30 Ciso jobs in Bahrain
INFORMATION SECURITY OFFICER
Posted 18 days ago
Job Viewed
Job Description
This role will be responsible for handling the implementation and maintenance of GFG and subsidiaries Information Security Management System in accordance with local laws, regulations and best practices.
KEY ACCOUNTABILITIES- Support Head Information Security in defining and implementation of information security governance documentation including policies, manual, SOPs and guidelines.
- Support Head Information Security in conducting Risk-based Assessment of Information Security policies and operating procedures owned by other departments within the group against industry-recognized security standards and best practices, ensuring adequate preventive, detective and corrective controls to provide data integrity, confidentiality and availability.
- Support Head Information Security in conducting analysis of security requirements and controls to identify gaps and provides recommendations of industry best practices, trends, and technology products.
- Support Head Information Security in conducting on annual basis and continuous basis Information Security Risk Assessment, identify business and technology risks, internal controls which mitigate risks, and related opportunities for internal control improvement.
- Develop and maintain information register and ensure that the information is classified by data owners and protected in accordance with the information classification framework.
- Conducting awareness sessions to the new and existing employees on information security policies and global trends as per the awareness program.
- Support in defining information security requirements in information systems, projects and third parties in cooperation with the delivery departments i.e. ICT, and FM.
- Support in conducting incident investigation for information security incidents and ensuring that the necessary actions and disciplinary actions are taken.
- Support in defining information security requirements to be included in ICT Disaster recovery plans to ensure continuity of information security controls during disasters.
- Support in conducting internal and external audits to ensure that BAC Information Security Management system complies with best practices and local regulations.
- Improve the maturity of the information security management system through suggesting and supporting in the implementation of technologies such as DLP solutions, GRC solutions etc.
Bachelor’s degree in information technology.
Certified Information Security Auditor (CISA) (Preferred)
MINIMUM EXPERIENCE3+ years of Information Security experience
JOB SPECIFIC SKILLS- Proven ability to establish and manage “dotted-line” business relationships to deliver agreed outcomes/deliverables.
- Ability to work effectively with all levels of personnel across the organization.
- Proven ability to communicate clearly and appropriately based on audience with excellent facilitation and customer service skills.
- Excellent written and verbal communications, critical thinking skills, effective interpersonal skills, strong formal presentation abilities.
- Ability to be flexible and work effectively with ambiguity and change.
Cyber Security Specialist
Posted 18 days ago
Job Viewed
Job Description
Zain is the pioneer of mobile telecommunications in the Middle East. We began life in 1983 in Kuwait as the region’s first mobile operator, and since the initiation of our expansion strategy in 2003, we have expanded rapidly. Read more here: Zain Overview
About the RoleThe Cyber Security Specialist is responsible for planning, executing, and finalizing projects according to strict deadlines and within budget. This includes acquiring resources and coordinating the efforts of team members and third-party contractors or consultants in order to deliver projects according to plan.
Main Responsibilities and Duties- Manage and improve an integrated cyber security solution that helps to protect the core infrastructure, the network, and the applications that run within the network.
- Conduct testing of network design.
- Provide training and technical support for users with varying levels of IP and cyber security knowledge and competence.
- Participate in the discovery of vulnerabilities and risks in networks, software systems, and data.
- Safeguard information system assets by identifying and solving potential and actual security concerns.
- Participate in procurement, installation, testing, and developing IT and security projects.
- Establish and maintain the enterprise IT security policy.
- Develop operations work plan to support all operations activities.
- Evaluate infrastructure and security proposals and recommend the required solutions that meet the IP and security requirements.
- Plan and manage the IP network growth and resiliency.
- Implement and manage CDN infrastructure.
- Setup peering with other entities to reduce latency and improve traffic flow.
- Support the organization’s Enterprise requirements with solutions, testing, and operations.
- Perform any other related duties as assigned or needed.
- Possess solid network and security technical experience. Maintains technical expertise in all areas of network and computer hardware, software, routing, and switching. CCIE Routing & Switching is preferable.
- Possess strong communication skills.
- Effectively communicate by listening actively, sharing relevant information with others, and interacting with others to establish fair and effective relationships.
