Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
IT Risk Engineer image - Rise Careers
Job details

IT Risk Engineer

Job Role: IT Risk Engineer

Location –Amsterdam, Netherlands

Job Duration: 6-12 month contract

Working Mode: Hybrid

Job Description:

You’ll be responsible for:

• Don’t take things for granted!!!

• Challenge and motivate teams on Risk and security

• Quality checks on ITRMP IT Risk evidence delivered by the teams and perform the FLM check (stage 8)

• Review (incl. approve/decline) the Operational Security Baseline delivered by the teams

• Lead Risk sessions and meetings for the tribe and participate in Business Impact Analysis (BIA), Detailed Risk Assessment (DRA)

• Advise/inform product teams (squads) according to the Information Risk Minimum Standard

• Keep the Risk Journeys (documentation and instructions for engineers) up to date

• Support teams in using tooling used within ING (such as Amyna, SDT, ITRMP, etc.)

• Assist and advise teams and management in iRisk/CAS Issues registered from (audits, ), Risk Events, Risk Acceptances, Management Identified Actions

• Monitor and follow up on registered risk items

• Be the contact person for 2nd Line of Defense (ORM/IRM and BISO SPOC CB&A

• Organize in the bi-weekly Risk Evaluation Meeting (REM) for respective IT area

• Support the tribe in creating and maintaining Business Continuity Plan (BCP)

Our expectations:

• A proven track record and proficiency in IT Risk (5 + years), containing but not limited to:

o Change Management

o Identity and Access Management

o Operational Resilience

o Platform Security

o Cyber Security CISSP, CISM or CISA or other IT risk related certifications holder is desirable)

• Analytical, precisely, tenacious and autonomous

• Strong social and communication skills and being a sparring partner for our business colleagues.

• Conceptional understanding of some technologies: Linux, Windows, containers and Azure DevOps

• Fluent English speaking and writing

What You Should Know About IT Risk Engineer, Axiom Software Solutions Limited

Are you ready to take on the challenge of being an IT Risk Engineer at ING? Located in the vibrant city of Amsterdam, this 6-12 month hybrid contract offers you an exciting opportunity to dive headfirst into the world of risk management. In this role, you won't just be a cog in the machine; you'll be a motivational force within the team, ensuring that risk and security are never taken for granted. Your responsibilities will involve quality checks on IT Risk Management evidence, leading risk assessment sessions, and providing guidance to product teams following the Information Risk Minimum Standard. You'll also keep risk documentation updated and assist teams in navigating tools like Amyna, SDT, and ITRMP. With over 5 years of experience in IT risk, including areas like change management and cyber security, you'll be well-equipped to handle advising management on risk events and leading bi-weekly Risk Evaluation Meetings. Your analytical skills and strong communication abilities will be essential as you become the go-to contact for our 2nd Line of Defense. If you have a passion for operational resilience and a knack for technology, including Linux and Azure DevOps, this could be the perfect fit for you. Join us at ING and play a crucial role in maintaining our business continuity and managing risks effectively. We can’t wait to meet you!

Frequently Asked Questions (FAQs) for IT Risk Engineer Role at Axiom Software Solutions Limited
What are the main responsibilities of the IT Risk Engineer at ING?

As an IT Risk Engineer at ING, your main responsibilities include leading risk sessions, conducting Business Impact Analysis, and reviewing operational security baselines. You'll also ensure quality checks on IT Risk Management evidence and maintain documentation for risk processes, making sure that teams have the latest guidelines and tools at their disposal.

Join Rise to see the full answer
What qualifications do I need to become an IT Risk Engineer at ING?

To qualify for the IT Risk Engineer position at ING, you should have over 5 years of demonstrated experience in IT risk management, focusing on areas like change management and cyber security. Relevant IT risk certifications such as CISSP, CISM, or CISA are highly desirable.

Join Rise to see the full answer
What tools will the IT Risk Engineer utilize at ING?

As an IT Risk Engineer at ING, you'll work with various tools such as Amyna, SDT, and ITRMP. Proficiency in these tools, as well as a good understanding of risk management processes, will enhance your effectiveness in the role.

