Business Unit Overview
Goldman Sachs has one of the most progressive Technology Risk teams in the industry and is continuing to push the development of risk in preference to security within technology and the business. Year on year success has led the team to work deeper into the organization and gain valuable insights into how technology needs to function, what its risk really is and how this impacts the business.
You will be a key addition to the Technology Risk Governance, Regulatory, and Engagement (GRE) team which provides governance over various aspects of the firm’s information security and cyber security program, ensures regulatory obligations are understood and achieved, through the development and monitoring of controls and risks. You will specifically work towards responding to and supporting the firm’s regulatory obligations and interactions with global regulatory agencies.
Role and Responsibilities
As part of our team in Frankfurt, you can make a real difference in the continued evolution of the first line Technology Risk function supporting Goldman Sachs Bank Europe SE. Your expertise will help us to design and implement solutions in accordance with both local and global requirements. For you, this will also be an opportunity to drive integration of our local deliverables into the firm’s global Technology Risk programs. Your tasks:
- Support implementation of regulatory requirements such as Digital Operational Resilience Act (DORA) into the legal entity specific governance framework
- Develop, improve and automate regulatory reporting to support the entity, including respective Key Performance and Key Risk Indicators (KPIs and KRIs)
- Support regulatory assessments, interactions and submissions, as well as internal and external audit requests
- Closely collaborate with other functions across Engineering, as well as the 2nd and 3rd lines of defense
- Ensure continuous alignment with local regulations, firmwide policies and standards
Qualifications
- 4+ years of relevant work experience
- Understanding of well recognized risk management frameworks
- Good understanding of Information Security controls, along with preferred and alternative implementations
- Experience of working with a broad range of stakeholders as well as analytical and problem-solving skills
- Knowledge of technology risk, information and cyber security related regulation in the Financial Sector, e.g. DORA, EBA Guidelines on ICT and Security Risk Management, MaRisk are a benefit
- Strong organizational skills, attention to detail, and delivery focus
- Proficient verbal and written communication skills
- Knowledge of German language is beneficial