Miejsca pracy
>
Kraków

    Head Of Cybersecurity Risk - Kraków, Polska - Hsbc Service Delivery

    Hsbc Service Delivery
    Default job background
    W pełnym wymiarze godzin
    Opis

    Technologies-expected : Service Now Archer about-project : The Cybersecurity function is responsible for enabling businesses and functions to manage their Information and Cybersecurity risks as well as ensuring risks and controls are assessed and implemented appropriately, objectively and independently through professional and specialized subject matter experts, whilst ensuring regulatory compliance.


    responsibilities :

    The Global Head of Cybersecurity Risk & Controls will play a key role in coordinating activities required to implement the Cybersecurity Risk and Controls Strategy across globally in partnership with Control Owners and SMEs.


    This role will report into the Global Head of Business Engagement, whilst closely partnering with Regional and Business Information Security Officers.

    The key part of the role will be leading on design, oversight and reporting on Cybersecurity controls.


    The ideal candidate will possess strong leadership and communication skills, a wide knowledge in risk and controls space, as well as across all cybersecurity domains and strong experience in managing international teams and stakeholders.


    The role holder will be required to manage a global team, stakeholders including the Control Owners, regional and business CIOs and COOs; Cybersecurity Leadership and staff; Chief Controls Office (CCO) Technology, 2 Lo D Resilience Risk and 3 Lo D Internal Audit teams.

    Building out, leading and managing a new Global merged team combining Cybersecurity Risk & Controls capabilities.

    Working with the Control Owners, wider CBE team, 2 Lo D, 3 Lo D and CCO Technology to ensure that the Cybersecurity owned controls in the Risk and Controls Library and federated controls owned by the business, are designed according to the Bank's requirements and industry standards and best practises (e.g.

    NIST FSS) and embedded across the business and regions.


    Lead on reporting capabilities to enable oversight of control effectiveness through Key Control Indicators, as well as to ensure these are tailored and consumed by the business and regions.

    Conduct periodic maturity assessment of Cybersecurity controls against industry best practices frameworks (e.g.


    NIST) in partnership with independent/external suppliers Drive continuous improvement and embedding of the Cybersecurity Risk Quantification (CRQ) model to enable a data driven risk assessment and oversight requirements-expected : Experience with Technology risks and controls.

    Knowledge of Cybersecurity is a must.

    Significant, subject matter expertise in risk and control management.


    This includes but is not limited to controls design and implementation and control assessment, as well as MI and executive reporting.

    Wide general cybersecurity knowledge; Understanding of Cybersecurity concepts such as threats, vulnerabilities, attack vectors, inherent/residual risk.

    Understanding metrics and measures in managing risks and controls (KPIs, KCIs, KRIs) is a must.

    Familiarity with the NIST Cyber Security Framework (CSF) would be beneficial.

    Knowledge of Centre for Internet Security (CIS) Measures and Metrics is a plus.

    Experience with GRC Tools (such as HELIOS, Service Now, Archer) is a plus.

    Experience in dealing with Senior Management, internal and external audit.


    Strong understanding of regulatory landscape, and key process to ensure robust response to regulatory assessments/exams, as well as customer and third party requests on Cybersecurity maturity posture.


    benefits :
    sharing the costs of sports activities private medical care sharing the costs of professional training & courses life insurance flexible working time integration events corporate sports team doctor's duty hours in the office retirement pension plan corporate library no dress code video games at work coffee / tea parking space for employees leisure zone extra social benefits employee referral program opportunity to obtain permits and licenses charity initiatives family picnics extra leave


  • Michael Page Kraków, Polska

    Recruitment for, Our client is an international company based in the UK, which provides consulting, advisory and technology enablement services for external clients. This role is related to one of their clients from the banking industry.Operating system, WindowsYour responsibilit ...


  • Michael Page Kraków, Polska W pełnym wymiarze godzin

    Responsibilities : The Controls Design Manager will be deployed onsite to one of our Investment Banking clients to support a key global project in the Cybersecurity regulatory space. · This person will define and design controls and their measurements following the bank's Standar ...


  • Michael Page Kraków, Polska

    The Controls Design Manager will be deployed onsite to one of our Investment Banking clients to support a key global project in the Cybersecurity regulatory space. This person will define and design controls and their measurements following the bank's Standards and new Regulation ...


  • NTIATIVE sp. z o.o. Kraków, Polska

    Expected, Microsoft Azure, DefenderOperating system, WindowsAbout the project, We are looking for a Senior Security Specialist who would be responsible for overseeing security for digital infrastructure and support services at Metso. Responsibilities include ensuring compliance w ...


  • Hsbc Service Delivery Kraków, Polska W pełnym wymiarze godzin

    About-project : Operating within the Cybersecurity Global Defence function and under the management of the Global Head of Cybersecurity Operations, the Global Cybersecurity Operations (GCO) team provides a coordinated suite of "Network Defence" related services and are responsibl ...

