DWS
Financial Services
ITAO,AVP
Neural analysis suggests this role is
optimal for Senior candidates.
“ITAO, AVP at DWS. Skills: IT risk management, Information security, Application Decommissioning, SDLC compliance. Support tracking of application control status. Assist application dev-teams”
What You'll Achieve.
Reduce risk; Ensure compliance; Enhance operational readiness; Ease maintenance; Drive incidents reduction
Industry & Context.
Problem-solving skills; Analytical skills
What They're Looking For.
Must Have
10-15 years experience in IT, Degree-level IT qualification, Degree-level information security qualification, Equivalent experience in Information Security, Equivalent experience in IT Security, Experience in Software Development Lifecycle (SDLC), Problem-solving skills, Analytical skills, Ability to oversee complex processes, Ability to educate technical audience, Ability to educate non-technical audience, Fluent in English (written/verbal)
Nice to Have
GCP-Cloud foundation knowledge, Knowledge of security tools, Understanding of cloud engineering, Understanding of native security features, Firm understanding of DevSecOps, Understanding of banks shift left agenda, ISO certification, ITAO certification
What You'll Do.
Support tracking of application control status
Assist application dev-teams
Ensure Identity & Access Management cycle compliance
Onboard application to central tools
Improve infrastructure
Ensure compliance with technical roadmap
Improve safety and security of application
Ensure compliance with regulations
Ensure compliance with policies
Ensure compliance with standards
Enhance operational readiness
Ease maintenance of environment
Support audit function
Remediate audit points
Remediate self-identified issues
Produce accurate documentation
Maintain accurate documentation
Decommission applications
Drive incident reduction
Support SDLC process compliance
Ensure SDLC controls are green
Consult with ITAO community
Consult with information security specialists
Consult with infrastructure teams
Review information systems for compliance
Adhere to overall strategy
Communicate information security risks
Communicate information security issues
Perform basic risk assessments
Contribute to vulnerability assessments
Apply security controls
Maintain security controls
Investigate suspected attacks
Respond to security breaches
Record security incidents
Record security actions
Publish content using procedures
Apply principles of usability
Apply principles of accessibility
Report on potential risk events
Implement continuity management plan
Contribute to continuity management plan
Assess risks to availability
Assess risks to integrity
Assess risks to confidentiality
Coordinate risk assessment planning
Coordinate risk assessment designing
Coordinate risk assessment testing
Assist in providing data accessibility
Assist in providing data retrievability
Assist in providing data security
Assist in providing data protection
Support use of existing methods
Support use of existing tools
Create documentation of methods
Update documentation of methods
Create documentation of tools
Update documentation of tools
Monitor critical activities
Review application logs
Ensure appropriate controls onboarded
Implement appropriate controls
Manage internal audits
Manage external audits
Manage audit issue remediation
Complete regular assessments
Complete recurring assessments
Respond to audit requirements
Respond to regulatory requirements
Provide evidence of compliance
Ensure infrastructure is compliant
Ensure infrastructure has up-to-date patches
Plan application upgrades
Plan application migrations
Align to compliant platforms
Keep DR Test Plan up-to-date
Manage regular DR Tests
Manage application capacity forecasting
Manage application capacity monitoring
Manage IT Security incidents
How You'll Work.
Team & Collaboration
Consulting with ITAO community; Consulting with CSO organization; Consulting with infrastructure teams
Communication Scope
Communicate risks; Communicate issues; Educate audience
Process & Methodology
SDLC
Full Job Description
## _**Job Description:**_ **Job Title-** **ITAO, AVP** **Location- Bangalore, India** **Role Description** * The successful candidate is expected to have at least 10-15 years’ experience in IT, preferably with Asset Management Business Applications and Processes. * The IT Application Owner (ITAO) has sound IT risk management skills. They follow one of several possible service delivery approaches, acknowledge interference with the IT application’s life cycle and assist with incorporating the adopted approach into best practice. * The focus is on applications moving onto cloud. Here you support tracking of the application control status and help application dev-teams with practical advice. * Make sure that all steps in Identity & Access Management cycle (on-boarding, recertification, off-boarding) are compliant against DB Policies and application is on-boarded to central tools. * The ITAO is aware of the gap in the current infrastructure solutions and where industry innovations are along the maturity lifecycle. They work with application stakeholders to improve the infrastructure, ensuring compliance with the technical roadmap. * The ITAO has a sound knowledge of development methodologies and the IT policies necessary to perform effectively in the organisation, aligned to the bank’s appetite for risk. * The ITAO acts to improve safety and security of the application, compliance with regulations, policies and standards, enhance operational readiness, and ease maintenance of the environment for delivering change into production. * The ITAO supports the bank’s audit function in the remediation of audit points and self-identified issues in order to reduce risk. * The ITAO is responsible for producing and maintaining accurate documentation on compliance with methodologies, IT policies and IT security requirements. * ITAOs will also be responsible for Application Decommissioning * ITAOs will be driving activity that helps incidents reduction against an application * Support
Applying for this ITAO, AVP role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Workday
- Workday has a multi-step form — save your progress after every section.
- "Apply With LinkedIn" can fail or lose data; manual entry is more reliable.
- Watch for the "Submit for Review" final step — hitting "Save" alone does not submit.
- Job requisition numbers are useful when following up with HR by email.
ANONYMOUS · UNFILTERED
What do employees actually say about DWS?
Real rants from real employees. Read before you apply.