IT Risk Engineer

Posted 9 Days Ago
Be an Early Applicant
Manila, Metro Manila, National Capital Region
Mid level
Fintech • Payments • Financial Services
The Role
As an IT Risk Engineer, you will manage IT risk assessments, ensure compliance with control frameworks, and act as a liaison between various teams. You'll document processes, support automation initiatives, and participate in audits to maintain effective IT controls in an agile environment.
Summary Generated by Built In

IT Risk Engineer

ING Hubs Philippines (ING Hubs PH) is an international part of the ING organization delivering services to many Business Units across the world for both Wholesale Banking and Retail Banking activities. Working for ING Hubs PH means working with the most diverse workforce and where no challenge is the same.

At ING our purpose is to empower people to stay a step ahead in life and business. We believe that sustainable progress is driven by people with the imagination and determination to make a better future for themselves and those around them.

ING is changing what banking is. For you, that means plenty of opportunities for personal growth in a continuously evolving environment. If this is the environment you thrive in, then apply and join us in changing the future of banking!

Job Overview

As an IT Risk Engineer will be part of the Financial Markets domain. 

You will help on risk subjects like:

  • Act as a central SPOC for all incoming IT risk assessments and control evidencing requirements adhering the established control framework, SOx requirements and industry best practices.
  • Monitoring, tracking and managing deviations to established IT Risk controls.
  • Mediating between 1st LOD/2nd LOD and DevOps teams.
  • Conducting walkthroughs with auditors to review and validate IT Risk control processes.
  • Lead technical due diligence sessions with third party vendors.

You will work in an agile environment, following Scrum methodology together with DevOps squads, helping to maintain a safe and secure application.

Key Responsibilities

Your primary mission is to help the squads to implement IT Controls and to prove the controls are implemented effectively:

  • ensure we are in control of our risk appetite
  • define and document adequate risk processes and collect the evidences in regards; make sure that the different risk parties agree with the evidences
  • responsible for creating documents and project management requirements or specifications
  • provide documentation support to the technical team; interface with developers and operation engineers to define the specifications
  • liaison between the team and other IT Risk professionals
  • understand the need for security and apply it using the existing framework; constant communication about changes
  • participate in automation program for process and evidence for IT risk
  • show proactivity and flexibility, come up with plans of action and adapt approaches if necessary
  • understand the corporate climate and culture and act as an ambassador; IT custodianship/asset owner role.

Key Capabilities and Experience

Capabilities:

Mandatory:

Ability to understand the risk processes in an IT environment Experience with IT risk standards Ability to make clear and convincing statements related to risk procedures Proven planning and organizing experience

Nice to have:

Project management experience. Ability to track, plan and coordinate projects related to third party risk management, technical compliance, and/or IT risk automation. Experience in working with Dev(Sec)Ops teams across vulnerability management, threat hunting, security detection and response and developing, or contributing to information security policies and procedures.3. Knowledge of Agile methodology

Education: nice to have Bachelor’s Degree (or higher) in an IT related field.

Experience:

Degree and/or experience in IT risk management, cybersecurity, or related field.

Understanding of fundamental IT risk and security concepts and ability to think critically across technical control domains.

Knowledge of IT control frameworks (eg. SOX, GDPR, CSA CCM) and industry standards (eg. ISO2700x, NIST).

Proven track record of conducting IT control evidencing, qualitative risk assessments and developing mitigation strategies.

Risk reporting and communication:

ability to communicate risk-related concepts to technical stakeholders.

experience in liaising with second line risk functions.

strong written and verbal communications skills in English.

Certifications such as CISSP, CISM, CRISC or equivalent are a plus.

The Company
Amsterdam, North Holland
65,710 Employees
On-site Workplace

What We Do

ING is a pioneer in digital banking and on the forefront as one of the most innovative banks in the world. As ING, we have a clear purpose that represents our conviction of people’s potential. We don’t judge, coach, or tell people how to live their lives. However big or small, modest or grand, we empower people and businesses to realise their vision for a better future. We made the promise to make banking frictionless, removing barriers to progress, and make people confident in their financial decisions. As a global bank we have a huge opportunity – and responsibility – to make an impact for the better. We can play a role by financing change, sharing knowledge, and innovating. Being sustainable is in all the choices we make—as a lender, as a partner and through the services we offer our customers

Similar Jobs

Motorola Solutions Logo Motorola Solutions

Technical Support Specialist (Remote)

Artificial Intelligence • Hardware • Information Technology • Security • Software • Cybersecurity • Big Data Analytics
Hybrid
Taguig, Southern Manila District, National Capital Region, PHL
21000 Employees

TransUnion Logo TransUnion

Information Security Officer

Big Data • Fintech • Information Technology • Business Intelligence • Financial Services • Cybersecurity • Big Data Analytics
Hybrid
Makati City, Southern Manila District, National Capital Region, PHL
13000 Employees

Atlassian Logo Atlassian

Senior IT Auditor

Cloud • Information Technology • Productivity • Security • Software • App development • Automation
Manila, First District NCR, National Capital Region, PHL
11000 Employees

CreatorIQ Logo CreatorIQ

L1 Product Support Lead (9am - 6pm GMT -7)

eCommerce • Information Technology • Marketing Tech • Social Media • Software
Hybrid
Manila, First District NCR, National Capital Region, PHL
356 Employees

Similar Companies Hiring

Bectran, Inc Thumbnail
Software • Machine Learning • Information Technology • Fintech • Automation • Artificial Intelligence
Schaumburg, IL
51 Employees
Energy CX Thumbnail
Utilities • Professional Services • Greentech • Financial Services • Energy • Consulting • Business Intelligence
Chicago, IL
55 Employees
MassMutual India Thumbnail
Insurance • Information Technology • Fintech • Financial Services • Big Data
Hyderabad, Telangana

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account