Czy macie jakieś informacje na temat pracy w tej firmie? Jak wygląda atmosfera? Czy wynagrodzenie jest dobre? Czy są jakieś benefity? Jakie są warunki pracy? Z góry dzięki!
administrating and maintaining of Microsoft Windows Server infrastructure
monitoring the operation of servers
planning and implementation of maintenance tasks and projects in the area of MS Windows, as well as in the field of Active Directory, GPO, WSUS, DNS, VMWare, ADFS
managing desired configurations and compliance on server infrastructure
monitoring the performance of the IT infrastructure systems
improving existing and developing new solutions in the field of System Administration
participating in production implementations of subordinate systems
administrating and maintaining of Microsoft Windows Server infrastructure
monitoring the operation of servers
planning and implementation of maintenance tasks and projects in the area of MS Windows, as well as in the field of Active Directory, GPO, WSUS, DNS, VMWare, ADFS
managing desired configurations and compliance on server infrastructure
monitoring the performance of the IT infrastructure systems
improving existing and developing new solutions in the field of System Administration
participating in production implementations of subordinate systems
working in an integrated business and technology team to build and support business analytics and process automation applications based on our low-code platforms in an agile project setup
consulting and implementing customized digital solutions including delivery of proof-of-concepts, pilot solutions and applications through hands-on guidance, development and expertise
maintaining and extending our low-code platforms to ensure a state-of-the-art, legacy-free environment for accelerated business digitalization
exploring emerging capabilities delivered by new technologies like machine learning and generative AI
collaborating with business departments as well as within the Business Technology organization, exchanging technical concepts, developing best practices and business innovation use cases
working in an integrated business and technology team to build and support business analytics and process automation applications based on our low-code platforms in an agile project setup
consulting and implementing customized digital solutions including delivery of proof-of-concepts, pilot solutions and applications through hands-on guidance, development and expertise
maintaining and extending our low-code platforms to ensure a state-of-the-art, legacy-free environment for accelerated business digitalization
exploring emerging capabilities delivered by new technologies like machine learning and generative AI
collaborating with business departments as well as within the Business Technology organization, exchanging technical concepts, developing best practices and business innovation use cases
understanding the pain-points of the current architecture and helping to define and implement an efficient architecture which resolves the identified pain-points
anticipating, monitoring and solving technical issues and blockers
acting as technical team lead for the developers and providing guidance where needed
overall technical leading on the project
ensuring that the solution follows architectural patterns: service oriented architecture, designing reusable solutions and explaining benefits to both technical and business audiences
ensuring that the solution is fit for MRE and compliance/regulatory standards
understanding the pain-points of the current architecture and helping to define and implement an efficient architecture which resolves the identified pain-points
anticipating, monitoring and solving technical issues and blockers
acting as technical team lead for the developers and providing guidance where needed
overall technical leading on the project
ensuring that the solution follows architectural patterns: service oriented architecture, designing reusable solutions and explaining benefits to both technical and business audiences
ensuring that the solution is fit for MRE and compliance/regulatory standards
Information Security Risk Management Coordinator (ISRMC)
Leona Droszyńskiego 24, Gdańsk
Wygasła: 03.05.2024
full-time
umowa o pracę
hybrid work
specialist (Mid / Regular)
Obowiązki:
coordinating, controlling and processing tasks, such as initiating, tracking and escalating activities or preparing management-oriented reports
carrying out additional checks in the departments to monitor specifications or compliance with them (analogue to the Individual Data Processing (IDP) unit)
completing checks/workshops in the business units (incl. coordination, preparation, follow-up and documentation)
reviewing implementation and documentation of security measures (incl. coordination, preparation, follow-up and documentation)
interfering and contacting the Individual Data Processing unit in the event of questions arising in the daily work routine
training, a multiplier for the IDP unit in terms of training preparation and follow-up as well as training of the IDP unit on IDP and any new regulatory requirements
Information Security Risk Management Coordinator (ISRMC)
plac Trzech Krzyży 10, Śródmieście, Warszawa
Wygasła: 03.05.2024
full-time
umowa o pracę
hybrid work
specialist (Mid / Regular)
Obowiązki:
coordinating, controlling and processing tasks, such as initiating, tracking and escalating activities or preparing management-oriented reports
carrying out additional checks in the departments to monitor specifications or compliance with them (analogue to the Individual Data Processing (IDP) unit)
completing checks/workshops in the business units (incl. coordination, preparation, follow-up and documentation)
reviewing implementation and documentation of security measures (incl. coordination, preparation, follow-up and documentation)
interfering and contacting the Individual Data Processing unit in the event of questions arising in the daily work routine
