Ops Risk Engineer
ING Hubs B.V. Philippine Branch • Makati City, PH
Background on what ING is about (Generic ING background)
ING Hubs Philippines (ING Hubs PH) is an international part of the ING organization delivering services to many Business Units across the world for both Wholesale Banking and Retail Banking activities. Working for ING Hubs PH means working with the most diverse workforce and where no challenge is the same.
At ING our purpose is to empower people to stay a step ahead in life and business. We believe that sustainable progress is driven by people with the imagination and determination to make a better future for themselves and those around them.
ING is changing what banking is. For you, that means plenty of opportunities for personal growth in a continuously evolving environment. If this is the environment you thrive in, then apply and join us in changing the future of banking!
Job Overview
As an OpsRisk Engineer, you will be part of the Financial Markets domain. You will help on risk subjects like:
- Act as a central SPOC for all incoming IT risk assessments and control evidencing requirements adhering to the established control framework, SOx requirements and industry best practices.
- Monitoring, tracking and managing deviations to established IT Risk controls.
- Mediating between 1st LOD/2nd LOD and DevOps teams.
- Conducting walkthroughs with auditors to review and validate IT Risk control processes.
- Lead technical due diligence sessions with third party vendors.
You will work in an AGILE environment, following SCRUM methodology together with DevOps squads, helping to maintain a safe and secure application.
Key Responsibilities
Your primary mission is to help the squads to implement IT Controls and to prove the controls are implemented effectively:
- ensure we are in control of our risk appetite
- define and document adequate risk processes and collect the evidence. Ensure that the different risk parties agree with the evidence
- responsible for creating documents and project management requirements or specifications
- provide documentation support to the technical team, interface with developers and operation engineers to define the specifications
- liaison between the team and other IT Risk professionals
- understand the need for security and apply it using the existing framework and constant communication about changes
- participate in automation program for process and evidence for IT risk
- show proactivity and flexibility, come up with plans of action and adopt approaches if necessary
- understand the corporate climate and culture and act as an ambassador supporting the IT custodians and Asset owners
Key Capabilities/Experience
Degree and/or experience in IT risk management, cybersecurity, or related field.
Understanding of fundamental IT risk and security concepts and ability to think critically across technical control domains.
Knowledge of IT control frameworks (eg. SOX, GDPR, CSA CCM) and industry standards (eg. ISO2700x, NIST).
Proven track record of conducting IT control evidencing, qualitative risk assessments and developing mitigation strategies.
Risk reporting and communication:
- ability to communicate risk-related concepts to technical stakeholders.
- experience in liaising with second line risk functions.
- strong written and verbal communications skills in English.
Certifications such as CISSP, CISM, CRISC or equivalent are a plus.
Knowledge
Mandatory:
- Ability to understand the risk processes in an IT environment
- Experience with IT risk standards
- Ability to make clear and convincing statements related to risk procedures
- Proven planning and organizing experience
Nice to have:
- Project management experience. Ability to track, plan and coordinate projects related to third party risk management, technical compliance, and/or IT risk automation.
- Experience in working with Dev(Sec)Ops teams across vulnerability management, threat hunting, security detection and response and developing, or contributing to information security policies and procedures.
- Knowledge of Agile methodology
Die ING ist eine globale Bank mit über 60.000 Mitarbeitenden. Wir sind für rund 38 Millionen Privat-Kundinnen und Kunden sowie für unsere Geschäfts- und Firmenkunden in über 40 Ländern da. Wir sind bunt, vielfältig, digital und stolz darauf. Lust uns kennenzulernen?
Dich erwartet eine Kultur auf Augenhöhe, flexible Arbeitsweisen und die Chance, mit einem Job wirklich etwas zu verändern. Denn als globale Bank berühren wir das Leben von Millionen Menschen und wir streben danach einen positiven Einfluss auf die Gesellschaft und auf unseren Planeten zu haben.
Selbstbestimmtes Arbeiten ist unser täglich Brot: Wir vertrauen unseren Mitarbeitenden und ermutigen sie, ihr Ding zu machen – also ihre Karriere so zu gestalten, wie es für sie am besten ist.
Wir sind mehr als ein Arbeitgeber – wir sind innovativ, lösen Probleme, sind immer einen Schritt voraus und setzen uns dafür ein, einen echten Unterschied zu machen.
Egal, ob Du gerade Deine Karriere startest oder die nächste große Herausforderung suchst, wir haben viele Jobmöglichkeiten, die Dich inspirieren und über Dich hinauswachsen lassen.
Deine Zukunft bei der ING beginnt mit einer Bewerbung. Bist du bereit, Teil der ING zu werden?
Wir haben viele Jobmöglichkeiten, die zu Deinen Fähigkeiten und Ambitionen passen! Verwende die Filter unter der Suchleiste, wie Standort und Jobtyp, um die perfekte Stelle zu finden. Starte jetzt mit der Suche und finde heraus, wohin Dich Dein nächster Karriereschritt führen könnte!
