- Страна
- Германия
Откликайтесь
на вакансии с ИИ

ICT GRC - Firewall Governance Manager
N26 — престижный работодатель в сфере финтеха с отличным соцпакетом и культурой. Позиция предлагает уникальную возможность построить функцию управления с нуля, что дает большой вес в резюме, хотя работа в GRC может быть связана с высокой бюрократической нагрузкой.
Сложность вакансии
Роль требует редкого сочетания глубоких технических знаний в области сетевой безопасности (Firewalls) и понимания сложных регуляторных требований финансового сектора ЕС (DORA, BaFin). Кандидату необходимо иметь опыт аудита и контроля, а не просто администрирования систем.
Анализ зарплаты
Предлагаемая роль менеджера в сфере GRC в Берлине соответствует рыночным ожиданиям для финтех-компаний такого уровня. Зарплаты в N26 обычно находятся на уровне или чуть выше медианы рынка для специалистов с опытом 5+ лет.
Сопроводительное письмо
I am writing to express my strong interest in the ICT GRC - Firewall Governance Manager position at N26. With over 5 years of experience in network security and a deep understanding of firewall administration across platforms like Palo Alto and Check Point, I am eager to transition my technical expertise into a strategic second-line defense role. My background in conducting firewall rule audits and maintaining security hardening practices aligns perfectly with your mission to provide an 'independent eye' over N26’s digital infrastructure.
Throughout my career, I have developed a keen ability to bridge the gap between technical engineering teams and compliance stakeholders. I am particularly impressed by N26's commitment to meeting stringent regulatory standards like DORA and BAIT while maintaining a digital-first approach. I am confident that my analytical mindset and familiarity with ICT control frameworks will allow me to effectively challenge and enhance your existing firewall governance controls, ensuring robust network segmentation and risk reduction across your global cloud environment.
Составьте идеальное письмо к вакансии с ИИ-агентом

Откликнитесь в n26 уже сейчас
Присоединяйтесь к N26 и станьте ключевым экспертом по сетевой безопасности в одном из самых инновационных необанков Европы!
Описание вакансии
ICT GRC - Firewall Governance Manager
About the Opportunity
We are excited to announce the formation of a brand-new specialist team within our second-line ICT GRC (Governance, Risk, and Compliance) function. As part of this strategic expansion, we are looking for two Firewall Governance Managers and one Senior Associate to build out our network security oversight capabilities from the ground up.
This is a unique opportunity for a Security Engineer or Firewall Maintainer to become the control owner and subject matter expert for network security governance across the bank’s global cloud-based firewall environment. While our first-line engineering teams manage day-to-day operations and configurations, your mission is to provide the "independent eye." You will ensure that firewall management practices meet internal policies, stringent regulatory expectations (DORA, BAIT, MaRisk), and industry best practices.
This is a unique chance to join a growing team where you can help shape the framework for how we review, challenge, and guide technical controls. You’ll perform independent assurance activities and drive the continuous improvement of perimeter and segmentation security across the bank’s entire digital infrastructure.
In This Role, You Will (Key Responsibilities)
- Define, maintain, and enhance governance controls for firewall management in line with internal policies, DORA, and BaFin requirements.
- Conduct second line reviews of firewall configurations, rule changes, and network segmentation to ensure compliance and risk reduction.
- Challenge and assess the effectiveness of first line firewall controls, including rule review, change management, and logging or monitoring processes.
- Oversee and document key control testing activities for network perimeter and segmentation defenses as part of the ICT control framework.
- Support internal and external audits, as well as regulatory reviews, by providing evidence and technical context for firewall-related controls.
- Maintain visibility over firewall-related risks in the ICT Risk Register, ensuring mitigation actions are clearly defined, tracked, and reported.
- Collaborate closely with Security Engineering and Network Operations teams on architecture changes, rule optimizations, and incident response actions involving network layers.
- Monitor compliance with DORA, BAIT, ISO 27001, and NIST standards related to network and perimeter security.
- Provide governance input and technical advisory during firewall technology lifecycle reviews, vendor assessments, and control revalidations.
- Contribute to ICT GRC dashboards, reports, and control testing summaries shared with the CISO Office and Non-Financial Risk Committee.
What You’ll Bring (Qualifications)
- 4–5 years of experience in network security, firewall administration or security operations
- Strong understanding of enterprise firewall technologies (e.g., Palo Alto, Check Point, Fortinet, Cloudflare) and network security concepts (routing, NAT, VPN, IDS/IPS).
- Proven experience with firewall rule audits, configuration baselines, and security hardening practices.
- Familiarity with ICT control frameworks and second line assurance models.
- Analytical and communication skills to translate technical findings into governance and risk context.
- Fluency in English, additional fluency in German highly advantageous
- Firewall certification(s) preferred, such as:
- SANS SEC503 OR SEC530 OR SEC401)
- Checkpoint: (eg. CCSA OR CCSE OR CCSM)
- AWS (eg. ANS-01 OR SCS-CO2)
- Palo Alto
What will make your application stand out:
- Working knowledge of EU or German financial sector regulations, such as DORA, BAIT and MaRisk.
- Understanding of ISO 27001, NIST CSF, or COBIT frameworks.
- Knowledge with Firewall Governance tools (such as Tufin, AlgoSec) is a plus
You’ll Succeed If You
- Combine strong technical knowledge with a governance and assurance mindset.
- Are proactive, detail-oriented, and comfortable challenging established practices.
- Can bridge the gap between technical teams and risk or compliance stakeholders.
- Want to influence how network and perimeter security is governed in a digital-first bank.
What’s in it for you:
- Accelerate your career growth by joining one of Europe’s most talked about disruptors 🚀.
- Employee benefits that range from a competitive personal development budget, work from home budget, discounts to fitness & wellness memberships, language apps and public transportation.
- As an N26 employee you will have access to a Premium subscription on your personal N26 bank account. As well as subscriptions for friends and family members.
- Additional day of annual leave for each year of service.
- A high degree of autonomy and access to cutting edge technologies - all while working with a friendly team of peers of diverse nationalities, life experiences and family statuses.
- A relocation package with visa support for those who need it.
Who we are
N26 has reimagined banking for today’s digital world. Technology and design empowereverything we do and it’s how we are building the global banking platform the world loves to use.
We've eliminated physical branches, paperwork, and hidden fees for an elegant digital experience and supreme savings. Giving people the power to live and bank their way is what gets us out of bed in the morning and inspires the work that we do.
We are headquartered in Berlin with offices in multiple cities across Europe, including Vienna and Barcelona, and a 1,500-strong team of more than 80 nationalities.
Sounds good? Apply now for this position.
Equal Opportunities:
We recognize that our strength lies in our people and the varied perspectives they bring to our workforce. We strive to build talented and diverse teams to drive our business success and empower our people to reach their full potential.
We genuinely welcome and encourage applications from people of all backgrounds, cultures, genders, sexual orientations, abilities, neurodiversities, and ages. We're committed to creating an inclusive workspace where everyone feels valued and respected, free from harassment and discrimination. If there's anything you need to make the application process work for you, please let us know by reaching out to candidate.exp@n26.com.
Visit our website to learn more about Diversity, Equity, & Inclusion at N26.
Создайте идеальное резюме с помощью ИИ-агента