training, a multiplier for the IDP unit in terms of training preparation and follow-up as well as training of the IDP unit on IDP and any new regulatory requirements
technical overseeing and executing the validation of models used to calculate risk and technical provisions, including formulation of validation results and defining appropriate actions/recommendations as well as preparing validation reports
working on a new setup of calculation tools and professional database solutions for the results of risk capital calculations
further development and maintenance of individual data processing tools
developing and maintaining various technical solutions and approaches for the coordination of model changes and tracking of results (validation, internal and external auditor, etc.) in the ERGO Group
supporting our closing processes by carrying out Internal Model and Standard Formula calculations for our Life and Health insurance companies
analysing the movements of Risk Capital and Own Funds and provide explanations for the risk report
preparing Perform Data Quality Checks and roll forward of ORSA, RSR and SFCR
technical overseeing and executing the validation of models used to calculate risk and technical provisions, including formulation of validation results and defining appropriate actions/recommendations as well as preparing validation reports
working on a new setup of calculation tools and professional database solutions for the results of risk capital calculations
further development and maintenance of individual data processing tools
developing and maintaining various technical solutions and approaches for the coordination of model changes and tracking of results (validation, internal and external auditor, etc.) in the ERGO Group
supporting our closing processes by carrying out Internal Model and Standard Formula calculations for our Life and Health insurance companies
analysing the movements of Risk Capital and Own Funds and provide explanations for the risk report
preparing Perform Data Quality Checks and roll forward of ORSA, RSR and SFCR
PMO Department is a part of the Global Delivery Portfolio Management Office Division. In the Senior PMO Officer position, you will be responsible for facilitating best practices to ensure overall project governance standards are met. By measuring team performance and coordinating continuous compliance, we want to enable successful delivery in time, budget, and scope. As a Senior PMO Officer, you will have bigger responsibility, more complex assignments, and more involvement in strategic PMO scope in comparison to PMO Officer
supporting strategic / complex Project /Program Managers in tracking statuses of program deliverables and milestones, controlling and reporting on the progress
ensuring deliverables and documentation related to organizational framework are in place
outputting project status and other regular or on-demand report
implementing, coordinating and improving project Governance arrangements and communication
supporting Project / Program Manager in budget preparation
working as a part of a bigger PMO team, potentially leading one
performing project resource management related tasks and resolving related issues
ensuring aligned processes are implemented and project management is conducted in line with the organization standards
evaluating project management maturity and recommending improvements if necessary
supplying the know-how on specific PMO standards, tools, techniques, processes, procedures, methodologies, process models, and compliance to new Project Managers
cooperating with numerous other departments, international colleagues on a common goal of excellent IT project delivery
shaping the future of PMO team as well as general practices by participating in internal initiatives
acting as a coach for Junior and mid-PMO roles in dedicated projects and teams
working with projects – designing, explaining, documenting, and supervising – architecture solutions and security countermeasures
designing distributed system applications (front- and backend) in the cloud using native cloud/serverless approaches (but also some on-prem projects)
covering end-to-end systems located on-premise and in the cloud
documenting architecture decisions, goals, debts, risks, and tech quality in confluence requirements and keeping solution architecture documentation up to date
modeling in UML and ArchiMate solution diagrams
researching, evaluating, and driving modern technologies/solutions to solve customer needs
actively contributing to various bottom-up initiatives driven by the architecture team
creating and advising in the areas of architecture patterns and other reference architecture components
discussing solutions with other architects, product owners, and developers
explaining solutions to developers and other project stakeholders
designing Customer Identity Access Management solutions to solve business problems in alignment with the enterprise architecture direction and standards
assisting with the technical approach for the shared operational capabilities of customer identity and access management, including customer registration, self-service, authentication, authorization, administration, audit, and reporting
working closely with development teams to build API integrations authenticated by the identity management platform
supporting analyses and discussions on the adequateness of safety measures
initiating additional measures for Network Security, Cryptography, Identity and Access Management, Logging, Monitoring (SIEM), Physical Security or other aspects of Information Security
auditing IT Applications, IT infrastructure architecture & components and operational security
inspecting onsite Data centres in scope
reviewing access controls/SoD, monitoring, operational control, key IT Projects and outsourced services or mobile device security, samples of prioritization and categorization of incidents
