About the job
CONTEXT
Financial organizations face a surge in sophisticated cyberattacks, revealing a deep understanding that hackers possess about the finance sector. Cybercriminal groups have combined their technical prowess with an extensive grasp of business processes and applications within finance. To bolster their defenses against increasingly skilled adversaries and comply with stringent regulations, financial institutions recognize the need to ensure comprehensive security across their most critical processes by developing new technological and functional measures.
INTERNSHIP OBJECTIVES
Wavestone aims to refine its understanding of the most critical business chains (processes and underlying IT systems) in the finance sector and develop relevant security measures tailored to the unique security challenges they face. The processes to be observed include those from retail banks, private banks, investment banks, asset managers, systemic financial infrastructures, central banks, etc.
The internship/apprenticeship will involve selecting and analyzing these critical chains for some or all of these actors. This analysis should address the following questions:
For each type of actor, what are the top three most vital business chains?
- Identify and study their dynamics
- Understand the specific security stakes
- Evaluate the level of exposure in light of current threats
- Target their structural weaknesses
What IT components and specialized software support these chains?
- Model the IT systems incorporating the view of business software solutions
- Identify their potential vulnerabilities
What interdependencies exist among these chains?
- Understand how the compromise of one can impact another
- What relevant measures can be recommended for these business chains?
TASKS TO BE PERFORMED
Under the guidance of a consultant and the direction of a senior manager, the intern will be tasked with performing part or all of the following activities:
- Study and model critical business processes
- Assess the security level of specialized IT products and infrastructures
- Conduct risk analysis of various chains and identify weaknesses
