Job offer
Deputy ICT Risk & Information Security Officer - Vice President
The position of Deputy ICT Risk & Information Security Officer at Nomura in Frankfurt am Main involves monitoring and analyzing information security risks and implementing strategies and guidelines to ensure information security. The successful candidate will serve as Vice President and work closely with the Management Board and other departments to strengthen information security and the risk management process within the company.
Job description
Deputy ICT Risk & Information Security Officer - Vice PresidentAbout the job
The position of Deputy ICT Risk & Information Security Officer is part of the Information Security department and supports the ICT Risk & Information Security Officer in monitoring and managing ICT and information security risks.Key responsibilities of the position
- ICT and information security risk management - Information security governance - Regulatory compliance and framework management - Information security and strategyTasks
The main tasks include:- Regulatory Compliance & Framework Management: Ensuring compliance with information security controls within regulatory frameworks
- Information security: Monitoring and controlling global information security strategies and standards
- Primary security contact: Main point of contact for information security matters with internal and external stakeholders
- Monitoring security performance: Tracking security metrics, risk indicators, and overall information security status
Risk assessment and consulting
The position also includes:- Conducting annual ICT risk and information security assessments
- Regulatory relations and audit support: Point of contact for regulatory authorities on information security matters
- Group and industry representation: Representation of NPIFE in Nomura group committees, forums, and industry working groups
- Security awareness: Development and implementation of organization-wide training programs on information security and regulatory compliance
IS incident management
The position also includes:- Establishment and maintenance of a comprehensive information security incident management framework
- Monitoring of security incident response processes
- Follow-up and improvement: Conducting comprehensive follow-up activities and implementing lessons learned to strengthen future response capabilities
Requirements
Required qualifications:- Solid experience in information security, preferably in financial services
- In-depth knowledge of EU and German regulatory frameworks, in particular DORA, MaRisk, and NIS2
We offer
Nomura offers a variety of opportunities to develop and expand your skills and knowledge. The corporate culture fosters an environment where innovation, creativity, and teamwork are valued.Job details