Senior Cyber and Information Security Technical Risk Assessor

London, United Kingdom

UBS

UBS is a global firm providing financial services in over 50 countries. Visit our site to find out what we offer in Germany.

View all jobs at UBS

Apply now Apply later

City

London

Job Type

Full Time

Country / State

United Kingdom

Function Category

Information Technology (IT)

Join us

At UBS, we embrace flexible ways of working when the role permits. We offer different working arrangements like part-time, job-sharing and hybrid (office and home) working. Our purpose-led culture and global infrastructure help us connect, collaborate, and work together in agile ways to meet all our business needs.

From gaining new experiences in different roles to acquiring fresh knowledge and skills, we know that great work is never done alone. We know that it's our people, with their unique backgrounds, skills, experience levels and interests, who drive our ongoing success. Together we’re more than ourselves. Ready to be part of #teamUBS and make an impact?

Contact Details

UBS Business Solutions SA
UBS Recruiting

Disclaimer / Policy statements

UBS is an Equal Opportunity Employer. We respect and seek to empower each individual and support the diverse cultures, perspectives, skills and experiences within our workforce.

Your team

You’ll be joining the Risk and Oversight team within the Cyber and Information Security Services organization led by the Group Chief Information Security Officer. You’ll be working with team members located across the globe, while reporting into the Head of Cyber Security Risk Assessments based in Zurich, and will work on a range of topics related to Cyber and Information Security and technical risk management. Cyber and Information Security Services is the single point of contact and recognized subject matter expert for all matters related to Cyber and Information Security in the bank.

Your expertise

Substantial experience in technical risk management in Cyber and Information Security, with a focus on technologies and digital aspects, particularly:

• degree in Computer Science, Computer Engineering, Electrical Engineering, Information Security or related discipline
• strong and broad knowledge in multiple areas like network security, database security, cloud security, application security, infrastructure and system hardening, security architectures, technical security controls implementation and ability to judge effectiveness of security control implementation against threats and risk scenarios
• strong technical expertise in one or more areas among Data Protection, Identity and Access Management and Cyber Security
• strong technical knowledge and passion for enabling technologies and processes to operate securely (e.g. new technology products and business initiatives, Cloud, Secure Software Development Lifecycle, DevOps)
• strong knowledge of both Information and Cyber Security risk management and control frameworks (e.g. ISO27001, NIST CSF) and operational threat management frameworks (e.g. MITRE ATT&CK)
• exposure to technology and Information and Cyber Security regulatory requirements balancing compliance with pragmatic risk management skills
• We welcome candidates with experience in offensive security, secure application development and testing or operational security role with the desire of shifting toward technical risk management role, while maintaining technical skills and knowledge of security technologies as the core of their expertise
• welcomed industry recognized certifications like CISSP, CCSP, CISM, CISA, OSCP, SANS etc
• preferred understanding of the financial industry and especially of control and business enabling functions (e.g. Technology Risk, Operations, etc.)
• strong problem solving and analytical skills mixed with a structured but pragmatic attitude
• team player with the ability to work independently and take initiative in order to organize, manage and complete projects and deliverables within tight deadlines
• persuasive oral and effective written presentation and reporting skills. Please note that risk assessment reports writing is an integral part of the role

About us

UBS is the world’s largest and the only truly global wealth manager. We operate through four business divisions: Global Wealth Management, Personal & Corporate Banking, Asset Management and the Investment Bank. Our global reach and the breadth of our expertise set us apart from our competitors..

We have a presence in all major financial centers in more than 50 countries.

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0
Category: Compliance Jobs

Tags: Agile Application security Banking CCSP CISA CISM CISO CISSP Cloud Compliance Computer Science DevOps IAM ISO 27001 MITRE ATT&CK Network security NIST Offensive security OSCP Risk assessment Risk Assessment Report Risk management SANS SDLC

Perks/benefits: Flex hours

Region: Europe
Country: United Kingdom

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.