ICT Risk Assurance Specialist (f/m/d)

Date: 3 Aug 2026

Location: Prague, CZ

Company: Deutsche Börse Group

Your area of work:

 

Clearstream is a leading international financial institution providing post-trade infrastructure and securities services to clients across global and domestic financial markets. As part of the ICT Risk Management Control Function, you will play a key role in strengthening the organization’s resilience against technology and information security risks.

 

Working closely with technology, security, product, and risk stakeholders, you will contribute to the identification, assessment, and mitigation of ICT risks while supporting the continuous enhancement of the organization's risk governance and control framework. This role offers a unique opportunity to combine technical expertise with risk assurance activities in a highly regulated financial market infrastructure environment.

 

 

Your responsibilities:

 

  • Identify, assess, and support the remediation of material technology and information security risks across the organization.
  • Analyze complex information security challenges and provide practical technical recommendations to mitigate identified risks.
  • Conduct technical security reviews and contribute to the reporting of key risk exposures and mitigation activities.
  • Evaluate the effectiveness of security controls and ensure they are appropriately designed, implemented, and operating as intended.
  • Support risk and vulnerability assessments of existing and planned information systems to identify potential security weaknesses and protection requirements.
  • Promote the consistent implementation of information security and regulatory compliance requirements across the organization.
  • Collaborate closely with IT, operations, security, and business stakeholders to drive informed and risk-based security decisions.
  • Contribute to the continuous improvement of ICT risk management and assurance practices within a complex financial services environment.

 

 

Your profile:

 

  • Master's degree in Computer Science, Cybersecurity, Information Security, or a related technical discipline.
  • Minimum 2 years of professional experience in security engineering, information security audits, or a comparable cybersecurity role.
  • At least 1 year of experience within the financial services sector or another highly regulated environment.
  • Strong understanding of information security principles, technology risk management, and security control frameworks.
  • Ability to analyze complex IT environments, identify risks, and provide practical, value-adding recommendations.
  • Excellent communication skills with the ability to translate technical security risks into clear and actionable insights for diverse audiences.
  • Proven ability to collaborate effectively across cross-functional and multicultural teams.
  • Strong analytical mindset and willingness to develop a deep understanding of business processes, IT operations, and associated security controls.
  • Experience with information security regulatory requirements, compliance programs, or risk management frameworks is considered an advantage.
  • Professional proficiency in English and French; knowledge of German is a plus.