checking analysis and documentation of security incidents and aggregate reports
considering forensic (e.g. chain of custody)
addressing stakeholders or senior management for confirmation
managing internal projects and consultation if required, developing improvement
supporting analyses and discussions on the adequateness of safety measures
initiating additional measures for Network Security, Cryptography, Identity and Access Management, Logging, Monitoring (SIEM), Physical Security or other aspects of Information Security
auditing IT Applications, IT infrastructure architecture & components and operational security
inspecting onsite Data centres in scope
reviewing access controls/SoD, monitoring, operational control, key IT Projects and outsourced services or mobile device security, samples of prioritization and categorization of incidents
checking analysis and documentation of security incidents and aggregate reports
considering forensic (e.g. chain of custody)
addressing stakeholders or senior management for confirmation
managing internal projects and consultation if required, developing improvement
setting up and implementing standard project cost control processes and procedures on individual projects across the Global Delivery portfolio of projects
providing financial support in budgeting, project cost control and performance management processes for the Global Delivery function, by working closely with planners/budget owners/project controllers
preparing consolidated financial summaries (data, analytics, roadmaps and presentations) for functional management discussions and decisions
ensuring compliance to enterprise Project Governance and Execution frameworks and methodologies in supporting stable ET&SM financial control environment (including SAFe or Agile methodologies)
working with program leaders to ensure the program adheres to Project Executions, Project Governance, Change Management and Risk Frameworks, Project Accounting guidelines and methodologies as outlined by the Global Delivery Program Management Office (GD PMO)
providing guidance and training to functional staff on financial matters including financial support on individual projects across the entire Global Delivery portfolio of projects
reconciliating and adjusting Investment Portfolio, Project Portfolio and Actuals reconciliation from the finance point of view working across all local and global finance and project teams
working with the finance department on the annual review of rate cards and proposal for changes to rate cards based on the investment portfolio forecast and finance cost/revenue forecast
working closely with local finance, PMO and global finance service management team to jointly execute the entire budgeting cycle from instructions to final consolidation and reporting of actual project costs, e.g. burn rate analysis, etc
setting up and implementing standard processes and procedures on what cost controllers on individual projects should be doing like managing project budgets, doing forecasts, variance analysis, financial reporting, CR management, etc
coaching and guiding the various PMO finance people on individual projects across the entire Global Delivery portfolio of projects
setting up and implementing standard project cost control processes and procedures on individual projects across the Global Delivery portfolio of projects
providing financial support in budgeting, project cost control and performance management processes for the Global Delivery function, by working closely with planners/budget owners/project controllers
preparing consolidated financial summaries (data, analytics, roadmaps and presentations) for functional management discussions and decisions
ensuring compliance to enterprise Project Governance and Execution frameworks and methodologies in supporting stable ET&SM financial control environment (including SAFe or Agile methodologies)
working with program leaders to ensure the program adheres to Project Executions, Project Governance, Change Management and Risk Frameworks, Project Accounting guidelines and methodologies as outlined by the Global Delivery Program Management Office (GD PMO)
providing guidance and training to functional staff on financial matters including financial support on individual projects across the entire Global Delivery portfolio of projects
reconciliating and adjusting Investment Portfolio, Project Portfolio and Actuals reconciliation from the finance point of view working across all local and global finance and project teams
working with the finance department on the annual review of rate cards and proposal for changes to rate cards based on the investment portfolio forecast and finance cost/revenue forecast
working closely with local finance, PMO and global finance service management team to jointly execute the entire budgeting cycle from instructions to final consolidation and reporting of actual project costs, e.g. burn rate analysis, etc
setting up and implementing standard processes and procedures on what cost controllers on individual projects should be doing like managing project budgets, doing forecasts, variance analysis, financial reporting, CR management, etc
coaching and guiding the various PMO finance people on individual projects across the entire Global Delivery portfolio of projects
PMO Department is a part of the Global Delivery Portfolio Management Office Division. In the Senior PMO Officer position, you will be responsible for facilitating best practices to ensure overall project governance standards are met. By measuring team performance and coordinating continuous compliance, we want to enable successful delivery in time, budget, and scope. As a Senior PMO Officer, you will have bigger responsibility, more complex assignments, and more involvement in strategic PMO scope in comparison to PMO Officer
