Search by job, company or skills

D

Information Security Officer (ISO)

2-7 Years
new job description bg glownew job description bg glownew job description bg svg
  • Posted 2 days ago
  • Over 50 applicants
Quick Apply

Job Description

  • DWS Group operates in a business environment with an almost complete dependence on information, which is processed and transmitted by information systems and interconnected computer networks and stored physically and electronically. Information security risk and threat landscape are dynamic and requirements for security are constantly growing. It is essential for DWS that confidentiality, integrity (authenticity) and availability of information are protected, and risk is managed according to DWS Risk Appetite and in accordance with legal and regulatory requirements.
  • The role of the DWS Information Security Officer (ISO) is aligned to the DWS COO divisional unit and will report into the Divisional Information Security Officer (D-ISO). DWS ISO assumes ownership for the assigned IT Assets from an information security (IS) perspective.

Your Key responsibilities

  • To assume ownership and responsibility for assigned IT assets, in line with the Group Information Security management processes and the DWS ISMS
  • To execute IS Risk assessments and compliance evaluations for assigned IT assets
  • To assign accurate information classification to assigned IT assets based on
  • confidentiality of Information
  • To maintain the Information Security related documentation of assigned IT assets in the Groups asset inventory
  • To establish a good working relationship with Business Application Owners (BAO) and other Subject Matter Experts (SME) of the divisions and functions of the assigned assets and develop profound knowledge of the supported processes and data
  • To support key role holders such as ITAOs and TISOs to develop a secure environment by evaluating the Information Security requirements as early as possible in the system development life cycle to select the applicable Information Security Controls for implementation
  • To give guidance to ITAOs and TISOs on the implementation of compensating Controls in case of deviations from the applicable Information Security Controls
  • To execute and document periodical recertification of user access rights in their area of responsibility in compliance with the Groups identity and access processes
  • To support implementation of Segregation of Duty (SoD) rules for the assigned IT assets
  • To contribute to the Information Security incident management process in the case of a security breach
  • To deliver all items requested during regulatory and internal Information Security related audits
  • To remain fully trained and skilled by completing the required Information Security
  • trainings provided by CSO or as requested by the Divisional CISO or the Divisional ISO.

Your skills and experience

Essential

  • Candidate should have proven experience of working in Information Security and/ or Information Technology, ideally in a regulated financial institute
  • Strong communication (written and verbal) skills with the ability to effectively communicate with different stakeholders within IT and business functions with excellent command of the English language.
  • Knowledge on Information Security Controls, Data Protection Policy, Information classification principles and segregation of duties requirements within a financial organization
  • Positive attitude and a team player
  • Proactive and ability to work independently in a global team
  • Open to learn, adapt and work with new technologies
  • Outstanding problem solving, analytical and project management skills
  • Proficiency with Microsoft Office programs
  • Fluent English and communication skills

Education / Certification

  • Degree-level IT and/or information security qualification, or equivalent experience in Information Security and IT Security
  • General understanding of current security industry standards, best practices, and/or frameworks i.e.: NIST, ENISA, ISO27001, OWASP

More Info

Job Type:
Industry:
Function:
Employment Type:
Open to candidates from:
Indian

About Company

About company: "Deutsche Bank is a leading global investment bank headquartered in Frankfurt, Germany. Founded in 1870, it offers a wide range of financial services including investment banking, asset management, corporate banking, and retail banking. It operates in over 70 countries and serves individuals, businesses, and governments. Known for its strong presence in Europe and global financial markets, Deutsche Bank has faced both major successes and significant challenges, including restructuring efforts and regulatory scrutiny in recent years."

Job ID: 119706121