Information Security Officer, WB CISO Asia
WB CISO is looking to expand the WB CISO Asia Office with an experienced Information Security Manager to steer the overall information security management for all ING entities in the WB Asia region.
The Information Security Officer drives region‑wide information security change for all of WB Asia’s entities, focusing on the rollout of information security policies, standards and new security capabilities, coordination and oversight of global change initiatives, cyber scenario analysis and business advisory, regulatory change management on cybersecurity topics, third‑party cyber risk management, and training and awareness.
The team
The WB CISO Asia Office is staffed out of ING Hubs Philippines and is functionally part of the Global WB CISO organization which has domain‑wide accountability for cybersecurity and IT risk management throughout all Wholesale Banking entities worldwide in the first line of defense (1LoD). The global WB CISO team is physically located in different parts of the world and consists of capability leads and subject matter experts in various areas such as Attack Surface Management, Security Detection & Response, IT & Cyber Risk Management, and Identity & Access Management.
Roles and responsibilities
While the day‑to‑day activities vary continuously, the Information Security Officer will typically:
- Oversee and manage local planning, execution, and monitoring of WB CISO changes initiatives, ensuring alignment with the Global CISO and WB Tech Strategy.
- Act as a Subject Matter Expert, seamlessly integrating WB CISO deliverables into WB Asia's business operations, ensuring alignment with processes such as sourcing, procurement, data protection, operational resilience, and non‑financial risk management.
- Determine the impact of security threats for the WB Asia region, translate these into practical measures and monitor the implementation throughout the region.
- Act as a subject‑matter expert offering security advice and consultancy to WB Asia's business management, proactively engaging in local business projects to ensure security requirements are effectively integrated into the project process.
- Contribute to the planning of and/or execution of cyber scenario analyses together with WB business and other security teams, and oversee and monitor red teaming activities.
- Manage regulatory changes related to cybersecurity topics through performance of review or assessment of the topic and serve as a point of contact for WB CISO during (regulatory) audits.
- Support WB Asia's business management with their third‑party cyber risk management obligations, including assessing vendors on actual risk, streamlining TPCRM processes, and ensuring contractual incorporation of ING’s TPCRM requirements.
How to succeed
We hire smart people like you for your potential. Our biggest expectation is that you’ll stay curious, keep learning, and take on responsibility. In return, we will support you in developing into an even more formidable version of yourself.
Skills
The ideal candidate possesses the following skills and competences, but do not hesitate to apply if you do not tick all boxes yet:
- Demonstrated proficiency in cybersecurity and/or IT risk management topics, ranging from Attack Surface Management, Security Detection & Response, IT & Cyber Risk Management, and Identity & Access Management.
- Strong analytical and critical thinking skills, with the ability to translate complex cybersecurity and IT risk management concepts into tangible solutions and actions.
- Excellent communication and people skills, including the ability to convey technical concepts to non‑technical stakeholders.
- Ability to build partnerships and work collaboratively with a wide range of stakeholders to meet shared objectives, while gaining the support and commitment of others.
- Holds the ING Orange Code in high regard and applies a variety of Orange Behaviors to deliver tangible results.