supporting strategic / complex Project /Program Managers in tracking statuses of program deliverables and milestones, controlling and reporting on the progress
ensuring deliverables and documentation related to organizational framework are in place
outputting project status and other regular or on-demand report
implementing, coordinating and improving project Governance arrangements and communication
supporting Project / Program Manager in budget preparation
working as a part of a bigger PMO team, potentially leading one
performing project resource management related tasks and resolving related issues
ensuring aligned processes are implemented and project management is conducted in line with the organization standards
evaluating project management maturity and recommending improvements if necessary
supplying the know-how on specific PMO standards, tools, techniques, processes, procedures, methodologies, process models, and compliance to new Project Managers
cooperating with numerous other departments, international colleagues on a common goal of excellent IT project delivery
shaping the future of PMO team as well as general practices by participating in internal initiatives
acting as a coach for Junior and mid-PMO roles in dedicated projects and teams
monitoring and optimizing application performance, including analysis and tuning for improvements
migrating applications into existing data center/cloud landscape with knowledge of technologies like Windows/Linux server, virtualization, storage/backup, databases, and middleware
DevSecOps project consulting with developers including cost analysis/planning, code reviews, and improvements on security, performance, and automation
automating and scripting regular maintenance tasks or improving database calls to achieve Zero-OPS environments ideally
ensuring platform compliance with security and legal regulations, e.g. auditability
monitoring and optimizing application performance, including analysis and tuning for improvements
migrating applications into existing data center/cloud landscape with knowledge of technologies like Windows/Linux server, virtualization, storage/backup, databases, and middleware
DevSecOps project consulting with developers including cost analysis/planning, code reviews, and improvements on security, performance, and automation
automating and scripting regular maintenance tasks or improving database calls to achieve Zero-OPS environments ideally
ensuring platform compliance with security and legal regulations, e.g. auditability
facilitating and coordinating vulnerability assessment and scanning
analyzing assessment results and threat feeds to properly react to security weaknesses or vulnerabilities
collaborating, coordinating, monitoring, and supporting activities in the areas of the VM program
maintaining control of scanning VM hardware, systems, and application software, performing upgrades and other maintenance activities for scanning infrastructure and related tools
deploying new scanning infrastructure/tools and supporting solutions
automating processes through scripting and providing API support/integration
maintaining technical documentation of the VM program including requirements, architecture designs, network topology, applications, and application security designs
collaborating on and providing VM results and metrics for consistent reporting for governance purposes - VM metrics, key risk indicators, trending, and compliance
providing input, helping prepare and update VM roadmap, developing, maintaining, and publishing project plans and operational schedules
helping to develop a long-term VM strategy that will address global information security needs (current state, gaps, and opportunities)
facilitating and coordinating vulnerability assessment and scanning
analyzing assessment results and threat feeds to properly react to security weaknesses or vulnerabilities
collaborating, coordinating, monitoring, and supporting activities in the areas of the VM program
maintaining control of scanning VM hardware, systems, and application software, performing upgrades and other maintenance activities for scanning infrastructure and related tools
deploying new scanning infrastructure/tools and supporting solutions
automating processes through scripting and providing API support/integration
maintaining technical documentation of the VM program including requirements, architecture designs, network topology, applications, and application security designs
collaborating on and providing VM results and metrics for consistent reporting for governance purposes - VM metrics, key risk indicators, trending, and compliance
providing input, helping prepare and update VM roadmap, developing, maintaining, and publishing project plans and operational schedules
helping to develop a long-term VM strategy that will address global information security needs (current state, gaps, and opportunities)
creating IT product definitions (final ones as well as MVPs) in a way that the products can be flexible with adjusting to changing business needs and possibly reused in the future
managing digital product backlog(s) (defining epics and/or stories in a “clean” and understandable by the customer and team way, including DoD and DoR), according to business values and technical debts
maintaining the product(s) roadmap through collaboration with German stakeholders
cooperating with Project Managers and Architects to deliver complex solutions built out of multiple products
working as digital product owner for IT solutions, prioritizing changes for the development team, supporting the internal release management process
identifying the future potential of your products and getting your teams, customers, and business network excited about it
preparing required product documentation, correspondence, and presentations, as needed
creating IT product definitions (final ones as well as MVPs) in a way that the products can be flexible with adjusting to changing business needs and possibly reused in the future
