ICT GRC - Firewall Governance Senior Associate

N26 AG
Berlin, Germany
2 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English, German
Experience level
Senior

Job location

Remote
Berlin, Germany

Tech stack

Amazon Web Services (AWS)
Application Firewall
Control Objectives for Information and Related Technology (COBIT)
Computer Security
Network Address Translation
Intrusion Detection Systems
Virtual Private Networks (VPN)
Network Security
Network Layer
Routing
Data Logging
Firewalls (Computer Science)
Marisk
Fortinet

Job description

We are excited to announce the formation of a brand-new specialist team within our second-line ICT GRC (Governance, Risk, and Compliance) function. As part of this strategic expansion, we are looking for two Firewall Governance Managers and one Senior Associate to build out our network security oversight capabilities from the ground up.

This is a unique opportunity for a Security Engineer or Firewall Maintainer to become the control owner and subject matter expert for network security governance across the bank's global cloud-based firewall environment. While our first-line engineering teams manage day-to-day operations and configurations, your mission is to provide the "independent eye." You will ensure that firewall management practices meet internal policies, stringent regulatory expectations (DORA, BAIT, MaRisk), and industry best practices.

This is a unique chance to join a growing team where you can help shape the framework for how we review, challenge, and guide technical controls. You'll perform independent assurance activities and drive the continuous improvement of perimeter and segmentation security across the bank's entire digital infrastructure.

In This Role, You Will

  • Support the implementation and maintenance of governance controls for firewall management.
  • Assist in performing second line reviews of firewall configurations, rule changes, and access requests.
  • Participate in control testing activities and document results within the ICT control framework.
  • Help track and monitor firewall-related risks and mitigations in the ICT Risk Register.
  • Support the preparation of evidence for audits and regulatory reviews related to network and perimeter security.
  • Contribute to assurance reviews of firewall rule management, change processes, and logging or monitoring practices.
  • Coordinate with first line teams to review and document architecture updates or incidents involving firewalls and network layers.
  • Assist in monitoring compliance with DORA, BAIT, ISO 27001, and NIST standards relevant to perimeter security.
  • Help maintain dashboards and reports on firewall governance and control testing outcomes for the CISO Office.

Requirements

Do you have experience in VPN?, * 2-4 years of experience in network security, firewall administration, or information security.

  • Working knowledge of enterprise firewall platforms (e.g., Palo Alto, Check Point, Fortinet). Understanding of network security concepts such as routing, NAT, VPN, and IDS/IPS.

  • Familiarity with ICT control frameworks or audit and assurance methodologies.

  • Analytical mindset with attention to detail and accuracy in documentation.

  • Strong communication skills and willingness to collaborate with both technical and risk teams.

  • Fluency in English as well as German proficiency required.

What will make your application stand out:

  • Basic knowledge of EU or German financial sector regulations, such as DORA, BAIT and MaRisk.
  • Fundamental understanding of ISO 27001, NIST CSF, or COBIT frameworks
  • Understanding of Firewall Governance tools (such as Tufin, AlgoSec)
  • Firewall certification/s, such as:
  • SANS SEC503 OR SEC530 OR SEC401)
  • Checkpoint: (eg. CCSA OR CCSE OR CCSM)
  • AWS (eg. ANS-01 OR SCS-CO2)
  • Palo Alto

You'll Succeed If You

  • Are eager to grow your expertise in firewall and network security governance.
  • Enjoy working across technical and compliance topics.
  • Have a structured, detail-oriented approach and take ownership of your work. Want to contribute to a resilient and compliant network security environment in a leading digital bank.

Benefits & conditions

  • Employee benefits that range from a competitive personal development budget, work from home budget, discounts to fitness & wellness memberships, language apps and public transportation.
  • As an N26 employee you will have access to a Premium subscription on your personal N26 bank account. As well as subscriptions for friends and family members.
  • Additional day of annual leave for each year of service.
  • A high degree of autonomy and access to cutting edge technologies - all while working with a friendly team of peers of diverse nationalities, life experiences and family statuses.
  • A relocation package with visa support for those who need it.

About the company

N26 has reimagined banking for today's digital world. Technology and design empower everything we do and it's how we are building the global banking platform the world loves to use. We've eliminated physical branches, paperwork, and hidden fees for an elegant digital experience and supreme savings. Giving people the power to live and bank their way is what gets us out of bed in the morning and inspires the work that we do. We are headquartered in Berlin with offices in multiple cities across Europe, including Vienna and Barcelona, and a 1,500-strong team of more than 80 nationalities.

Apply for this position