Job Reference #
City
Job Type
Your role
- perform independently high-quality and high-integrity Cyber and Information Security technical risk assessments, root cause analysis and risk investigations on IT and Cloud architectures, infrastructures, platforms, applications, technology stacks and business projects, based on current cyber threats landscape and emerging risks.
- perform deep dives and thematic reviews into bank’s Cyber and Information Security capabilities and services, drawing conclusions on the overall risk posture of a specific security vertical and recommending technical solutions to drive risk reduction.
- proactively and constructively challenge the status quo identifying Cyber and Information Security operational risks, proposing realistic remediation or improvement solutions while understanding potential tradeoffs and minimizing risks, always having an attacker perspective in mind.
- be the trusted technical partner in Cyber and Information Security for senior stakeholders in a highly federated environment, being the advocate of the Security Risk culture.
- drive ad-hoc or long-term technical remediation initiatives, to ensure the outcome of risk assessments are translated into actions, projects and deliverables and are followed up on.
- streamline and standardize the technical risk assessment process by facilitating reusability of information and knowledge accumulated over time in the team, thus being able to produce risk assessments quickly, in a fast pace environment.
- be open in learning data analytics techniques and manage data sets to integrate objective data analytics insights into the risk assessment process to produce high quality deliverables.
Your team
Your expertise
- degree in Computer Science, Computer Engineering, Electrical Engineering, Information Security or related discipline.
- strong and broad knowledge in multiple areas like network security, database security, cloud security, application security, infrastructure and system hardening, security architectures, technical security controls implementation and ability to judge effectiveness of security control implementation against threats and risk scenarios.
- strong technical expertise in one or more areas among Data Protection, Identity and Access Management and Cyber Security, ideally matured in a CISO function.
- strong technical knowledge and passion for enabling technologies and processes to operate securely (e.g. new technology products and business initiatives, Cloud, Secure Software Development Lifecycle, DevOps).
- strong knowledge of both Information and Cyber Security risk management and control frameworks (e.g. ISO27001, NIST CSF) and operational threat management frameworks (e.g. MITRE ATT&CK)
- exposure to technology and Information and Cyber Security regulatory requirements balancing compliance with pragmatic risk management skills.
- very welcome candidates with experience in offensive security, secure application development and testing or operational security role with the desire of shifting toward technical risk management role, while maintaining technical skills and knowledge of security technologies as the core of their expertise.
- welcomed industry recognized certifications like CISSP, CCSP, CISM, CISA, OSCP, SANS etc.
- strong problem solving and analytical skills mixed with a structured but pragmatic attitude.
- can-do attitude and ability to drive activities and stakeholders forward, ideally matured in a Technical Project Manager role or similar.
- team player with the ability to work independently and take initiative in order to organize, manage and complete projects and deliverables within tight deadlines.
- persuasive oral and effective written presentation and reporting skills. Please note that risk assessment reports writing is an integral part of the role.
About us
We have a presence in all major financial centers in more than 50 countries.
How we hire
Join us
From gaining new experiences in different roles to acquiring fresh knowledge and skills, we know that great work is never done alone. We know that it's our people, with their unique backgrounds, skills, experience levels and interests, who drive our ongoing success. Together we’re more than ourselves. Ready to be part of #teamUBS and make an impact?
Contact Details
UBS Recruiting
Disclaimer / Policy Statements