While the first line teams manage day-to-day operations and configurations, you'll ensure that firewall management practices meet internal policies, regulatory expectations (DORA, BAIT, MaRisk), and industry standards. * Define, maintain, and enhance governance controls for firewall management in line with internal policies, DORA, and BaFin requirements. * Conduct second line reviews of firewall configurations, rule changes, and network segmentation to ensure compliance and risk reduction. * Challenge and assess the effectiveness of first line firewall controls, including rule review, change management, and logging or monitoring processes. * Maintain visibility over firewall-related risks in the ICT Risk Register, ensuring mitigation actions are clearly defined, tracked, and reported. * Contribute to ICT GRC dashboards, reports, and control testing summaries shared with the CISO Office and Non-Financial ...
mehr