Join Rise to see the full answer
What are the expectations for communication skills for the IT Risk Engineer at ING?

Strong social and communication skills are crucial for an IT Risk Engineer at ING. You will be required to collaborate with various teams and act as a sparring partner, providing advice and insights, so being fluent in English and able to communicate complex ideas clearly is essential.

Join Rise to see the full answer
How does the IT Risk Engineer at ING contribute to Business Continuity Planning?

The IT Risk Engineer at ING plays a significant role in creating and maintaining the Business Continuity Plan (BCP). By assessing risks and developing strategies, you will help ensure that the organization can effectively respond to and recover from potential disruptions.

Join Rise to see the full answer
Common Interview Questions for IT Risk Engineer
Can you explain your experience with IT risk management?

When answering this question, provide specific examples of your past experiences in handling IT risks, detailing the processes you followed and the outcomes you achieved. Highlight areas such as change management or operational resilience to showcase your breadth of knowledge.

Join Rise to see the full answer
How do you conduct a risk assessment?

In your response, describe the steps you take when conducting a risk assessment, from identifying assets and threats to analyzing vulnerabilities and determining the potential impact. You should also mention how you prioritize risks and communicate findings with relevant stakeholders.

Join Rise to see the full answer
What techniques do you use to manage risk in IT environments?

Discuss various techniques such as implementing access controls, regular security audits, and user training programs. Explain how you tailor these techniques based on the specific risks faced by your organization.

Join Rise to see the full answer
Describe a time when you had to convince a team to comply with security policies.

Provide a specific scenario where you successfully influenced a team to follow security protocols, emphasizing your communication and negotiation skills. Highlight the methods you used, such as presenting data or real-world examples.

Join Rise to see the full answer
How do you stay updated with the latest cybersecurity threats?

Share your approaches to staying informed, such as following cybersecurity news, participating in workshops, or engaging in professional networks. Emphasize your commitment to continuous learning in this ever-evolving field.

Join Rise to see the full answer
What role do you believe communication plays in risk management?

Discuss the importance of clear communication in risk management, particularly in disseminating information about risks to non-technical stakeholders. Illustrate this with examples of how effective communication has led to better risk management practices.

Join Rise to see the full answer
Can you explain any tools you have used for risk assessment?

Mention tools like Amyna or ITRMP that you have experience with for risk assessments. Describe how these tools improve efficiency and accuracy in your risk management processes.

Join Rise to see the full answer
How would you handle resistance from a team regarding risk management?

Outline a strategy for addressing resistance, such as empathetic listening followed by education on the importance of risk management. Emphasize the value of collaborative efforts and involving team members in risk management discussions.

Join Rise to see the full answer
What steps do you take when you identify a new risk?

Explain the systematic approach you use when identifying new risks, including evaluating their impact, updating risk documentation, and communicating with relevant teams to enhance awareness and response efforts.

Join Rise to see the full answer
How do you ensure that risk management processes are adhered to over time?

Describe your methods for ensuring long-term adherence to risk management processes, such as regular reviews, audits, and promoting a culture of risk awareness within the team or organization.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 19 hours ago
Photo of the Rise User
Posted 15 hours ago
Photo of the Rise User
Posted yesterday
Photo of the Rise User
Zivaro Hybrid No location specified
Posted 7 days ago
Photo of the Rise User
nextRoles Remote No location specified
Posted 4 days ago
Photo of the Rise User
Posted 2 hours ago
Dental Insurance
Disability Insurance
Flexible Spending Account (FSA)
Health Savings Account (HSA)
Vision Insurance
Paid Holidays
Photo of the Rise User
Posted 14 days ago
Dental Insurance
Disability Insurance
Flexible Spending Account (FSA)
Health Savings Account (HSA)
Vision Insurance
Performance Bonus
Family Medical Leave
Paid Holidays
Photo of the Rise User
Posted 8 days ago

Our IT solutions empower organizations and individuals throughout the world to maximize value and quality to succeed in today's challenging business environment. As a fast-growing new economy company, we focus our strengths to offer world-class so...

57 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Contract, hybrid
DATE POSTED
January 6, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!