Clearstream Funds Service (CFS) IT department builds, maintains and operates a portfolio of applications which provide Clearstream clients state of the art solutions to standardise processing and to increase efficiency and safety in the investment funds sector. Our global funds processing platform Vestima allows for reaching all types of funds, from mutual funds to ETFs and hedge funds.
Your responsibilities
As part of the IT Engineering Unit acting in the domains of architecture, infrastructure and information security, you will report to the CFS IT Security Lead and take responsibilities in a broad range of application security engineering activities covering the entire CFS IT landscape. Your assignments will include:
Analysing and documenting the security of 20+ applications according to the criteria defined by the corporate Information Security department. Your expertise typically ranges from operating systems to Web applications and includes third-party software and public Cloud services
Identifying the information security impacts caused by business and technical projects, based on the projects' requirements and architecture
Performing and documenting the information security risk assessment of the applications along the ISO/IEC 2700x controls
Managing the open information security risks and vulnerabilities for the CFS IT landscape; accurately maintaining the corresponding risk and vulnerability registries; ensuring mitigating measures are properly assigned, implemented and delivered in due time
Defining application penetration test scope, scenarios and following-up on execution; analysing penetration test finding reports
Analysing the information security risks and vulnerabilities; designing, documenting and promoting innovative solutions at application level to mitigate them; analysing relevant third-party patches; analysing and implementing for specific information security projects (e. g. SIEM onboarding, Privileged Access Management. )
Closely interacting with IT development, infrastructure, operation and project management teams as well as with third-party vendors to collect information/communicate on technical security topics
Going hands-on with the CFS IT systems to extract necessary security design information when it is not readily available
Managing the relation with the corporate Information Security department, adequately interacting with their expert resources
Answering to information security enquiries coming from customers, corporate Information Security, or internal/external auditors
Your profile
Must have
University Degree (or equivalent) in computer science, with at least 5 years professional experience in IT
Very good technical writing skills; ability to clearly describe complex concepts
Good communication skills with the ability to justify and challenge security design decisions
Sound experience with critical multi-tier Web application security design as architect, security engineer or full-stack application designer
Solid background understanding of base information security concepts such as encryption, authentication, access control, digital signature, data integrity.
Practical experience with the following technologies: Web server, Git, TLS and public-key cryptography, Linux and Windows OS, at least one major Public Cloud Service Provider (Azure, AWS, Google), Shell scripting, RDBMS, Messaging middleware
Ability to digest various abstract requirements in the field of security, and map them to practical situations
At least basic software development skills in a modern object-oriented programming language
Proficiency in written and spoken English; French and German language skills are an asset
Highly desirable
Knowledge of ISO/IEC 2700x standard
Experience with enterprise application software development, esp. using Java and . net
Experience with identity management/federation/SSO platforms, esp. SAML2 and OpenID Connect
Experience with containers - ideally using RedHat OpenShift
Experience with the specific security challenges posed by Internet-facing Web applications
LU - Luxembourg
November 29, 2024
Join a global company with a human touch. • Deloitte Luxembourg welcomes you to a positive and flexible work environment. You'll discover our remarkable new premises, located in Cloche d'Or, Luxembourg's fastest growing Business Hub. • With over 2500 employees and 70 nationalities, our...
LU - Vianden - Vianden - Seltz
December 12, 2024
Le Siden se propose d'engager pour les besoins des services de l'Unité informatique un chargé d'études (Ingénieur) dans le groupe de traitement/indemnité A1 - sous-groupe scientifique et technique, Spécification: électrotechnique/automatisation. • Statut : Fonctionnaire communal ou Employé...
LU - Luxembourg - Luxembourg - Luxembourg
November 28, 2024
Azure Cloud Engineer - Luxembourg (onsite working required) • EU Nationals Only • Duration: 12 months Initial, with extensions • Luxembourg/EU location • Start: ASAP, or notice considered • This is a *Luxembourg* based role with an excellent immediate start within a major...
LU - Luxembourg - Luxembourg - Luxembourg
December 24, 2024
Nous recherchons un Senior Scrum Master pour accompagner l'adoption continue d'Agile par le Groupe et servir de coach et de facilitateur. • En tant que Senior Scrum Master , votre rôle s'étend au-delà de la facilitation des pratiques Agile typiques comme la planification des sprints, les...
LU - Luxembourg
November 29, 2024
With more than 150 partners and 2,600 employees, Deloitte Luxembourg is one of the Grand Duchy's largest, strongest and oldest professional services firms. • For 70 years, our talented teams have been serving clients in various industries delivering high added-value offerings to national and...
LU - Luxembourg
November 7, 2024
You want to combine passion an IT expertise? • You are talented, motivated, and ambitious? Then, we will be more than happy to meet you! • Arηs Group - Part of Accenture, is looking for a Senior Security Officer (m/f) to join one of its teams located on the premises of a European...
LU - Luxembourg - Luxembourg - Luxembourg
December 18, 2024
Product & service owner (AWS, Nexus & API GateWay services) • Duration: long-term freelance assignment (1 year with extensions) • Location : luxembourg or EU location (remote working possible) • Rates are negotiable to experience • Start: ASAP, or notice considered • urgent...
LU - Strassen
November 29, 2024
DZ PRIVATBANK S.A. • Ihr zukünftiges Aufgabenportfolio: • Sie führen die Abteilung mit den beiden Gruppen „Allgemeine Verwaltung' und „Gebäudemanagement' fachlich wie disziplinarisch. Sie entwickeln die Mitarbeiter, einschl. der beiden Führungskräfte, sowie die Organisation als Ganzes...
