Deutsche Bank→
Information Security Analyst - Analyst at Deutsche Bank · Jacksonvi…
Entry LevelHybridFull-timeJacksonville, 5201 Gate Parkway$48k–$74k/yr
Skills
information security controlsrisk managementiso27001nistenisasoc2pcimitre att&ckfinancial regulations compliancecloud security alliance toolsshared assessment programsms office suitedata reportingethical judgment
Job Description
Summary: Deutsche Bank is looking for a knowledgeable Information Security Analyst to join their Chief Security Office's Third Party Security team. The role involves supporting the development and execution of the bank's information security strategy, conducting risk assessments, and improving security control frameworks.
Responsibilities:
- Conduct Information Security Third Party risk assessments, including onsite reviews
- Review Third Party policies and evidence against Deutsche Bank security requirements
- Analyze and document security gaps and their business impact
- Coordinate Third Party Information Security Review processes and escalate issues
- Support improvements to the security control framework and stakeholder communication
Required Qualifications:
- Strong knowledge of IT and Information Security controls and risk management
- Familiarity with ISO27001, NIST, ENISA, SOC2, PCI, and MITRE ATT&CK frameworks
- Understanding of financial regulations impacting InfoSec (e.g., DORA, GDPR, NYDFS)
- Experience with Cloud Security Alliance tools (CCM, CAIQ) and Shared Assessment Programs
- Proficiency in MS Office Suite and data reporting for metrics and analysis
Preferred Qualifications:
- Communication Skills: Ability to clearly convey findings and recommendations both verbally and in writing to various stakeholders
- Critical Thinking: Capacity to analyze complex situations, identify potential risks, and evaluate Third Party responses objectively
- Attention to Detail: Precision in reviewing documents, contracts, and compliance evidence to spot inconsistencies or gaps
- Ethical Judgment: Commitment to integrity and confidentiality when handling sensitive Third Party information
- Time Management: Proficiency in prioritizing tasks and managing multiple Third Party assessments simultaneously
Required Skills: Information Security Controls, Risk Management, ISO27001, NIST, ENISA, SOC2, PCI, MITRE ATT&CK, Financial Regulations Compliance, Cloud Security Alliance Tools, Shared Assessment Programs, MS Office Suite, Data Reporting, Ethical Judgment
Benefits: A diverse and inclusive environment that embraces change, innovation, and collaboration, A hybrid working model, allowing for in-office / work from home flexibility, generous vacation, personal and volunteer days, Employee Resource Groups support an inclusive workplace for everyone and promote community engagement, Competitive compensation packages including health and wellbeing benefits, retirement savings plans, parental leave, and family building benefits, Educational resources, matching gift and volunteer programs
Benefits
A diverse and inclusive environment that embraces change, innovation, and collaboration
A hybrid working model, allowing for in-office / work from home flexibility, generous vacation, personal and volunteer days
Employee Resource Groups support an inclusive workplace for everyone and promote community engagement
Competitive compensation packages including health and wellbeing benefits, retirement savings plans, parental leave, and family building benefits
Educational resources, matching gift and volunteer programs