ICS Sustainability Manager
Salary undisclosed
Checking job availability...
Original
Simplified
Job Summary
Responsibilities
- Familiar with enterprise level vulnerability management and remediation lifecycles.
- Perform risk assessments and providing a mitigating control narrative as a cyber security expert.
- Collaborate with technology team to understand the underlying infrastructure, mitigating controls and provide a strong narrative on the material impact of the open vulnerabilities.
Strategy
- Manage and support to deliver WRB strategy on Sustainability of ICS controls to maintain and improve ICS security risk posture by proactive risk identification and remediation together with governance of WRB ICS controls risk posture.
- Proven ability to lead on initiatives to embed a sustainable ICS Controls status in WRB. Includes gap findings, understanding solution and driving changes by collaborating with different functions, regional teams, businesses, and countries.
Business
- Focal point for Vulnerability Management gaps for the business and management team in WRB across group and country, working with respective regional leads as well.
- Collaborate with WRB various Business, Technology and Security Teams.
Processes
- Identify opportunities for automation and reducing manual errors and at the same time assist in the improvement of the vulnerability risk assessment framework.
People & Talent
- Excellent organisation and leadership skills with ability to manage multiple deadlines and effectively prioritise. Continuously upskill to remain current with the cyber threats and security
Risk Management
- Perform risk assessments and providing a mitigating control narrative as a cyber security expert.
Governance
- Ensure key ICS risk and issues are monitored and appropriately addressed by key stakeholders
Key Responsibilities
Regulatory & Business Conduct
- Display exemplary conduct and live by the Group's Values, Valued Behaviours, and Code of Conduct
- Take personal responsibility for embedding the highest standards of ethics, including regulatory and business conduct, across the Bank.
- Effectively and collaboratively identify, escalate, mitigate, and resolve risk, conduct and compliance matters.
Key stakeholders
- CISO, WRB & Markets
- Head of ICS Controls & Sustainability, WRB & Markets
- ICS Control owners
Skills and Experience
- Understanding of the Cyber landscape and ICS Controls within the banking environment
- Excellent organisation skills with ability to manage multiple deadlines and effectively prioritise
- Ability to foster positive relationships with internal and external stakeholders at appropriate level ensuring open cooperative environment. Be a Team player.
- Experienced in the production of executive reporting; good communication skills (written and oral).
- Excellent analytical and problem-solving skills, with the ability to prioritize and manage multiple tasks in a fast-paced environment
- Strong communication and interpersonal skills, with the ability to effectively communicate complex security concepts to non-technical stakeholders
Qualifications
EDUCATION • 3 - 5 years of experience in enterprise level vulnerability management, risk assessment, impact assessment and stakeholder management.
- Demonstrated ability to hold technical discussions with the technology team to comprehend the infrastructure, architecture design, networking, and then assess the vulnerability and its exploitability.
- Possess a strong ability to conduct in-depth research on vulnerabilities and identify effective mitigating controls.
- Comprehensive understanding of vulnerability lifecycle management, including threat, impact, and risk assessment.
- Strong knowledge of the characteristics of individual vulnerability and how it operates as a potential exploit.
- Thorough technological understanding of the most recent vulnerability trends and best practices.
- Clear understanding of how security technologies such as anti-malware, WAF, IPS, MFA, etc works in mitigating cyber security risks.
- Knowledge in encryption standards, data encryption, hashing algorithm, certificate life cycle management is an added advantage.
- Knowledge of industry standards for assessing security vulnerabilities, such as the CVSS scoring system, OWASP, CVE or SANS CWE software flaws, is required.
- Knowledge with the MITRE ATT&CK Framework and Cyber Kill Chain is an advantage.
- Solid understanding of Microsoft Excel formulas and macros.
- Presentation skills and the ability to provide detailed and clear narratives.
About Standard Chartered
We're an international bank, nimble enough to act, big enough for impact. For more than 170 years, we've worked to make a positive difference for our clients, communities, and each other. We question the status quo, love a challenge and enjoy finding new opportunities to grow and do better than before. If you're looking for a career with purpose and you want to work for a bank making a difference, we want to hear from you. You can count on us to celebrate your unique talents and we can't wait to see the talents you can bring us.
Our purpose, to drive commerce and prosperity through our unique diversity, together with our brand promise, to be here for good are achieved by how we each live our valued behaviours. When you work with us, you'll see how we value difference and advocate inclusion.
Together we:
- Do the right thing and are assertive, challenge one another, and live with integrity, while putting the client at the heart of what we do
- Never settle, continuously striving to improve and innovate, keeping things simple and learning from doing well, and not so well
- Are better together, we can be ourselves, be inclusive, see more good in others, and work collectively to build for the long term
What we offer
In line with our Fair Pay Charter, we offer a competitive salary and benefits to support your mental, physical, financial and social wellbeing.
- Core bank funding for retirement savings, medical and life insurance, with flexible and voluntary benefits available in some locations.
- Time-off including annual leave, parental/maternity (20 weeks), sabbatical (12 months maximum) and volunteering leave (3 days), along with minimum global standards for annual and public holiday, which is combined to 30 days minimum.
- Flexible working options based around home and office locations, with flexible working patterns.
- Proactive wellbeing support through Unmind, a market-leading digital wellbeing platform, development courses for resilience and other human skills, global Employee Assistance Programme, sick leave, mental health first-aiders and all sorts of self-help toolkits
- A continuous learning culture to support your growth, with opportunities to reskill and upskill and access to physical, virtual and digital learning.
- Being part of an inclusive and values driven organisation, one that embraces and celebrates our unique diversity, across our teams, business functions and geographies - everyone feels respected and can realise their full potential.
Similar Jobs