- Identify customer’s requirements correctly, exceed customer expectations, and act proactively to ensure customer satisfaction.
- Ability to develop cooperation and teamwork while working toward solutions that generally benefit all parties.
- Capacity for recognizing one's feelings and those of others for motivating ourselves and managing emotions well in ourselves and in our relationships.
Bachelor's Degree in Computer Science, Cyber Security, or any relevant field.
3 to 5 years’ experience in a similar role, preferably in the Telecom field.
About Application ProcessIf you meet the criteria and you are enthusiastic about the role, we would welcome your application. To complete the application you would need the following document(s):
#J-18808-LjbffrCIO (Chief Information Officer) – Bahrain - Ref 25051
Posted today
Job Viewed
Job Description
Join to apply for the CIO (Chief Information Officer) – Bahrain - Ref 25051 role at Howard Lock Consulting Ltd
Join to apply for the CIO (Chief Information Officer) – Bahrain - Ref 25051 role at Howard Lock Consulting Ltd
Get AI-powered advice on this job and more exclusive features.
Job Title: CIO role (Chief Information Officer)
Sector: Banking
Role Type: Permanent role
Job Ref: 25051
Job Objective:
The role holder has overall responsibility for the investments and strategy of the corporate investments, Real Estate investments and Private Equity and Asset Management functions. The CIO is responsible for securing and managing the investment pipeline, managing the investment programme for each function and for playing an integral role in fund-raising.
Job Requirements: (Minimum level of education, professional qualifications, background and years of experience required to do the job).
- A bachelor’s degree or equivalent in business studies or marketing. RERA certification is desirable.
- Proven track record in property sales and marketing in a similar role for at least 8+ years.
- Excellent interpersonal, communication, engaging presentation, influencing, and problem-solving skills to deal with people from diverse backgrounds with diplomacy and tact.
- Excellent time management, self-confidence, resilience, flexibility, and ability to thrive under pressure in a fast-paced target-driven environment with tight deadlines.
- Strong commercial acumen, excellent market sense, strong results orientation, and solid closing skills.
- Experience of managing budgets/cost control, planning, prioritizing and organizing work to meet targets.
- High standards of personal appearance and grooming at all times, projecting a positive and motivated attitude.
- Strong work ethics and integrity with an entrepreneurial mind set.
- Proficiency in MS Office.
Responsibilities:
Fund raising:
- Building on and leveraging off existing relationship (both those of the incumbent and of the bank) and developing new relationships to raise funds and to secure placements.
- Playing a key role and being instrumental in providing leads to various investors in order to support fund-raising efforts.
- Overseeing and assisting the Placement & Relationship Management team to develop and to market funds’ mandates through various marketing efforts in order to achieve a first and final closing of funds.
Executive leadership and expertise in investments:
- Serving as the most senior investment executive in the bank and acting as an expert in all aspects of investment management and portfolio management for each fund, from deal flow to origination.
- Serving as a member of the Investment Committee and providing sound and fully supported recommendations on advice on various investment mandates.
Compliance, Governance, Risk and Internal Audit:
- Interacting with regulators to ensure that all funds meet licensing, regulatory, KYC/AML and reporting requirements across any relevant jurisdictions.
- Actively promoting the development of investment and risk management policies.
- Ensuring that all funds are within agreed risk tolerance perimeters and constraints.
- Closing all Internal Audit observations within agreed timelines.
Project deal flow and investment management:
- Developing, evaluating and reviewing deal flows and project pipelines against the approved investment strategy, budgets, risk perimeters and other investment criteria on an on-going basis in order to ensure optimal and timely investments and performance.
- Performing and delivering financial, commercial, risk, tax and risk due diligence on projects in order to recommend the appropriate courses of action.
- Assessing and presenting performance of the funds’ investments and measures as indexed against market peers and benchmarks to deliver strong performance.
- Providing timely analyses and reports to shareholders.
Performance Management (employee level):
- Overseeing and taking direct ownership of career growth for all employees in Investments and ensuring that their skills are continually upgraded by means of formal training, coaching and workplace assignments in order that both they are equipped to serve their clients and that their skills remain in line with best practice.
