1. RISK ASSESSMENT and ANALYSIS
a) Third party risk assessments - Understand the level of risk of using a given third party (e.g. given the level of access they require and the sensitivity of the data handled), advise the business on mitigating controls, assess the risk of not including standard security clauses, etc.
b) Vulnerability risk acceptances - Understand impact of vulnerabilities identified via pen test and evaluate the effect of the controls proposed by IT to identify what is the residual risk for the bank and able to advise the business and IT.
c) Analyze and assess Information Security Risks involving Application “In Project” mode for enhancement or development.
2. InfoSec Dashboards & Presentations
a) Produce the monthly Dashboards & Presentation to the Review Board Meetings.
b) Reporting & Presenting InfoSec KRI data in monthly dashboards and committees.
c) Identify and improve on new needs and reporting in Dashboards.
3. Exception Management (in SG internal tool called SERVAL / MYOPRISK)
a) End-user and Application requests Exception management support on SERVAL / MyOpRISK application –
b) Adhoc risk assessments of requests from the business, e.g. sometimes the business comes to us as they want to use a given technology or platform and we need to be able to perform an analysis and advise the business on potential risks.
c) Review and Validate / Reject Exception to Standard Security policy or procedure.
“We are committed to creating a diverse environment and are proud to be an equal opportunity employer. All qualified applicants receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status”
Société Générale Global Solution Centre (SG GSC), a 100% owned subsidiary of European banking major Société Générale (SG). Our role and purpose is to enable the strategic vision of Société Générale Group. We are doing this by pioneering cutting edge innovation from Design Thinking to Smart Automation & Artificial Intelligence and applying it to banking. SG Global Solution Centre provides services in the areas of Application Development and Maintenance, Infrastructure Management, Business Process Management, and Knowledge Process Management to Société Générale’s business lines around the world.