Your personal AI career agent
Senior Specialist: IT Audit & Cyber Risk (2nd Line)(m/w/x)
Leading IT and IS assurance assessments for applications, infrastructure, and cloud environments. 6+ years of IT/cyber audit or second-line assurance experience required. Focus on cloud security, network security, and IAM/PAM implementation.
Requirements
- 6+ years IT/cyber audit, second-line assurance, cybersecurity implementation, or GRC experience
- Bachelor's or Master's in IT, Information Security, Risk Management, or related field
- Practical experience in Cloud Security, Network Security, Vulnerability Management, Penetration Testing, SIEM/SOC/CERT, Encryption, IAM/PAM, Software Development & Change Management, AI Risk/Governance
- Strong knowledge of COBIT, CSA-CCM, ISO/IEC 27000 series, ITIL, EU regulations
- Preferred certifications: CISA, ISO 27001 LA/LI, CISM, CISSP, CRISC
- Experienced in audit/assurance techniques, risk-based testing, sampling, mentoring juniors
- Ability to identify root causes, understand cross-domain risk impacts, translate technical/regulatory issues to business implications
- Strong communication, negotiation, influencing skills; comfortable presenting to senior stakeholders
- Strong understanding of Three Lines of Defense model
- Excellent English command (written and spoken)
Tasks
- Design risk-based assurance plans
- Implement assurance plans aligned with regulations
- Lead IT & IS assurance assessments
- Evaluate risks in applications, infrastructure, cloud, and network
- Ensure IT compliance with laws and standards
- Test IT General Controls effectiveness
- Test cybersecurity controls across domains
- Identify gaps and improvement areas
- Prepare high-quality assurance reports
- Communicate technical issues to stakeholders
- Track remediation actions
- Validate closure of corrective measures
- Ensure sustainability of corrective actions
- Collaborate with IT and Security teams
- Provide risk insights for new systems
- Contribute to assurance methodology improvement
- Stay updated with cyber threats and trends
Work Experience
- 6 years
Education
- Bachelor's degreeOR
- Master's degree
Languages
- English – Business Fluent
Tools & Technologies
- COBIT
- CSA-CCM
- ISO/IEC 27000 series
- ITIL
- Cloud Security
- Network Security
- Vulnerability Management
- Penetration Testing
- SIEM
- SOC
- CERT
- Encryption
- Identity & Access Management
- Privileged Access Management (PAM)
- Software Development
- Change Management
- Artificial Intelligence (AI) Risk
- AI Governance
Like this job?
BetaYour Career Agent finds similar jobs for you every day.
Not a perfect match?
- SumUpFull-timeOn-siteExperiencedFrankfurt am Main
- Deutsche Bank
Risk, Audit, Compliance and Security Lead - Application Infrastructure(m/w/x)
Full-time/Part-timeOn-siteManagementFrankfurt am Main - Citrus Global
IT Audit Director(m/w/x)
Full-timeOn-siteManagementFrankfurt am Main - Citrus Global
IT Auditor(m/w/x)
Full-timeOn-siteJuniorFrankfurt am Main - Citrus Global
Senior Corporate Audit Manager(m/w/x)
Full-timeOn-siteManagementFrankfurt am Main
Senior Specialist: IT Audit & Cyber Risk (2nd Line)(m/w/x)
Leading IT and IS assurance assessments for applications, infrastructure, and cloud environments. 6+ years of IT/cyber audit or second-line assurance experience required. Focus on cloud security, network security, and IAM/PAM implementation.
Requirements
- 6+ years IT/cyber audit, second-line assurance, cybersecurity implementation, or GRC experience
- Bachelor's or Master's in IT, Information Security, Risk Management, or related field
- Practical experience in Cloud Security, Network Security, Vulnerability Management, Penetration Testing, SIEM/SOC/CERT, Encryption, IAM/PAM, Software Development & Change Management, AI Risk/Governance
- Strong knowledge of COBIT, CSA-CCM, ISO/IEC 27000 series, ITIL, EU regulations
- Preferred certifications: CISA, ISO 27001 LA/LI, CISM, CISSP, CRISC
- Experienced in audit/assurance techniques, risk-based testing, sampling, mentoring juniors
- Ability to identify root causes, understand cross-domain risk impacts, translate technical/regulatory issues to business implications
- Strong communication, negotiation, influencing skills; comfortable presenting to senior stakeholders
- Strong understanding of Three Lines of Defense model
- Excellent English command (written and spoken)
Tasks
- Design risk-based assurance plans
- Implement assurance plans aligned with regulations
- Lead IT & IS assurance assessments
- Evaluate risks in applications, infrastructure, cloud, and network
- Ensure IT compliance with laws and standards
- Test IT General Controls effectiveness
- Test cybersecurity controls across domains
- Identify gaps and improvement areas
- Prepare high-quality assurance reports
- Communicate technical issues to stakeholders
- Track remediation actions
- Validate closure of corrective measures
- Ensure sustainability of corrective actions
- Collaborate with IT and Security teams
- Provide risk insights for new systems
- Contribute to assurance methodology improvement
- Stay updated with cyber threats and trends
Work Experience
- 6 years
Education
- Bachelor's degreeOR
- Master's degree
Languages
- English – Business Fluent
Tools & Technologies
- COBIT
- CSA-CCM
- ISO/IEC 27000 series
- ITIL
- Cloud Security
- Network Security
- Vulnerability Management
- Penetration Testing
- SIEM
- SOC
- CERT
- Encryption
- Identity & Access Management
- Privileged Access Management (PAM)
- Software Development
- Change Management
- Artificial Intelligence (AI) Risk
- AI Governance
Like this job?
BetaYour Career Agent finds similar jobs for you every day.
About the Company
Deutsche Börse
Industry
IT
Description
The company is a leading clearing house for energy and commodity products in Europe, ensuring secure transaction settlements.
Not a perfect match?
- SumUp
IT Security Specialist(m/w/x)
Full-timeOn-siteExperiencedFrankfurt am Main - Deutsche Bank
Risk, Audit, Compliance and Security Lead - Application Infrastructure(m/w/x)
Full-time/Part-timeOn-siteManagementFrankfurt am Main - Citrus Global
IT Audit Director(m/w/x)
Full-timeOn-siteManagementFrankfurt am Main - Citrus Global
IT Auditor(m/w/x)
Full-timeOn-siteJuniorFrankfurt am Main - Citrus Global
Senior Corporate Audit Manager(m/w/x)
Full-timeOn-siteManagementFrankfurt am Main