IT Security Risk Analyst / IT Vulnerability Manager recruitment
The Investment Bank’s IT Operational Risk Management function is responsible for supporting the IB CIO to effectively manage operational risk, security risk, regulatory risk and audit (internal external).
The team is based in London and Zurich, but covers the global IT environment of UBS Investment Bank.
The successful candidate will cover 2 key areas: IT Security Risk Analysis / Assessments, and Vulnerability Management across IB IT globally. Key responsibilities per functional area will include but not limited to:
IT Security Risk Analyst
1) Execute specialist IT Security Risk Assessments on major Bank programmes
2) Liaise with IT Security / IT Risk Managers of other CIO areas for projects/programs that span across multiple areas
3) Security Assurance work which will consist of providing planning/tracking of and governance around IT Security Penetration Testing
4) The opportunity to enhance and optimize the implementation of sustainable security controls along the full Software Development Lifecycle within IB IT globally
IB IT Vulnerability Risk Manager
1) Responsibility for the IT Vulnerability Lifecycle Management process across IB IT globally
2) Work together with the Security Event and Incident Management function to assist with/agree on technical risk assessments of vulnerabilities
3) Work with Remediation Stream Owners to ensure appropriate remediation/mitigation is being planned and tracked
4) Ensure that Business Impact Assessments are adequate
5) Escalate any items considered to impose unacceptable risk to/within the IB IT Operational Risk Management function
6) Work to continuously enhance and optimize the Vulnerability Lifecycle Management process, which includes input on Alerting and Discovery, Response Planning, Business Review, Remediation, Tracking and Monitoring as well as on general process support within Vulnerability Management.
As the ideal candidate you have the following skills / experience:
This role will face-off to various functions as well as management levels within as well as outside IB IT. The successful candidate will therefore need to develop strong client relationships with these functions as well as relationships with key stakeholders (e.g. Group IT Risk or Group Security Technology) outside Investment Bank IT. The ability to work with and report effectively to senior management is especially important.
- Solid technical skills for both functional areas of the role (IT Security Risk Vulnerability)
- The ability to translate pure technical risk details into business context
- Experience with handling vulnerability management information and metrics
- Excellent communication and organisational skills
- Able to network well and interact comfortably with all levels of management
- Experience in IT Risk and IT Security
UBS can offer you an environment geared towards performance, attractive career opportunities, and an open corporate culture that values and rewards the contribution of every individual.
UBS is an equal opportunity employer. We respect and seek to empower each individual and the diverse cultures, perspectives, skills and experiences within our workforce.