Now hiring

Senior ICT Risk Specialist (f/m/d) (Prague, CZ) @ Deutsche Börse AG

Prague, CZOnsiteFull-time
Apply with ResuMinder

Opens on the employer's site

About this role

<p style="margin:0.0in;line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><strong><span style="font-size:10.5pt;line-height:115%;font-family:Arial, sans-serif">Your area of work:</span></strong></p> <p style="margin:0.0in;line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"> </p> <p style="margin:0.0in;line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.5pt;line-height:115%;font-family:Arial, sans-serif">As part of the Group Security function, you will contribute directly to Deutsche Börse Group’s ICT strategy by helping safeguard the organization’s information assets. Acting as a central service provider across the Group, the department ensures the confidentiality, integrity, and availability of information through robust security controls aligned with regulatory requirements and international standards such as ISO 2700x.</span></p> <p style="margin:0.0in;line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.5pt;line-height:115%;font-family:Arial, sans-serif">In this role, you will join the Information Security Risk Management team and play a key part in strengthening the ICT Risk Framework. You will focus on Cybersecurity Risk Management, partnering closely with senior stakeholders across business and technology to ensure effective risk identification, assessment, and mitigation within a highly dynamic and regulated capital markets environment.</span></p> <p style="margin:0.0in;line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"> </p> <p style="margin:0.0in;line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"> </p> <p style="margin:0.0in;line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><strong><span style="font-size:10.5pt;line-height:115%;font-family:Arial, sans-serif">Your responsibilities:</span></strong></p> <p style="margin:0.0in;line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"> </p> <ul> <li style="line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.5pt;line-height:115%;font-family:Arial, sans-serif">Lead the development, implementation, and continuous improvement of cybersecurity risk assessment methodologies, processes, and tools</span></li> <li style="line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.5pt;line-height:115%;font-family:Arial, sans-serif">Act as a subject matter expert in cybersecurity risk assessment and provide expert guidance to internal stakeholders</span></li> <li style="line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.5pt;line-height:115%;font-family:Arial, sans-serif">Coordinate and conduct risk assessments for ICT assets in line with the Group’s ICT Risk Strategy and policies</span></li> <li style="line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.5pt;line-height:115%;font-family:Arial, sans-serif">Collaborate with asset owners and security teams to identify, evaluate, and mitigate cybersecurity risks</span></li> <li style="line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.5pt;line-height:115%;font-family:Arial, sans-serif">Advise on risk treatment strategies and support the development of remediation plans</span></li> <li style="line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.5pt;line-height:115%;font-family:Arial, sans-serif">Maintain and enhance risk scoring models, ensuring consistent application across the organization</span></li> <li style="line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.5pt;line-height:115%;font-family:Arial, sans-serif">Prepare and present risk assessment outcomes to senior stakeholders, including risk owners and governance bodies</span></li> <li style="line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.5pt;line-height:115%;font-family:Arial, sans-serif">Monitor regulatory developments and industry trends to ensure ongoing compliance and alignment with best practices</span></li> <li style="line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.5pt;line-height:115%;font-family:Arial, sans-serif">Support internal and external audits, as well as regulatory inquiries related to cybersecurity risk management</span></li> <li style="line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.5pt;line-height:115%;font-family:Arial, sans-serif">Contribute to the development of risk metrics and reporting for executive and board-level audiences</span></li> </ul> <p style="margin:0.0in;line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"> </p> <p style="margin:0.0in;line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"> </p> <p style="margin:0.0in;line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><strong><span style="font-size:10.5pt;line-height:115%;font-family:Arial, sans-serif">Your profile:</span></strong></p> <p style="margin:0.0in;line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"> </p> <ul> <li style="line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.5pt;line-height:115%;font-family:Arial, sans-serif">Master’s degree in Information Technology, Cybersecurity, Business Informatics, or a comparable field</span></li> <li style="line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.5pt;line-height:115%;font-family:Arial, sans-serif">8+ years of experience in ICT risk management, cybersecurity, GRC, IT audit, or related areas</span></li> <li style="line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.5pt;line-height:115%;font-family:Arial, sans-serif">Relevant certifications such as CISSP, CISA, CISM, CRISC are considered an advantage</span></li> <li style="line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.5pt;line-height:115%;font-family:Arial, sans-serif">Strong understanding of regulatory frameworks in the financial industry (e.g. EBA Guidelines, DORA, NIS2) and standards such as ISO 2700x or NIST</span></li> <li style="line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.5pt;line-height:115%;font-family:Arial, sans-serif">Excellent analytical and problem-solving skills, with a structured and solution-oriented mindset</span></li> <li style="line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.5pt;line-height:115%;font-family:Arial, sans-serif">Proven ability to work independently, with strong organizational and planning capabilities</span></li> <li style="line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.5pt;line-height:115%;font-family:Arial, sans-serif">Outstanding communication and stakeholder management skills, with fluency in English (German is a plus)</span></li> <li><span style="font-size:10.5pt;line-height:115%;font-family:Arial, sans-serif">Proactive, curious, and collaborative personality</span></li> </ul>

Ready to apply?

Install the ResuMinder extension and we'll auto-fill the application in seconds — no rewriting.

See how your CV scores