managing digital product backlog(s) (defining epics and/or stories in a “clean” and understandable by the customer and team way, including DoD and DoR), according to business values and technical debts
maintaining the product(s) roadmap through collaboration with German stakeholders
cooperating with Project Managers and Architects to deliver complex solutions built out of multiple products
working as digital product owner for IT solutions, prioritizing changes for the development team, supporting the internal release management process
identifying the future potential of your products and getting your teams, customers, and business network excited about it
preparing required product documentation, correspondence, and presentations, as needed
advising and supporting organizational units in managing compliance risk, including in particular IT compliance and related requirements from external companies in the insurance industry
identifying and assessing IT compliance risks, in particular in terms of compliance with applicable external and internal requirements, including requirements defined by insurance outsourcers
developing IT compliance programs based on Group standards
participating in the development and maintenance of a monitoring and control plan, including monitoring the implementation of activities, with particular emphasis on IT compliance
advising and collaborating with operational, project and management functions on all relevant IT compliance issues and queries
co-creating management reports and reports for the Group's insurance companies to meet the outsourcing requirements
advising and supporting organizational units in managing compliance risk, including in particular IT compliance and related requirements from external companies in the insurance industry
identifying and assessing IT compliance risks, in particular in terms of compliance with applicable external and internal requirements, including requirements defined by insurance outsourcers
developing IT compliance programs based on Group standards
participating in the development and maintenance of a monitoring and control plan, including monitoring the implementation of activities, with particular emphasis on IT compliance
advising and collaborating with operational, project and management functions on all relevant IT compliance issues and queries
co-creating management reports and reports for the Group's insurance companies to meet the outsourcing requirements
ensuring appropriate risk management in line with relevant (transnational) legal requirements and ERGO Group guidelines
managing the company's risk management function
developing a risk strategy for the company
taking responsibility for overall risk management processes, including identifying and assessing risks, monitoring them, and reporting on them; reporting ad-hoc risks; maintaining the internal control system; monitoring the risk of the project portfolio managed by ETS S.A.; managing business continuity; ensuring information and IT security and overseeing IT Third-Party Risk Management
supervising and monitoring outsourcing activities
communicating and informing relevant authorities about risks
cultivating an appropriate risk culture within the company and facilitating internal communication
advising the ETS S.A. Board and ETSM CRO on all risk matters
establishing and maintaining transparent relationships with auditors and regulators in countries where ETS S.A. outsources IT services
planning tasks for responsible processes or projects, including resource prioritization
appointing and developing (2nd Line) Risk Specialists (both non-ICT and ICT) and succession planning within the company
serving as a Member of the Risk Committee of the company
ensuring appropriate risk management in line with relevant (transnational) legal requirements and ERGO Group guidelines
managing the company's risk management function
developing a risk strategy for the company
taking responsibility for overall risk management processes, including identifying and assessing risks, monitoring them, and reporting on them; reporting ad-hoc risks; maintaining the internal control system; monitoring the risk of the project portfolio managed by ETS S.A.; managing business continuity; ensuring information and IT security and overseeing IT Third-Party Risk Management
supervising and monitoring outsourcing activities
communicating and informing relevant authorities about risks
cultivating an appropriate risk culture within the company and facilitating internal communication
advising the ETS S.A. Board and ETSM CRO on all risk matters
establishing and maintaining transparent relationships with auditors and regulators in countries where ETS S.A. outsources IT services
planning tasks for responsible processes or projects, including resource prioritization
appointing and developing (2nd Line) Risk Specialists (both non-ICT and ICT) and succession planning within the company
serving as a Member of the Risk Committee of the company
system administration (operating system, database software, and databases), independent planning and execution of maintenance work
supporting projects in the creation and implementation of technical concepts and as a contact person for application development and business in the event of technical problems
continuously developing the existing runtime environment and staying informed about new technologies
implementing data model changes on behalf of application development
automating routine tasks through self-developed scripts
supporting internal and external audits
developing security concepts
backing up and restoring concepts for Oracle Databases
system administration (operating system, database software, and databases), independent planning and execution of maintenance work