LU - Capellen - Capellen - Bridel
December 24, 2024
Notre client, une entreprise leader dans son domaine à Luxembourg est actuellement à la recherche d'un candidat expérimenté pour les rejoindre en tant qu'Analyste Développeur BI - SAP BO / Oracle dans son département IT (CDI - interne). • Vous rejoindrez une équipe IT composée d'une quarantaine...
SEO Société Electrique de l Our
LU - Stolzembourg
November 29, 2024
Wir sind ein führendes Energieunternehmen in Luxemburg und spezialisiert auf die Produktion und Bereitstellung nachhaltiger Energielösungen. • Mit einem klaren Fokus auf Innovation und Umweltbewusstsein setzen wir auf modernste Technologien und ein engagiertes Team, um die Energiezukunft aktiv...
LU - Luxembourg
November 7, 2024
Job description • As part of our Security team, you will be responsible for • Perform external and internal penetration testing on web applications and infrastructure components • Execute penetration tests in grey-box and black-box environments, targeting both known and undisclosed...
Business Training Luxembourg SA
LU - Luxembourg
November 29, 2024
Equipe Unix gérant • 320 machines Red Hat Enterprise Linux 6, 7 et 8 dont 95% sont virtualisées et qui hébergent des applications critiques pour nos utilisateurs. • Les serveurs Power sous AIX 7 utilisant PowerVM/VIO (NPIV, SEA) avec environ 100 partitions gérées sous NIM hébergeant des...
LU - Luxembourg
November 5, 2024
The Deutsche Börse Group CTO Data as a Service product and Index Services Operations function enables the business to digitize and navigate financial markets with increased agility and insight. • By extracting and deploying the right information at the right time, data is transformed into value...
LU - Luxembourg - Luxembourg - Bertrange
December 24, 2024
Chez Desai, nous partageons un ensemble de valeurs que nous nous engageons à respecter: • Remettre en question : Nous valorisons le courage de remettre en question les idées, convaincus qu'un désaccord constructif conduit à de meilleurs résultats. • Travailler ensemble : Nous croyons...
LU - Luxembourg
November 28, 2024
We are looking for a Software Developer to reinforce our team which has more than two decades of experience in the satellite industry. As our new colleague you will contribute to the development and testing of a C++ Embedded application, for one of our key customers. The role is based in our...
LU - Luxembourg
November 26, 2024
Junior Java Developer • We are looking for a junior Java developer to reinforce our team which has more than two decades of experience in the satellite industry. As our new colleague, you will contribute to the development and testing of an application which is used to book GEO and MEO...
LU - Luxembourg
November 27, 2024
The University of Luxembourg is an international research university with a distinctly multilingual and interdisciplinary character. • Created in 2003, it strives today to meet tomorrow's major societal challenges, by nurturing an interdisciplinary approach and international outlook,...
LU - Luxembourg
November 28, 2024
Are you driven, skilled, and eager to make an impact? We want to hear from you! • We are a forward-thinking team dedicated to optimizing our clients' M365 environments. We excel at implementing modern workplace technologies and ensuring seamless operations for diverse businesses. As an M365...
LU - Luxembourg - Luxembourg - Luxembourg
November 27, 2024
Cnap (cloud-native application protection) and EDR (EndPoint detection and response) Engineer • This is a *Remote* based role with one week every quarter visit to the site and excellent immediate start within a Global Consulting company. • Job summary • We are seeking a highly skilled...
LU - Not Specified
November 29, 2024
Assistant/Associate Professor in Information Systems Engineering About us The University of Luxembourg is an international research university with a distinctly multilingual and interdisciplinary character. • The Interdisciplinary Centre for Security, Reliability and Trust (SnT) at the...
LU - Luxembourg - Luxembourg - Luxembourg
December 24, 2024
Nous recherchons un ingénieur système applicatif. • Vous êtes passionné(e) par les systèmes d'exploitation et souhaitez évoluer dans un environnement financier critique ? Rejoignez notre équipe Unix et mettez à profit vos compétences pour des projets techniques variés et stimulants ! • Vos...
LU - Luxembourg
November 6, 2024
Clearstream Funds Service (CFS) IT department builds, maintains and operates a portfolio of applications which provide Clearstream clients state of the art solutions to standardise processing and to increase efficiency and safety in the investment funds sector. Our global funds processing platform...
LU - Luxembourg
November 26, 2024
As a Lead Architect and Team Lead, you will work in close collaboration with the Head of Lux, the organization and the domain leads to guarantee the overall technical quality and competencies through the use of technological resources. Using an active and practical approach, you will coach the...
LU - Strassen
November 29, 2024
DZ PRIVATBANK S.A. • Ihr zukünftiges Aufgabenprofil: • Ertragsorientierte Steuerung der operativen und kurzfristigen Liquidität unter Berücksichtigung interner Vorgaben und externer, aufsichtsrechtlicher Anforderungen • Zentrale Steuerung von Zins-, Liquiditäts- und Währungsrisiken im...
LU - Luxembourg
November 29, 2024
Nous recherchons un(e) Business Analyst pour rejoindre notre équipe et participer aux projets variés de notre client. • Vous êtes en charge de recueillir les besoins utilisateurs à l'aide de différentes techniques d'élicitation des besoins • Vous avez également pour mission de décomposer...
LU - Luxembourg
November 21, 2024
Nous recherchons actuellement un « application système engineer » ayant les qualités suivantes • Expérience réelle, polyvalence, bonne autonomie générale et rigueur de travail (tests, gestion des changements, mise en production et documentations). • Le consultant doit bien être conscient...
LU - Luxembourg
November 29, 2024
With more than 120 partners and 2,300 employees, Deloitte Luxembourg is one of the Grand Duchy's largest, strongest and oldest professional services firms. • For 70 years, our talented teams have been serving clients in various industries delivering high added-value offerings to national and...