!
About the job
Main responsibility : Governance and management of IT Risk and Cybersecurity controls, your tasks would be to support cybersecurity assessments based on ISO 27001 Norm. In this context, your functions will be :
What it is in for you :
A great international team providing services all around the world for BNP Paribas Personal Finance subsidiaries. Good perspective for growth : Service catalog is enlarged year after year in order to fulfil all the needs of BNP Paribas Personal Finance entities.
What we are looking for :
You have minimum four years of proven working experience in the field (auditing or governance of IT and Cybersecurity risks and controls). Student / graduated of a computer science related career. Proven experience with the definition of action plans for identified risks. Knowledge of standards like ISO27005 or ISO27001. Understanding of information security and cyber risks related to the banking sector is a plus. Certifications such as CISM, CRISK, CISA, ISO27001LA are a nice to have. Structured analyst, capable to embrace and use data analytics to assess risks, scope audits and test controls. Customer and service oriented (service delivery will be the heart of the activity). You are a Problem-Solving and Decision-Making person, who :
Skills :
Behavioural Skills : Attention to detail / Rigour, Communication skills - Oral written, Planning skills
Transversal Skills : Analytical ability, Ability to manage a project, Critical thinking
Tools - Methodologies - Technologies : MS Office Pack (Microsoft Excel, Word, Power Point)
Language skills : Proficient in English (Reading and writing - B2 minimum). Nice to have : French (Reading and writing).
About our culture :
We are proud to create, maintain and develop business solutions for BNP Paribas Group entities around the world, while keeping a high level of service and providing added value to our customers. Working in an Inclusive and Multicultural environment, we encourage everyone to develop their talents and skills, offering various career opportunities and internal mobility programs, within local SET teams or in other entities within the Group. We value our employees' experience by keeping a well-balanced environment with flexibility regarding the work schedule and care for everyone's personal time. We embraced a hybrid way of working because we believe social connection always adds value to our day-to-day activities.
Benefits :
Training programs, career plans and internal mobility opportunities, national and international thanks to our presence in different countries. Diversity and Inclusion Committee that ensures an inclusive work environment. In recent years, several employee communities have been created to organize diversity and inclusion awareness actions (PRIDE, We Generations and MixCity). Corporate volunteering program (1 Million Hours 2 Help) in which employees can dedicate time out of their working hours to volunteer activities. Flexible compensation plan. Hybrid telecommuting model (50%). 31 vacation days.