Cyber Security Specialist

1 week geleden


Amsterdam, Noord-Holland, Nederland Cboe Global Markets, Inc. Voltijd

Description

Building trusted markets —powered by our people.

At Cboe Clear Europe, we inspire our people to solve complex challenges together because what we do matters. We provide the financial infrastructure that powers the global economy. As a leading provider of market infrastructure and tradable products, Cboe delivers cutting-edge trading, clearing and investment solutions to market participants around the world.

We're building inclusive ways to support professional and personal development while strengthening the trust we've earned as a global market leader. Our teams are empowered to share ideas, actively pursue them and bring on a challenge. As champions of internal mobility and access to opportunity, we encourage our people to "go for it" and equip our managers with the training to coach their teams to the next level. Our Associate Resource Groups champion diversity, equity and inclusion, giving associates a safe space to network, share ideas and create opportunities.

Sound like the place for you? Join us

The Cyber & Information Security team is hiring for Cyber Security Specialist (SecDevOps).

The Cyber Security specialist at Cboe Clear Europe will be reporting into the CISO. This role will give you exposure to both legacy and cutting-edge technologies and work across both infrastructure, Web, and Cloud. You will be responsible for Security implementations, delivering high quality services and solutions across all application development platforms. You perform design reviews of new applications, products, and services to identify potential risks and recommend appropriate mitigations including the design of the appropriate securty testing.

In this role you'll be responsible for :

Participate in infrastructure design reviews and threat modelling sessions, promote best cloud infrastructure practices Deliver/integrate security tooling to DevOps delivery pipelines. Perform design reviews of new applications, products, and services to identify potential risks and recommend appropriate mitigations. Perform security assessments, testing, and manual code review of applications. Performing post incident root-cause analysis and develop and implement strategies to prevent recurrence. Create technical security standards for relevant technologies. Assist with development and delivery of Cboe Clear Europe application security strategy. Responsible for monitoring and driving Application Security Compliance during project lifecycle. Work with stakeholders to implement security solutions and initiatives addressing new vulnerabilities. Delivering the technical aspects through plan, design, build for project and compliance security testing Responsible for development of solutions to secure architecture requirements and standards. Engage across multiple functions on a global level to ensure Code Development Lifecycles are in place and application verification is drive through all application development programs. Ensures accurate delivery progress reporting is completed and communicated to relevant stakeholders.

The ideal candidate has :

At least 5+ years of hands-on experience of application security. This could either be as an AppSec specialist within a security team, or as an engineer and/or developer with significant experience of securing and defending applications against real-world threats. Implement and review security controls on other layers of infrastructure: applications within Kubernetes clusters, service virtual machines, SaaS Knowledge of common application security issues, and able to identify these via design assessment and threat modelling. Strong understanding of SecDevOps principals, and how security controls can be effectively integrated to DevOps pipelines. Several years of experience in providing CI/CD, run and observability services to other teams Familiarity with Threat Modelling frameworks such as STRIDE, PASTA and MITRE ATT&CK Able to read and write code (languages we typically use include Python, Swift, Java, Javascript) Knowledge of security aspects of some of the following: Security tooling e.g. SAST, DAST, IaC scanning, Container vulnerability scanning Modern web applications and related technologies (Angular, React, Spring, etc). APIs and microservices Authentication/Authorization technologies e.g. OAuth, SAML Knowledge of common technologies used to deliver and support applications e.g. Linux, Windows, databases, load balancers, containerization, public/private cloud environments. Knowledgeable about PKI infrastructure. Familiarity with common application related compliance requirements – e.g. GDPR, EMIR, Strong written and verbal communication skills, ability to form strong business relationships across multiple locations. Ability to create management reporting to convey operational metrics, trends, or other key information. Experience of analyzing, assessing, and resolving complex technology requirements, problems, and issues Strong experience in designing, integrating, and deploying security solutions in a dynamic, high pressure working environment. Demonstrate strong influencing and persuading skills, encourage colleagues and teams to change established processes, achieve improvements, and best practice. Bachelor's degree in cyber security, Network/Security Engineering, Computer Science, MIS, CIS, related field, or extensive relevant work experience Certification in any of the following preferred: CISSP, CISM, CISA, CCSP or equivalent

You'll really stand out with :

Previous work with a Fin-Tech company is preferred but not required Additional security industry training such as SANS or Offensive Security preferred Knowledge of information security concepts and technologies, including cyber risk, third party risk, and security governance Knowledge of a wide range of security/risk management frameworks like NIST, CIS etc. Experience working in a complex cloud-based IT organization is a plus

Benefits and Perks

We value the total wellbeing of our people – including health, financial, personal and social wellness. We believe standard benefits like health insurance and fair pay are a given at any organization. Still, you should know we offer:

