Job
- Level
- Experienced
- Job Field
- IT, Security
- Employment Type
- Part Time/Full Time
- Contract Type
- Permanent employment
- Location
- Frankfurt
- Working Model
- Hybrid, Onsite
Job Summary
In this role, you will systematically analyze security incidents, identify patterns, and implement measures to eliminate root causes, preventing recurring security issues sustainably.
Job Technologies
Your role in the team
- As a Security Problem Manager, you will be responsible for the systematic analysis and handling of security incidents with the aim of eliminating recurring disruptions in the long term.
- You will identify patterns, weaknesses, and systemic risks, initiate root cause analyses, and steer the implementation of sustainable measures in close cooperation with relevant units.
- In doing so, you will be guided by established ITIL methods as well as regulatory requirements of the banking environment (e.g. BAIT, MaRisk).
- The focus is on sustainable risk reduction through the structural processing of problems, not on the rapid restoration of operational capability (MTTR).
- The aim is to eliminate causes and prevent recurring incidents.
- The sustainable pursuit of audit-relevant topics is also part of the field of responsibility.
- You will work primarily with the Security Incident Management Team, the Cyber Hygiene Team, and the 2nd LoD functions (risk management).
- Development and control of a structured security problem management process.
- Systematic evaluation of security incidents (e.g., SOC data, SIEM, threat intelligence).
- Identification of recurring patterns and causes as well as performance of trend and clustering analyses.
- Leading root cause analyses (e.g., using 5-Why, Ishikawa, ...).
- Identification of technical, organizational and procedural causes as well as their risk assessment.
- Documentation of problem causes in a central register.
- Definition and implementation of sustainable measures for risk reduction (no pure workarounds).
- Control and follow-up of measures, including success monitoring (post-implementation review).
- Development of KPIs/KRIs to reduce recurring problems.
- Preparation of regular reports for CISO, IT steering committees and risk management.
- Preparation of decision templates and reporting on trend analyses and risk areas.
- Support in internal and external audits (audit, supervisory authorities).
This text has been machine translated. Show original
Our expectations of you
Education
- Bachelor's degree or higher in information security, computer science, computer engineering, or a related field.
Qualifications
- Sound knowledge of: Incident response and SOC processes, ITIL Problem Management and Root Cause Methods, risk management as well as regulatory requirements (e.g. BAIT, MaRisk, DORA).
- Vertrautheit mit typischen Angriffsvektoren (z. B. MITRE, ATT&CK).
- Strong analytical and systemic thinking skills.
- Ability to communicate technical and complex issues in a clear and structured manner.
- High level of ownership, assertiveness and sustainability orientation.
- Strong communication and moderation skills, especially in stakeholder management.
- Ideally, the following certifications: CISSP, GCIH, ITIL v4/v5, CISM.
Experience
- Several years of professional experience in the cyber security environment, ideally in a regulated industry such as banking or financial services.
- Experience working with SIEM/case management systems and analytically evaluating incident data.
This text has been machine translated. Show original
What we offer
- 30 days of vacation.
- Flexible work.
- Employee conditions.
- Professional training & development.
- Capital-forming benefits.
- Friendly work environment.
- Various tasks.
- Work-life balance.
This text has been machine translated. Show original
Benefits
Work-Life-Integration
More net
Health, Fitness & Fun
Topics that you deal with on the job
Job Locations
This is your employer
Commerzbank AG
Commerzbank is an internationally-operating commercial bank with locations in nearly 50 countries and 49,000 employees. It offers a comprehensive range of financial services to private, business, and corporate customers. Commerzbank is a reliable and trusted source for all your banking needs.
Description
- Company Size
- 250+ Employees
- Company Type
- Established Company
- Working Model
- Full Remote, Hybrid, Onsite
- Industry
- Banking, Finance, Insurance
Dev Reviews
by devworkplaces.com
Total
(1 Review)3.6
Workingconditions
4.4Engineering
3.2Career Growth
3.6Culture
3.5