supporting projects in the creation and implementation of technical concepts and as a contact person for application development and business in the event of technical problems
continuously developing the existing runtime environment and staying informed about new technologies
implementing data model changes on behalf of application development
automating routine tasks through self-developed scripts
supporting internal and external audits
developing security concepts
backing up and restoring concepts for Oracle Databases
working with internal projects – designing, explaining, and documenting – the architecture solution and security countermeasures
designing distributed systems applications (front and backend) in AWS cloud (mostly) using native cloud/serverless approaches
covering end-to-end systems laying across on-premise and cloud
documenting in confluence architecture decisions, goals, debts, risks, tech quality requirements and keeping solution architecture documentation up to date
modeling in UML and ArchiMate diagrams of solution
researching, evaluating, and driving modern technologies/solutions to solve customer needs
actively contributing to various bottom-up initiatives driven by the architecture team
advising regarding architecture patterns and other reference architecture components
discussing solutions with other architects, product owners, developers
explaining solutions to developers and other project stakeholders
working in ERGO frameworks for projects and architecture
coordinating and monitoring of technical provisions valuation and validation under Solvency II and IFRS17 for German insurance companies in the ERGO Group
ensuring the appropriateness of models and methods used, as well as the assumptions made for the calculation of technical provisions, including the assessment on accuracy, completeness and quality of the data used
contributing to the preparation of the annual Local Actuarial Function report which involves supporting the Local Actuarial Function on the reliability and appropriateness of the calculation of the technical provisions, on the underwriting policy and on the adequacy of reinsurance arrangements, as core part of the reports
handling special tasks and ad hoc requests, also in project and working groups, as well as coordinating the model change process regarding to the technical provisions
coordinating and monitoring of technical provisions valuation and validation under Solvency II and IFRS17 for German insurance companies in the ERGO Group
ensuring the appropriateness of models and methods used, as well as the assumptions made for the calculation of technical provisions, including the assessment on accuracy, completeness and quality of the data used
contributing to the preparation of the annual Local Actuarial Function report which involves supporting the Local Actuarial Function on the reliability and appropriateness of the calculation of the technical provisions, on the underwriting policy and on the adequacy of reinsurance arrangements, as core part of the reports
handling special tasks and ad hoc requests, also in project and working groups, as well as coordinating the model change process regarding to the technical provisions
facilitating and coordinating vulnerability assessment and scanning
analyzing assessment results and threat feeds to properly react to security weaknesses or vulnerabilities
collaborating, coordinating, monitoring, and supporting activities in the areas of the VM program
maintaining control of scanning VM hardware, systems, and application software, performing upgrades and other maintenance activities for scanning infrastructure and related tools
deploying new scanning infrastructure/tools and supporting solutions
automating processes through scripting and providing API support/integration
maintaining technical documentation of the VM program including requirements, architecture designs, network topology, applications, and application security designs
collaborating on and providing VM results and metrics for consistent reporting for governance purposes - VM metrics, key risk indicators, trending, and compliance
providing input, helping prepare and update VM roadmap, developing, maintaining, and publishing project plans and operational schedules
helping to develop a long-term VM strategy that will address global information security needs (current state, gaps, and opportunities)
facilitating and coordinating vulnerability assessment and scanning
analyzing assessment results and threat feeds to properly react to security weaknesses or vulnerabilities
collaborating, coordinating, monitoring, and supporting activities in the areas of the VM program
maintaining control of scanning VM hardware, systems, and application software, performing upgrades and other maintenance activities for scanning infrastructure and related tools
deploying new scanning infrastructure/tools and supporting solutions
automating processes through scripting and providing API support/integration
maintaining technical documentation of the VM program including requirements, architecture designs, network topology, applications, and application security designs
collaborating on and providing VM results and metrics for consistent reporting for governance purposes - VM metrics, key risk indicators, trending, and compliance
providing input, helping prepare and update VM roadmap, developing, maintaining, and publishing project plans and operational schedules
helping to develop a long-term VM strategy that will address global information security needs (current state, gaps, and opportunities)
processing security incidents that have already been pre-qualified in level 1 SOC analysis based on playbooks that are created and maintained in SIEM engineering
documenting the incident
transferring the incident to the appropriate party (e.g. CSIRT) and supporting them in the further analysis and processing of that security incident if the incident cannot be resolved in Level 2