Fair and competitive salary and incentive compensation packages with an upside for overachievement Cboe offer premium free pension contributions . Enhanced paid parental leave to support parents EAP - This service intends to help employees deal with personal problems that might adversely impact their work performance, health and well-being. This service includes short- term counselling and referral services for employees and their immediate family. ClassPass Corporate Membership which provides access to on-demand classes, livestream classes, in-person classes and wellness sessions across different fitness genres. (taxable benefit) 25 days holiday per year per holiday year for full time employees, increasing with length of service at a rate of one extra day per completed years' service, up to a maximum of 30 days. Flexible, hybrid work environment, where you choose where and how you work (2/3 days per week in office) Discounted Employee Stock Purchase Plan Employee referral bonus program Complimentary lunch, snacks and drinks in any Cboe office Paid tuition assistance and education opportunities Generous charitable giving company match Volunteer opportunities to help you give back to your communities

  • Amsterdam, Noord-Holland, Nederland Schiphol Group Voltijd

    Wat ga je doen: Nice to know (you)Schiphol is een unieke dynamische omgeving waarin Cyber Security één van de topprioriteiten is. Wij hebben de ambitie om de organisatie veilig te houden en om mee te groeien met de ontwikkelingen in het dreigingslandschap. Het Schiphol Cyber Security Centre (SCSC) maakt, samen met de collega's uit de organisatie, Schiphol...

  • Cyber Security Manager

    1 week geleden


    Amsterdam, Noord-Holland, Nederland Schiphol Voltijd

    Wat ga je doen: Nice to know (you)Wij hebben de ambitie om het IT & Data landschap veilig, veerkrachtig en robuust te houden. Het Schiphol Cyber Security Centre (SCSC) heeft hier een belangrijke tactisch en strategische rol in. Je bent onderdeel van een team (6+) Cyber Security Managers. Je primaire taak is het creëren en uitvoeren van het cybersecurity...


  • Amsterdam, Noord-Holland, Nederland Levy Professionals Voltijd

    Cyber Security Data Analyst - Long-term - Amsterdam Area, HybridLevy Professionals is currently looking for Data Analysts with strong experience in Cyber Security and Banking/Financial environments for one of the largest financial institutions in the Netherlands. You will be responsible for identifying security concerns to solve and find opportunities to...

  • Head of Cyber Security

    1 week geleden


    Amsterdam, Noord-Holland, Nederland Coltech Global Voltijd

    Head of Cybersecurity – 9 Months – Outside IR35 – Remote - £800+ per day Coltech has partnered with a forward-thinking Network Security company, which is seeking an experienced Head of Cyber Security during a pivotal growth phase. Shifting away from reliance on external cybersecurity management, they're eager to establish a strategic in-house...

  • Cyber Security

    2 maanden geleden


    Amsterdam, Noord-Holland, Nederland Yacht Voltijd

    • Evaluate tools, methodologies, and best practices to effectively understand the tactics,techniques, and procedures (TTPs) utilized by threat actors.• Drive innovation for detecting and tracking threats, adversaries, techniques, tools, andinfrastructure• Provide finished products to internal technical and/or non-technical stakeholders• Ensures...


  • Amsterdam, Noord-Holland, Nederland Quint Voltijd

    Speaking Dutch fluently is required for this job position - Welke impact maak jij als Senior Consultant Cyber Security binnen Eraneos? Ben jij een ervaren cyber security professional met een passie voor het beschermen van organisaties tegen digitale bedreigingen? Heb je een scherp oog voor het identificeren van kwetsbaarheden en het ontwikkelen van...


  • Amsterdam, Noord-Holland, Nederland UWV Voltijd

    Wat ga je doen Een cyberaanval waarbij UWV betrokken is, heeft niet alleen gevolgen voor de interne organisatie maar raakt direct of indirect de burger die afhankelijk is van inkomenszekerheid vanuit UWV. Het solliciteren op deze functie doe je dus niet alleen voor jezelf én om UWV te beschermen maar je draagt bij een hoger gelegen sociaal...


  • Amsterdam, Noord-Holland, Nederland ING Voltijd

    We at, ING CISO Domestic Bank NL (DBNL), are looking for a highly motivated and detail oriented individual to join our team as a Security Awareness and Reporting Expert who will support the CISO department and the IT organization for the Netherlands Domestic Bank. Role and Responsibilities Develop, deliver and maintain engaging security awareness...


  • Amsterdam, Noord-Holland, Nederland ING Voltijd

    We at, ING CISO Domestic Bank NL (DBNL), are looking for a highly motivated and detail oriented individual to join our team as a Security Awareness and Reporting Expert who will support the CISO department and the IT organization for the Netherlands Domestic Bank.Role and ResponsibilitiesDevelop, deliver and maintain engaging security awareness training...


