Cybersecurity Specialist
Intesa Sanpaolo — Italy
Salary: From €40k · Schedule: 4-Day Week · Work model: Hybrid
Skills: AI Security, Communication, Cybersecurity, Regulatory Compliance, Risk Assessment, Security by Design
Job Description
.
Overview
You will join the Cybersecurity by Design Office, whose mission is to anticipate technical and process-related Cybersecurity requirements from the initial project stages—the so-called "shift-left approach"—to ensure every initiative is inherently secure. You will be responsible for extending this approach to the world of Artificial Intelligence, contributing to the conception, definition, updating, and monitoring of cybersecurity safeguards to protect projects leveraging GenAI and ML, across the Group and Legal Entities, in an international, dynamic, and fast-growing context.
What your activities will be
- Security assessment on AI initiatives: evaluate the security requirements of initiatives based on AI solutions, identifying domain-specific risks and defining mitigation measures
- Security by Design applied to AI projects: assess the security needs of ICT initiatives with AI components from the early design stages, anticipating containment measures
- Framework evolution: update the Cybersecurity by Design Framework by extending potential and residual risk assessment criteria to AI-specific threats and related containment measures
- Cross-functional collaboration: act as a point of reference for coordination with other functions, ensuring an integrated approach to AI risk management
- Evaluation of AI solutions and vendors: within the scope of RFI/RFP processes, contribute to the security evaluation of third-party AI solutions, platforms, and services (e.g., LLM providers, MLOps platforms, AI-SPM tools)
Who we are looking for
If you have the following characteristics, we are waiting for you:
- 3-5 years of experience in cybersecurity
- Familiarity with reference frameworks for AI security such as OWASP Top 10 for LLM Applications, MITRE ATLAS, NIST AI Risk Management Framework, and ISO/IEC 42001
- Knowledge of attack scenarios, vulnerabilities, and threats that can compromise banking systems and applications
- Knowledge of the relevant regulatory framework, including DORA and the EU AI Act
- Excellent knowledge of the English language
Certifications are considered a plus:
- CISSP
- CSSLP
- Security+
- CISM
- CSX
- OSCP
- OSCE
- OPST
- OPSA
- ISO 27001
- ISO 22301
- Cloud Security certifications
What we offer you
Gross annual salary starting from €40.000
The Group provides a variable component of remuneration as regulated by the Remuneration Policies available on the Group website
Complementary elements regulated by the National Collective Labor Agreement for the Credit Sector and second-level company agreements
Professional development initiatives to support the growth of our people
Extensive training offer through the Corporate Academy dedicated to the continuous development of professional, managerial, and soft skills at all levels
Possibility to join flexible work arrangements and the 4x9 short week
Modern and integrated corporate welfare system ( link)
Health coverage and supplementary pension starting from hiring
Advantages on the Group's banking products and services
Who we are
We are leaders in Italy and one of the main banking groups in Europe. Join us and be part of our success story! With over 20 million customers in Italy and abroad, we are a true engine of sustainable growth with a strong commitment to the environment and a tangible impact on society.
People are at the center; we take care of them by committing to creating an inclusive culture within the Group where everyone feels like a protagonist and valued.
The Chief Security Officer Governance Area oversees the Group's physical security, cybersecurity, and business continuity in an integrated manner, leveraging specialized skills and advanced technological solutions, with the goal of ensuring high security standards at an international level.
The Area includes the Security Staff, Group Security Planning & Models Monitoring, Corporate and Physical Security, and Cybersecurity, Antifraud & Business Continuity Management structures, ensuring a coordinated and cross-functional approach to protecting the Group.
Join our international reality. The future is not waited for, it is chosen!
#sharingfuture
We guarantee an inclusive and equal opportunity environment. We will consider all applications regardless of race, religion, sexual orientation, gender identity, marital status, age, disability, or any other protected category in compliance with Legislative Decrees 198/2006, 215/03, and 216/03.
For the evaluation of applications, the data will be used by Intesa Sanpaolo S.p.A. as Data Controller. We invite you to read the dedicated Privacy Policy.
This listing was sourced from 4dayweek.io.