documenting improvement potential per incident and implementation of lessons learned
creating and maintaining standards for internal procedures governing the day-to-day work of the team
contributing to regular feedback workshops with SIEM Engineering, Level-1, and CSIRT to optimize the procedures and the tools used, such as run books
defining configuration standards for hardening of systems
supporting SIEM Use Case Development - collaboration in the creation, maintenance, and optimization of the rules and regulations and the instructions for the processing of incidents
carrying out operational activities ordered by the IT Security Manager
processing security incidents that have already been pre-qualified in level 1 SOC analysis based on playbooks that are created and maintained in SIEM engineering
documenting the incident
transferring the incident to the appropriate party (e.g. CSIRT) and supporting them in the further analysis and processing of that security incident if the incident cannot be resolved in Level 2
documenting improvement potential per incident and implementation of lessons learned
creating and maintaining standards for internal procedures governing the day-to-day work of the team
contributing to regular feedback workshops with SIEM Engineering, Level-1, and CSIRT to optimize the procedures and the tools used, such as run books
defining configuration standards for hardening of systems
supporting SIEM Use Case Development - collaboration in the creation, maintenance, and optimization of the rules and regulations and the instructions for the processing of incidents
carrying out operational activities ordered by the IT Security Manager
Information Security Risk Management Coordinator (ISRMC)
Leona Droszyńskiego 24, Gdańsk
Wygasła: 20.04.2024
full-time
umowa o pracę
hybrid work
specialist (Mid / Regular)
Obowiązki:
coordinating, controlling and processing tasks, such as initiating, tracking and escalating activities or preparing management-oriented reports
carrying out additional checks in the departments to monitor specifications or compliance with them (analogue to the Individual Data Processing (IDP) unit)
completing checks/workshops in the business units (incl. coordination, preparation, follow-up and documentation)
reviewing implementation and documentation of security measures (incl. coordination, preparation, follow-up and documentation)
interfering and contacting the Individual Data Processing unit in the event of questions arising in the daily work routine
training, a multiplier for the IDP unit in terms of training preparation and follow-up as well as training of the IDP unit on IDP and any new regulatory requirements
Information Security Risk Management Coordinator (ISRMC)
plac Trzech Krzyży 10, Śródmieście, Warszawa
Wygasła: 20.04.2024
full-time
umowa o pracę
hybrid work
specialist (Mid / Regular)
Obowiązki:
coordinating, controlling and processing tasks, such as initiating, tracking and escalating activities or preparing management-oriented reports
carrying out additional checks in the departments to monitor specifications or compliance with them (analogue to the Individual Data Processing (IDP) unit)
completing checks/workshops in the business units (incl. coordination, preparation, follow-up and documentation)
reviewing implementation and documentation of security measures (incl. coordination, preparation, follow-up and documentation)
interfering and contacting the Individual Data Processing unit in the event of questions arising in the daily work routine
training, a multiplier for the IDP unit in terms of training preparation and follow-up as well as training of the IDP unit on IDP and any new regulatory requirements
technical overseeing and executing the validation of models used to calculate risk and technical provisions, including formulation of validation results and defining appropriate actions/recommendations as well as preparing validation reports
working on a new setup of calculation tools and professional database solutions for the results of risk capital calculations
further development and maintenance of individual data processing tools
developing and maintaining various technical solutions and approaches for the coordination of model changes and tracking of results (validation, internal and external auditor, etc.) in the ERGO Group
supporting our closing processes by carrying out Internal Model and Standard Formula calculations for our Life and Health insurance companies
analysing the movements of Risk Capital and Own Funds and provide explanations for the risk report
preparing Perform Data Quality Checks and roll forward of ORSA, RSR and SFCR
ensuring appropriate risk management in line with relevant (transnational) legal requirements and ERGO Group guidelines
managing the company's risk management function
developing a risk strategy for the company
taking responsibility for overall risk management processes, including identifying and assessing risks, monitoring them, and reporting on them; reporting ad-hoc risks; maintaining the internal control system; monitoring the risk of the project portfolio managed by ETS S.A.; managing business continuity; ensuring information and IT security and overseeing IT Third-Party Risk Management
supervising and monitoring outsourcing activities
communicating and informing relevant authorities about risks
cultivating an appropriate risk culture within the company and facilitating internal communication
advising the ETS S.A. Board and ETSM CRO on all risk matters
establishing and maintaining transparent relationships with auditors and regulators in countries where ETS S.A. outsources IT services
planning tasks for responsible processes or projects, including resource prioritization
appointing and developing (2nd Line) Risk Specialists (both non-ICT and ICT) and succession planning within the company
serving as a Member of the Risk Committee of the company