  • Avenga

    Security Consultant @

    7 godzin temu


    Avenga Kraków, Polska W pełnym wymiarze godzin

    Supporting the Client in a Third Party Risk Management process (TPRM), performing Vendor Risk Assessments. · Estimated lenght: 2 years Required experience: conducting risk assessments (ideally of third-party vendors) against security standards, such as ISO 27001 and NIST Understa ...


  • endegospzoo Kraków, Polska

    Endego is all about people · At Endego, we take pride in creating comprehensive engineering solutions that set standards in the industry. Our specialization covers sectors such as automotive, railway, agriculture, heavy-duty vehicles, commercial vehicles (such as buses), and addi ...


  • Hsbc Service Delivery Kraków, Polska W pełnym wymiarze godzin

    Technologies-expected : SQL about-project : Global Cybersecurity Operations (GCO) provides a coordinated suite of "Information & Network Defence" services responsible for detecting and responding to information and cybersecurity threats to HSBC assets across the globe. · This inc ...


  • Hsbc Service Delivery Kraków, Polska W pełnym wymiarze godzin

    About-project : The Cybersecurity Head of SRE Cryptography Engineering will be member of Global Cybersecurity SRE (Site Reliability Engineering) function. · The function is responsible for Build, Deploy, maintain of all Cryptography technologies that protects the company. · This ...


  • Groupe SII Kraków, Polska

    Join the team of one of the largest financial institutions in the world as Senior Penetration Testing Coordinator and support the Global Cybersecurity department. The teams are responsible for enabling businesses and functions to manage their information, technology, and cybersec ...


  • Selvita Kraków, Polska

    Location · "> Kraków, Poland Offer description Selvita is a global integrated drug discovery partner for the pharmaceutical and biotechnology industries with laboratories in Poland (Krakow & Poznan) and offices in Cambridge, UK, Greater Boston Area & San Francisco Bay Area in t ...


  • Jacobs Kraków, Polska W pełnym wymiarze godzin-Regular

    Security Operations Center Manager (W/M/X)-(IT-0000FG) Your Impact: At , we are dedicated to pushing the boundaries of innovation and delivering exceptional solutions to our clients. As a leader in our industry, we recognize the critical importance of synergies between cybersec ...


  • Hsbc Service Delivery Kraków, Polska W pełnym wymiarze godzin

    About-project : Manage the Service Now Product Modules in the areas of ITSM, ITBM, Performance Analytics, CMDB, Business Portfolio, Knowledge Management, Continuous Improvement, Resource / Service Cost Management & Financial Services, and various workflows that the application is ...


  • State Street Kraków, Polska W pełnym wymiarze godzin

    Assistant Vice President – Krakow, Poland · Enterprise Technology Risk Analyst · Enterprise Technology Risk Management (ETRM) · It is an exciting time to join State Street Corporation (SSC) as a member of the Risk organization. State Street is the industry leader in investment ...


  • State Street Kraków, Polska W pełnym wymiarze godzin

    Officer – Krakow, Poland · Enterprise TechnologyRiskAnalyst · Enterprise Technology Risk Management (ETRM) · It is an exciting time to join State Street Corporation (SSC) as a member of the Risk organization. State Street is the industry leader in investment management, resea ...


  • Jacobs Kraków, Polska W pełnym wymiarze godzin-Regular

    Security Operations Center Senior Manager (W/M/X)-(IT-0000FG) Your Impact: At , we are dedicated to pushing the boundaries of innovation and delivering exceptional solutions to our clients. As a leader in our industry, we recognize the critical importance of synergies between c ...


  • Groupe Sii Kraków, Polska W pełnym wymiarze godzin

    Join the team of one of the largest financial institutions in the world as Senior Penetration Testing Coordinator and support the Global Cybersecurity department. The teams are responsible for enabling businesses and functions to manage their information, technology, and cybersec ...


  • Grape Up Kraków, Polska W pełnym wymiarze godzin

    Grape Up helps some of the biggest brands in the world change the way they deliver software and build cloud-native applications. · We navigate their journey to the cloud, show them how to work agile, and leverage cloud-native technologies so they can deliver their software faster ...

  • Westinghouse Electric Company LLC.

    SAP Analyst

    6 godzin temu


    Westinghouse Electric Company LLC. Kraków, Polska

    This is a unique opportunity for a highly motivated candidate to jump into SAP The SAP Analyst-Ariba is a key role for the Westinghouse Ariba/SAP systems, and internal business partners. · The role requires strong technical aptitude, interpersonal communication, problem solving ...


  • Philip Morris International , Kraków, Polska W pełnym wymiarze godzin

    MAKE HISTORY WITH USAt PMI, we've chosen to do something incredible.We're totally transforming our business and building our future on smoke-free products with the power to deliver a smoke-free future.With huge change, comes huge opportunity. So, wherever you join us, you'll enjo ...