- Transferring knowledge to Bahraini employees in order to enable their professional development.
- Implementing and taking personal responsibility for a competitive, transparent and equitable approach to reward that combines fixed pay and variable pay so that employees see a clear line-of-sight between their individual performance and reward and that robust performance appraisals form an integral part of the process.
- Seniority level Executive
- Employment type Full-time
- Job function Management
- Industries Banking and Financial Services
Referrals increase your chances of interviewing at Howard Lock Consulting Ltd by 2x
Sign in to set job alerts for “Chief Information Officer” roles.We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrCIO (Chief Information Officer) – Bahrain - Ref 25051
Posted today
Job Viewed
Job Description
Job Title: CIO role (Chief Information Officer)
Sector: Banking
Salary: BD Competitive
Role Type: Permanent role
Location: Bahrain
Job Ref: 25051
Job Objective:
The role holder has overall responsibility for the investments and strategy of the corporate investments, Real Estate investments and Private Equity and Asset Management functions. The CIO is responsible for securing and managing the investment pipeline, managing the investment programme for each function and for playing an integral role in fund-raising.
Job Requirements: (Minimum level of education, professional qualifications, background and years of experience required to do the job).
- A bachelor’s degree or equivalent in business studies or marketing. RERA certification is desirable.
- Proven track record in property sales and marketing in a similar role for at least 8+ years.
- Excellent interpersonal, communication, engaging presentation, influencing, and problem-solving skills to deal with people from diverse backgrounds with diplomacy and tact.
- Excellent time management, self-confidence, resilience, flexibility, and ability to thrive under pressure in a fast-paced target-driven environment with tight deadlines.
- Strong commercial acumen, excellent market sense, strong results orientation, and solid closing skills.
- Experience of managing budgets/cost control, planning, prioritizing and organizing work to meet targets.
- High standards of personal appearance and grooming at all times, projecting a positive and motivated attitude.
- Strong work ethics and integrity with an entrepreneurial mind set.
- Proficiency in MS Office.
Responsibilities:
Fund raising:
- Building on and leveraging off existing relationship (both those of the incumbent and of the bank) and developing new relationships to raise funds and to secure placements.
- Playing a key role and being instrumental in providing leads to various investors in order to support fund-raising efforts.
- Overseeing and assisting the Placement & Relationship Management team to develop and to market funds’ mandates through various marketing efforts in order to achieve a first and final closing of funds.
Executive leadership and expertise in investments:
- Serving as the most senior investment executive in the bank and acting as an expert in all aspects of investment management and portfolio management for each fund, from deal flow to origination.
- Serving as a member of the Investment Committee and providing sound and fully supported recommendations on advice on various investment mandates.
Compliance, Governance, Risk and Internal Audit:
- Interacting with regulators to ensure that all funds meet licensing, regulatory, KYC/AML and reporting requirements across any relevant jurisdictions.
- Actively promoting the development of investment and risk management policies.
- Ensuring that all funds are within agreed risk tolerance perimeters and constraints.
- Closing all Internal Audit observations within agreed timelines.
Project deal flow and investment management:
- Developing, evaluating and reviewing deal flows and project pipelines against the approved investment strategy, budgets, risk perimeters and other investment criteria on an on-going basis in order to ensure optimal and timely investments and performance.
- Performing and delivering financial, commercial, risk, tax and risk due diligence on projects in order to recommend the appropriate courses of action.
- Assessing and presenting performance of the funds’ investments and measures as indexed against market peers and benchmarks to deliver strong performance.
- Providing timely analyses and reports to shareholders.
Performance Management (employee level):
- Overseeing and taking direct ownership of career growth for all employees in Investments and ensuring that their skills are continually upgraded by means of formal training, coaching and workplace assignments in order that both they are equipped to serve their clients and that their skills remain in line with best practice.
- Transferring knowledge to Bahraini employees in order to enable their professional development.
- Implementing and taking personal responsibility for a competitive, transparent and equitable approach to reward that combines fixed pay and variable pay so that employees see a clear line-of-sight between their individual performance and reward and that robust performance appraisals form an integral part of the process.
