Job Search and Career Advice Platform

Enable job alerts via email!

IT Risk Engineer for SaaS Solutions

ING Group

Katowice

On-site

PLN 180,000 - 240,000

Full time

Today
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A global financial institution is seeking an IT Risk Manager to join their team in Katowice, Poland. The role involves managing IT risks related to SaaS applications and conducting risk assessments. Candidates should have at least 3 years of relevant experience and a strong background in IT Risk Management. Additionally, certifications like CISSP or CISM are valued. The position offers a competitive salary and the opportunity to work within a dynamic international team.

Qualifications

  • Minimum 3 years of experience in IT Risk management for SaaS.
  • Proven expertise in IT Risk processes.
  • Ability to implement IT security requirements practically.

Responsibilities

  • Participate in RFI/RFP processes for new SaaS applications.
  • Conduct 3rd party Trust sessions/IT Risk assessments.
  • Assess third party assurance reports and certificate evaluations.

Skills

IT Risk management for SaaS
Problem analysis
Team collaboration
Flexibility

Education

Relevant certifications (CISSP, CISM, etc.)
Job description

ING Hubs Poland is hiring!

The expected salary for this position: 9600 - 15000 PLN

The financial ranges specified in the announcement are adjusted and may differ from the range specified in the remuneration regulations.

We are looking for you, if you:
  • have a minimum of 3-year relevant experience within IT Risk management for SaaS,
  • are a senior and proven expert in the field of IT Risk, possessing in-depth knowledge of IT Risk Management and processes. You can deal with and advise on highly complex and difficult matters, including AI,
  • are able to transfer IT security requirements into practical implementation,
  • are a trusted advisor, who brings IT Risk under control by supporting the business lines. In addition, you know how engineers work and how controls can be best integrated in their daily way of working, ensuring that delivery and risk are balanced for the risk appetite of the business,
  • are flexible, energetic, influential you adapt easily and can work both independently and in a team,
  • can analyse and solve problems. You are a holistic thinker with an attention to details,
  • are organized, can provide structure and maintain focus on the full picture.
You'll get extra points for:
  • active holder of certifications issued by ISC2 (like CISSP, CCSP) or issued by ISACA (like CISM, CISA, CRISC) or similar,
  • business oriented approach,
  • Agile/Scrum knowledge.
Your responsibilities:
  • participate in RFI/RFP processes for new SaaS applications with stakeholders,
  • conduct 3rd party Trust sessions / IT Risk assessments with suppliers,
  • assess the third party assurance reports and certificates of the SaaS supplier (like ISO) and Service Organization Control (SOC 2) audit reports,
  • identify potential exceptions, control gaps and manage the follow-up with SaaS supplier,
  • act as SPOC for 3rd party penetration testing by ING,
  • support Asset Owner on creating IA (Issue Acceptance) and/or MIA (Management Identified Action) and follow up on these,
  • collect and register IT Risk related evidence (from ING and 3rd parties) and ensure this remains up-to-date and timely registered in ITRMP,
  • conduct periodic IT Risk service meetings with SaaS supplier,
  • determine the impact of new/changed external regulations /ING standards on the SaaS supplier,
  • align with 3rd party on their product roadmap and release planning and determine the impact of 3rd party changes on ING,
  • participate with ING Procurement, Legal and DPO.
Information about the squad:

We are looking for an enthusiastic and experienced SaaS (Software as a Service) Engineer to become part of the HR SaaS Chapter within Employee TECH Services. As SaaS engineer you will become part of international team within ING Group.

The role naming convention in the global ING job architecture will be “Engineer III

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.