  • Amsterdam, Noord-Holland, Nederland ING Voltijd

    We at, ING CISO Domestic Bank NL (DBNL), are looking for a highly motivated and detail oriented individual to join our team as a Security Awareness and Reporting Expert who will support the CISO department and the IT organization for the Netherlands Domestic Bank.Role and ResponsibilitiesDevelop, deliver and maintain engaging security awareness training...

  • Cyber Security Consultant

    1 week geleden


    Amsterdam, Noord-Holland, Nederland emagine Consulting Voltijd

    We are seeking a highly skilled Cyber Security Consultant to join our team. The ideal candidate will have a strong technical background in vulnerability scanning and penetration testing, with proven experience using the Rapid 7 Insight platform (or similiar). This role involves assessing and mitigating vulnerabilities within our EMA infrastructure,...


  • Amsterdam, Noord-Holland, Nederland Quint Voltijd

    Speaking Dutch fluently is required for this job position - Welke impact maak jij als Senior Manager Cyber Security binnen Eraneos?Ben jij als Manager klaar voor de volgende stap als Senior Manager Cyber Security binnen een ambitieus internationaal adviesbureau? Solliciteer dan meteen Jouw rol als Senior ManagerVanuit je rol als Senior Manager bouw je de...


  • Amsterdam, Noord-Holland, Nederland timesjobs Voltijd

    CYBER SECURITY ANALYST JOBS IN NETHERLANDSCALL OR WHATSAPP(AMAN- EIGHT FOUR FOUR EIGHT EIGHT SEVEN ONE TWO FOUR FOUR)SALARY UPTO :90 LAKHS Conduct threat and risk analysis and provide viable solutions for themCollect and analyze data to eliminate risk, performance and capacity issuesCreate tools and actively take part in the security architecture...


  • Amsterdam, Noord-Holland, Nederland timesjobs Voltijd

    CYBER SECURITY ANALYST JOBS IN NETHERLANDSCALL OR WHATSAPP(AMAN- EIGHT FOUR FOUR EIGHT EIGHT SEVEN ONE TWO FOUR FOUR)SALARY UPTO :90 LAKHS Conduct threat and risk analysis and provide viable solutions for themCollect and analyze data to eliminate risk, performance and capacity issuesCreate tools and actively take part in the security architecture...


  • Amsterdam, Noord-Holland, Nederland UWV Voltijd

    Wat ga je doen Een cyberaanval die UWV treft, heeft niet alleen gevolgen voor de interne organisatie. Het raakt ook de burger en de maatschappij die afhankelijk zijn van het UWV voor inkomenszekerheid bij tegenslagen zoals werkloosheid. Het solliciteren op deze functie doe je dus niet alleen voor jezelf en om UWV te beschermen maar je draagt ook bij een...


  • Amsterdam, Noord-Holland, Nederland Heineken Voltijd

    Internship – Communication for Cyber SecurityAs our world continues its digital transformation, cyber security is becoming a growing concern. HEINEKEN Global Digital & Technology is on the lookout for a creative, curious, and ambitious intern to lend support to internal communications, activities, and the Global Security Awareness Programme for the Global...


  • Amsterdam, Noord-Holland, Nederland Heineken Nederland Voltijd

    Internship - Communication for Cyber SecurityThe internshipWith the world becoming more and more digitized, cyber security becomes an increasing risk. HEINEKEN Global Digital & Technology is looking for a creative, curious, and ambitious intern to support the internal communications, activities and the Global Security Awareness Programme* for the Global...


  • Amsterdam, Noord-Holland, Nederland ING Voltijd

    ING is a bank that is known for its IT innovations and has a primarily focus on IT Risk & Security. ING CISO Domestic Bank NL (DBNL) is looking for a passionate and inspiring Non-Financial Risk specialist, who will support the CISO department and the IT organization in the role of IT & Cyber Risk Specialist. You will enable IT senior management to work on IT...


  • Amsterdam, Noord-Holland, Nederland ING Voltijd

    ING is a bank that is known for its IT innovations and has a primarily focus onITRisk & Security.ING CISO Domestic Bank NL (DBNL) is looking for a passionate and inspiring Non-Financial Risk specialist, who will support the CISO department and the IT organization in the role ofIT & Cyber Risk Specialist. You willenable IT senior management to work on IT...


  • Amsterdam, Noord-Holland, Nederland Ikea Voltijd

    Job ID: Date posted: 06/06/ Why we will love you At IKEA we strongly believe that we can help people and the planet, while creating an affordable and better everyday life at home. We believe that we thrive when meeting incredible people that are on the same mission at IKEA. People who are very humble, supportive and committed to lead into the future...