Bergler is voor haar eindklant op zoek naar kandidaten die voldoen aan onderstaand profiel:
Functie: Security consultant – JH20110505
Opdrachtomschrijving:
The key objective of this role is to act as a virtual project team member within internal IT projects to ensure that the security controls of new applications being developed/acquired and deployed within the Bank are adequate to meet the business needs and in compliance with Bank policy and other regulatory requirements.
Deliver security advice and guidance to projects using the Risk Assessment Process or other security consultancy method as directed by the Risk Assessment team management.
Functie-eisen:
Business Knowledge
The key objective of this role is to act as a virtual project team member within internal IT projects to ensure that the security controls of new applications being developed/acquired and deployed within the Bank are adequate to meet the business needs and in compliance with Bank policy and other regulatory requirements.
Deliver security advice and guidance to projects using the Risk Assessment Process or other security consultancy method as directed by the Risk Assessment team management.
It is expected that analysts will work with IT project teams to raise awareness of security risks arising from the project designs, and recommend mitigating actions (at both a technical and procedural level).
Liaise with the Business/IT to ensure that all projects complete required security documentation. Formally document residual risks and areas of policy non-compliance for project for risk mitigation/acceptance.
Technical Skills / Hard skills
Risk management techniques/principles (BS7799)
Communication skills both written and spoken are critical to success in this role as there is a requirement to establish relationships with projects and business areas of the Bank.
Consultancy skills are essential as there is great emphasis in this role to ensure service delivery and client satisfaction.
The candidate should have a broad knowledge of technology generally and Information Security technology and methodologies for example, BS7799 / web server security / firewalls / networks / encryption / PKI / TCP/IP / UNIX / Windows etc.
Post graduate degree in information security is an advantage
Membership of a professional security organisation is advantageous though not a pre-requisite. (CISSP, CISA, CISM)
Familiarity with relevant banking legal and regulatory requirements is advantageous.
English essential.
Startdatum:
Zo spoedig mogelijk.
Verwachte duur:
6 maanden, met een optie op verlenging.
Fulltime/Parttime:
Fulltime.
Locatie:
Regio Amsterdam.