Навыки
- Firewall
- Palo Alto Networks
- Check Point
- Fortinet
- Cloudflare
- Network Security
- DORA
- ISO 27001
- NIST CSF
- Risk Management
- Governance, Risk and Compliance (GRC)
- AWS
- Tufin
- AlgoSec
Возможные вопросы на собеседовании
Проверка понимания специфики второй линии защиты (2LoD) и умения проводить независимый аудит.
Как бы вы подошли к проведению независимой проверки (challenge) конфигурации файрвола, настроенной командой инженеров первой линии?
Оценка знаний актуального европейского законодательства для финтеха.
Какие ключевые требования регламента DORA, по вашему мнению, наиболее критичны для управления сетевой безопасностью в облачном банке?
Проверка навыков приоритизации рисков.
Опишите ваш процесс оценки рисков при обнаружении избыточного или небезопасного правила в наборе правил (ruleset) критического сегмента сети.
Оценка опыта работы со специализированным ПО для автоматизации комплаенса.
Был ли у вас опыт работы с инструментами Firewall Governance, такими как Tufin или AlgoSec? Как они помогают в обеспечении непрерывного комплаенса?
Проверка коммуникативных навыков и умения разрешать конфликты между безопасностью и бизнесом.
Как вы будете аргументировать необходимость отклонения запроса на изменение правил файрвола, если это изменение критично для запуска нового продукта, но нарушает политику сегментации?
Похожие вакансии
Security Engineer, Monitoring and Response
Network Security Specialist – L2
Network Security Specialist – L1
Security Engineer in Product Security
Security Compliance Specialist
Cyber Security Specialist - L3
1000+ офферов получено
Устали искать работу? Мы найдём её за вас
Quick Offer улучшит ваше резюме, подберёт лучшие вакансии и откликнется за вас. Результат — в 3 раза больше приглашений на собеседования и никакой рутины!
- Страна
- Германия