We are looking for a Senior Cyber Security Specialist responsible for analyzing security findings, identifying remediation gaps, and driving key remediation initiatives. The role requires expert knowledge, autonomy, and strong cross-team collaboration skills to effectively reduce organizational risk. The ideal candidate has experience in governance, automation, and the use of AI.
Senior Cyber Security
Your responsibilities
- Lead the identification of remediation gaps and initiate and drive strategic remediation initiatives across the entire organization.
- Provide expert support to stakeholders on remediation strategies, ensuring alignment with security best practices and regulatory expectations.
- Analyze complex scanning results to define actionable steps that reduce the bank’s risk exposure.
- Collaborate cross-functionally with accountable and responsible remediation owners to ensure timely and effective execution.
- Ensure that security findings are clearly understood and that remediation efforts are progressing at an appropriate pace.
- Demonstrate autonomy and ownership in task execution, maintaining a proactive governance approach and influencing remediation outcomes.
Our requirements
- Deep understanding of security domains, especially security findings assessment and remediation areas, supported by at least 3+ years of hands-on experience.
- Governance knowledge proven by experience in at least one of the security findings fields:
- Container vulnerabilities
- Static Application Security Testing (SAST)
- External Attack Surface Management (EASM) findings
- Threat Modelling findings
- API-related findings
- Knowledge and experience in the fields of problem management, Secure DevOps, DORA, OWASP.
- Advanced troubleshooting and conceptual skills, with the ability to propose solutions to uncommon problems related to remediation actions.
- Knowledge of tools and methodologies for security findings assessment and enrichment.
- Ability to interpret and communicate results using exploratory data analysis and statistical modelling techniques.
- Good understanding of a risk-based approach and risk management.
- Experience in cross-organizational collaboration/negotiation.
- Prepare and deliver presentations to stakeholders, clearly communicating remediation progress, risks, and strategic recommendations.
- Fluent business and technical English is a must (both written and spoken).
- Demonstrated experience in automation, preferably using Python, Apache Airflow, and/or Power Automate.
- Practical application of AI technologies in governance processes and automation workflows.
- Ability to mentor team members and contribute to knowledge sharing across the security function.