Senior Market Infrastructure Cyber and Operational Risk Expert
Remote | Frankfurt
- Organization: ECB - European Central Bank
- Location: Remote | Frankfurt
- Grade: F/G (bracket 2 - step 1)
-
Occupational Groups:
- Operations and Administrations
- Infrastructure and Urban-Rural development
- Information Technology and Computer Science
- Sustainable trade and development
- Closing Date: 2025-04-24
General Information
Type of contract Fixed-term contract which may be converted into a permanent contract after three years subject to individual performance and organisational needs
Who can apply? EU nationals
Salary F/G (bracket 2 - step 1) full time monthly net salary: €6,370 plus benefits, for further information see what we offer.
Working time Full time
Place of work Frankfurt am Main, Germany
Closing date 24.04.2025
Your team
Your role
- maintain and implement the operational risk management framework for TARGET Services;
- maintain and implement a specialised cyber resilience and information security framework for TARGET Services;
- provide holistic risk assessments and evaluate the security of TARGET Services as part of the second line of defence;
- review the risk management activities and risk mitigation measures of the first line of defence;
- contribute to independent risk assessments evaluating the activities of the first line of defence;
- contribute to compliance activities carried out in the second line of defence (e.g. coordinating activities and following up on recommendations by the overseer and/or external examiners).
Qualifications, experience and skills
- a master's degree or equivalent in finance, economics, business administration, mathematics, engineering, physics, computer science or another relevant field (see How you can join us for details on degree equivalences);
- in addition to the above, a minimum of seven years’ experience in operational and cyber risk management, gained in operations, risk management or supervision of financial market infrastructures or financial institutions;
- the ability to deliver results within tight time frames, manage multiple assignments simultaneously and prioritise tasks appropriately;
- a proven ability to present technical information to internal and external audiences clearly and concisely, both verbally and in writing;
- an advanced (C1) command of English and an intermediate (B1) command of at least one other official language of the EU, according to the Common European Framework of Reference for Languages.
- a good understanding of one or more TARGET Services and the interdependencies between those services and financial market entities at a European and global level;
- a good knowledge of standards and guidelines relating to cyber resilience, information security, business continuity and risk management (e.g. the ISO 27000 and ISO 31000 families and/or the COSO framework);
- a good understanding of the Eurosystem’s cyber resilience oversight expectations for financial market infrastructures;
- a good understanding of compliance frameworks applicable to financial market infrastructures;
- certification in information security (CISSP, ISO 27001, etc.), project management (PRINCE2, PM2, etc.), risk management (e.g. Management of Risk Foundation/Practitioner), risk and information systems control (CRISC), information security management (CISM), auditing of information systems (CISA) or internal auditing (CIA).
Working modalities
Further information
Application and selection process
Applications from non-qualifying applicants will most likely be discarded by the recruiting manager.