Job
- Level
- Experienced
- Job Field
- IT, Security
- Employment Type
- Part Time/Full Time
- Contract Type
- Permanent employment
- Location
- Frankfurt
- Working Model
- Hybrid, Onsite
Job Summary
In this role, you systematically analyze and process security incidents, leading risk reduction measures while collaborating closely with various teams and adhering to regulatory requirements.
Job Technologies
Your role in the team
- As a Security Problem Manager, you are responsible for the systematic analysis and handling of security incidents with the aim of permanently eliminating recurring disruptions.
- You identify patterns, weaknesses, and systemic risks, initiate root cause analyses, and coordinate the implementation of sustainable measures in close collaboration with relevant units.
- You base your approach on established ITIL methods as well as regulatory requirements of the banking environment (e.g., BAIT, MaRisk).
- The focus is on sustainable risk reduction through structural problem-solving, rather than on rapid recovery of operational capability (MTTR).
- The goal is to eliminate causes and prevent recurring incidents.
- The sustainable tracking of audit-relevant topics also falls within the scope of responsibilities.
- You primarily work with the Security Incident Management Team, the Cyber Hygiene Team, and the 2nd Line of Defense functions (Risk Management).
- Development and management of a structured security issue management process.
- Systematic analysis of security incidents (e.g., SOC data, SIEM, Threat Intelligence).
- Identification of recurring patterns and causes, as well as conducting trend and clustering analyses.
- Leading root cause analyses (e.g., using 5-Why, Ishikawa, etc.).
- Identification of technical, organizational, and procedural causes as well as their risk assessment.
- Documentation of problem causes in a central register.
- Definition and implementation of sustainable measures for risk reduction (not just pure workarounds).
- Control and tracking of measures including success monitoring (Post-Implementation Review).
- Development of KPIs/KRIs to reduce recurring issues.
- Preparation of regular reports for the CISO, IT steering committees, and risk management.
- Preparation of decision templates and reporting on trend analyses and risk areas.
- Support during internal and external audits (revision, audit, regulatory authorities).
This text has been machine translated. Show original
Our expectations of you
Education
- Bachelor's degree or higher in Information Security, Computer Science, Computer Engineering, or a related field.
Qualifications
- Solid knowledge in: Incident Response and SOC processes, ITIL Problem Management and Root Cause Analysis methods, Risk Management, as well as regulatory requirements (e.g., BAIT, MaRisk, DORA).
- Familiarity with common attack vectors (e.g., MITRE ATT&CK).
- Strong analytical and systemic thinking skills.
- Ability to communicate technical and complex issues clearly and in a structured manner.
- A high level of ownership, assertiveness, and sustainability orientation.
- Strong communication and moderation skills, especially in stakeholder management.
- Ideally, the following certifications: CISSP, GCIH, ITIL v4/v5, CISM.
Experience
- Several years of professional experience in the Cyber Security environment, ideally in a regulated industry such as banking or financial services.
- Experience in working with SIEM / Case Management systems and analytical analysis of incident data.
This text has been machine translated. Show original
What we offer
- 30 days of vacation.
- Flexible working.
- Professional Training & Development.
- Asset-building benefits.
- Friendly working environment.
- Diverse tasks.
- Work-Life Balance.
This text has been machine translated. Show original
Benefits
Work-Life-Integration
More net
Health, Fitness & Fun
Topics that you deal with on the job
Job Locations
This is your employer
Commerzbank AG
Commerzbank is an internationally-operating commercial bank with locations in nearly 50 countries and 49,000 employees. It offers a comprehensive range of financial services to private, business, and corporate customers. Commerzbank is a reliable and trusted source for all your banking needs.
Description
- Company Size
- 250+ Employees
- Company Type
- Established Company
- Working Model
- Full Remote, Hybrid, Onsite
- Industry
- Banking, Finance, Insurance
Dev Reviews
by devworkplaces.com
Total
(1 Review)3.6
Workingconditions
4.4Engineering
3.2Career Growth
3.6Culture
3.5