Upload Button Icon Add office photos
filter salaries All Filters

271 DWS Investment Jobs

Technology Risk Manager - Information Security

0-2 years

Pune

1 vacancy

Technology Risk Manager - Information Security

DWS Investment

posted 2mon ago

Job Description

We are looking for an Information Security specialist to join our Risk and Control team to be responsible for Cyber security working closely with the Information Technology risk and Embedded Risk Team. This involves in summary, Hands-on technical data analysis and control process improvement, Control effectiveness testing, Control Uplift remediations activities and overall ensuring technology and security controls are implemented effectively and sustainably.
The Risk and Control Team ensures the Banks information control priorities are effectively implemented across Corporate Bank & Investment Bank Technology. The team offers dedicated support for each Chief Information Officer (CIO) business line, advisory services for control responses, and program management services for broad control uplifts. The teams mission is to reduce the organizations technology risk exposure by implementing key bank controls, ensuring appropriate and timely resolution of audit issues, and participating in the Banks design of control implementations. Therefore, your role would be integral in supporting the front-line management in identifying, assessing/measuring risks, identifying remediation actions, and monitoring risks.
What we ll offer you
As part of our flexible scheme, here are just some of the benefits that you ll enjoy
  • Best in class leave policy
  • Gender neutral parental leaves
  • 100% reimbursement under childcare assistance benefit (gender neutral)
  • Sponsorship for Industry relevant certifications and education
  • Employee Assistance Program for you and your family members
  • Comprehensive Hospitalization Insurance for you and your dependents
  • Accident and Term life Insurance
  • Complementary Health screening for 35 yrs. and above
Your key responsibilities
At Risk & Control Governance team, you will be responsible for activities involving Information Security controls and will partner with the CB & IB Tech risk team, CIO teams and Risk Leads to ensure overall risk posture for the area is improved. Able to liaise with Risk leads, senior stakeholders and technology/process owners on reporting, technical data analysis, process improvements and tracking of key deliverables for control uplifts and ensuring operational effectiveness of controls are tested and reported. To be successful in this role the below are key responsibility areas
  • Strong experience in Risk identification, assessment, treatment and monitoring of information security and cyber security risks across the IT landscape
  • Lead information and application security control uplift programs in the Cyber Hygiene including application code scan, application threat monitoring etc
  • Deep technical knowledge in Cyber Security and Information security guidelines and frameworks like NIST, ISO27001
  • Governance analysing data gaps related to control uplifts, emerging patterns of compliance deterioration by technology, remediation responsibilities.
  • Regulatory and Audit management support Provide analysis and supporting evidence review to improve quality of audit evidence submission for critical audit response/closure
  • Provide assistance to application teams on Information Security control implementation requirements. Drive proactive risk culture within the organization.
  • Control Uplift Remediation Ensures Information Technology and Information Security risk remediation programs are initiated and executed in line with Deutsche Bank policies and frameworks. Also work with policy owners and control owners to improve processes and tooling.
  • Work with the control teams to identify and resolve potential issues in Information Security control design. Identify and resolve implementation issues. Suggest effectiveness metrics, ensure control design includes proper evidence, and provide input to the design and effectiveness of centrally provided tooling
  • Ad hoc projects related to Information Security.
Your skills and experience
  • Must have excellent knowledge and conduct Cyber Security control assessments and experience supporting it and related Certification preferred (CISA, ISO27001, etc)
  • Good understanding of IT Governance, Risk and compliance principles, as well as IT Controls in all disciplines of technology domains
  • Good familiarity in conducting Cyber security Control effectiveness testing based on specific risk patterns.
  • Good familiarity with general Patching concepts and challenges in critical technologies (Java, Oracle, UNIX, etc.), PVG process and CVE advisory process for vulnerabilities
  • Advanced verbal and written communication skills to present ideas and concepts effectively
  • Demonstrable familiarity with concepts of Technology Roadmap Compliance, Patching lifecycle knowledge especially Java, Oracle, Disaster Recovery planning and testing
  • Desirable experience providing support for external regulatory examinations or audits
  • Desirable experience in assessing risk, writing issues, and developing appropriate corrective actions.
How we ll support you
  • Training and development to help you excel in your career
  • Coaching and support from experts in your team
  • A culture of continuous learning to aid progression
  • A range of flexible benefits that you can tailor to suit your needs

Employment Type: Full Time, Permanent

Read full job description

Compare DWS Investment with

TCS

3.7
Compare

Accenture

3.9
Compare

Wipro

3.7
Compare

Cognizant

3.8
Compare

Capgemini

3.8
Compare

HDFC Bank

3.9
Compare

ICICI Bank

4.0
Compare

Infosys

3.7
Compare

HCLTech

3.5
Compare

Tech Mahindra

3.6
Compare

Genpact

3.9
Compare

Teleperformance

3.9
Compare

Concentrix Corporation

3.8
Compare

Axis Bank

3.8
Compare

Amazon

4.1
Compare

Jio

3.9
Compare

Reliance Retail

3.9
Compare

IBM

4.1
Compare

iEnergizer

4.7
Compare

LTIMindtree

3.9
Compare

Similar Jobs for you

Security at Tide Software

New Delhi

1-6 Yrs

₹ 3-8 LPA

Information Security Analyst at Houghton Mifflin Harcourt

Pune

1-6 Yrs

₹ 3-8 LPA

Information Security Specialist at Sourced Group an Amdocs Company

Pune

2-3 Yrs

₹ 7-11 LPA

Information Security Engineer at SOFFIT INFRASTRUCTURE SERVICES PRIVATE LIMITED

Kochi

2-7 Yrs

₹ 4-9 LPA

Risk Management at Deloitte Shared Services India Pvt. Ltd

Bangalore / Bengaluru

2-6 Yrs

₹ 4-8 LPA

Information Security Analyst at ION

Kolkata, Mumbai + 5

1-5 Yrs

₹ 7-11 LPA

Information Security Analyst at American Express Company

Bangalore / Bengaluru

1-6 Yrs

₹ 3-8 LPA

Senior Security Engineer at Dream Game Studios

Mumbai

2-6 Yrs

₹ 4-8 LPA

Corporate Trainer at Koenig Solutions

Delhi/Ncr

2-7 Yrs

₹ 4-9 LPA

Chief Information Security Officer at WN Infotech

Noida, Pune + 2

0-3 Yrs

₹ 12-25 LPA

Technology Risk Manager - Information Security

0-2 Yrs

Pune

2mon ago·via naukri.com

Artemis - Client Service Analyst - CLO

0-1 Yrs

Mumbai

18hr ago·via naukri.com

Engineer- Java

13-16 Yrs

New Delhi, Bangalore / Bengaluru

22hr ago·via naukri.com

GCM Analyst

1-6 Yrs

Mumbai

22hr ago·via naukri.com

Operations Lead

0-1 Yrs

Jaipur

22hr ago·via naukri.com

TAS_ITAO

0-2 Yrs

New Delhi, Bangalore / Bengaluru

22hr ago·via naukri.com

DCO Sr. Analyst

5-10 Yrs

Mumbai

22hr ago·via naukri.com

Home Loan Savings - Senior Engineer

0-1 Yrs

Pune

22hr ago·via naukri.com

CRM - Relationship Management, Associate

Pune

22hr ago·via naukri.com

Lead Engineer

0-1 Yrs

Pune

22hr ago·via naukri.com
write
Share an Interview