Security risk officer
Apply Now
Date posted
05/23/2023
Location
Bucuresti | Romania
Company
Worldline
Day-to-Day Responsibilities
- Connect with the business and articulate the risks and risk processing activities (organizational, procedural and/or technology) in business language to the business team members.
- Handle and maintain the Information security risk assessment program (incl. Business Impact Analyses, Information Risk Processes and Compliance) at Group Security Level.
- Deliver information security risk assessments of the current infrastructure, projects, new technologies, external service providers and Information Security related changes.
- Support the execution of security risk assessments of third parties and partners in line with the Global Offshore Office and carry out asset classification and ensure with all GBLs and partners security assessments are conducted on all critical platforms.
- Supply in the adequate integration of the Information security risks approach within the corporate risk management framework.
- Guide staff and managers on the appropriate risk mitigation strategies.
- Run the communication and reporting on risk metrics supporting the overall Information Security (dashboard) reporting.
- Support quality assurance reviews of security requirements in Security Development Lifecycle Management and Project Management.
- Continuously assess the shortfall between both actual security measures in place and being effective and those established at a policy level thus highlighting deficiencies for remedial action.
- Support the implementation and management of a GRC (Governance, Risk and Compliance) tool.
- Support business in responding to customer RFP in regards to information security management topics, and certification and standards compliance.
- Consolidate security deviations, follow up on the handling of expired and non-compliant deviations from GBLs
- Consolidate and analyze aggregated security risks and remediation plan at group level
Who Are We Looking For
We look for big thinkers. People who can drive positive change, step up and show what’s next – people with passion, can-do attitude and a hunger to learn and grow. In practice this means:
- Good communications skills and strong knowledge of spoken and written English.
- Technical background with a good understanding of security concepts and practical usage.
- Experience in applying and improving corporate policies in line with security standards, regulations and methodologies in the financial industry (e.g. ISO 27k, PCI-DSS, NIST CSF, ECB CROE).
- Proactively seeks to improve security processes and implements best in class solutions, raising security awareness and overall security measures.
- Ability to work efficiently with minimal oversight/direction remotely, adjusting to changing priorities, circumstances and personal interaction styles.
Perks & Benefits
At Worldline you’ll get the chance to be at the heart of the global payments technology industry and shape how the world pays and gets paid. On top of that, you will also:
- Be part of a company guided by a strong purpose to do good and recognized as top 1% of the most sustainable companies in all sectors worldwide.
- Work with inspiring colleagues and be empowered to learn, grow and accelerate your career.
- You will be able to develop your skill in multiple fields: coding, statistics, economy
- Competitive salary
#LI-DNI