Security Risk Management Specialist
Posted 18 days ago
Job Viewed
Job Description
In security risk management we're looking to harness the power of industry best practice combined with driving new innovation on how we do security risk assessments and modelling. Our security risk management team is the primary owner of the strategy and practices of how we identify, track and reduce our security risk across everything we do.
To support this we need to use industry best practices paired with emerging threat information to promote risk identification, quantification, impact analysis, and modelling to ultimately drive decision making. In this role, you will help establish and execute a broad strategic vision for the security risk program at Canonical. You will not only work within the team but also cross-functionally with various teams across the organisation. The team contributes ideas and requirements for Canonical product security, improving the resilience and robustness of all Ubuntu customers and users subject to cyber attacks. Additionally, the team collaborates with our Organisational Learning and Development team to develop playbooks and facilitate security training across Canonical.
The security risk management team's mission is not only to secure Canonical, but also to contribute to the security of the wider open source ecosystem. They might share knowledge through public presentations and industry events, and share threat intelligence with the wider community or represent Canonical in sector-specific governance bodies.
What you will do in this role:
- Define Canonical's security risk management standards and playbooks
- Analyse and improve Canonical's security risk practices
- Evaluate, select and implement new security requirements, tools and practices
- Grow the presence and thought leadership of Canonical security risk management practice
- Develop Canonical security risk learning and development materials
- Work with Security leadership to present information and influence change
- Participate in developing key risk indicators, provide inputs to the development of key control indicators, and key performance indicators for various programs
- Apply statistical models to risk frameworks (such as FAIR, sensitivity analysis, and others)
- Participate in risk management, decision-making, and collaborative discussions
- Lead quantified risk assessments and understand the value of qualitative data for improvements to quality and engineering processes
- Interpret internal or external cyber security risk analyses in business terms and recommend a responsible course of action
- Develop templates and materials to help with self-service risk management actions
- Monitor and identify opportunities to improve the effectiveness of risk management processes
- Launch campaigns to perform security assessments and help mitigate security risks across the company
- Build evaluation methods and performance indicators to measure efficiency of security functions and capabilities.
What we are looking for:
- An exceptional academic track record
- Undergraduate degree in Computer Science or STEM, or a compelling narrative about your alternative path
- Drive and a track record of going above-and-beyond expectations
- Deep personal motivation to be at the forefront of technology security
- Leadership and management ability
- Excellent business English writing and presentation skills
- Problem-solver with excellent communication skills, a deep technical understanding of security assessments and risk management
- Expertise in threat modelling and risk management frameworks
- Broad knowledge of how to operationalize the management of security risk
- Experience in Secure Development Lifecycle and Security by Design methodology
What we offer you:
We consider geographical location, experience, and performance in shaping compensation worldwide. We revisit compensation annually (and more often for graduates and associates) to ensure we recognise outstanding performance. In addition to base pay, we offer a performance-driven annual bonus. We provide all team members with additional benefits, which reflect our values and ideals. We balance our programs to meet local needs and ensure fairness globally.
- Distributed work environment with twice-yearly team sprints in person
- Personal learning and development budget of USD 2,000 per year
- Annual compensation review
- Recognition rewards
- Annual holiday leave
- Maternity and paternity leave
- Employee Assistance Programme
- Opportunity to travel to new locations to meet colleagues
- Priority Pass, and travel upgrades for long haul company events
About Canonical:
Canonical is a pioneering tech firm at the forefront of the global move to open source. As the company that publishes Ubuntu, one of the most important open source projects and the platform for AI, IoT and the cloud, we are changing the world on a daily basis. We recruit on a global basis and set a very high standard for people joining the company. We expect excellence - in order to succeed, we need to be the best at what we do. Canonical has been a remote-first company since its inception in 2004. Working here is a step into the future, and will challenge you to think differently, work smarter, learn new skills, and raise your game.
Canonical is an equal opportunity employer. We are proud to foster a workplace free from discrimination. Diversity of experience, perspectives, and background create a better work environment and better products. Whatever your identity, we will give your application fair consideration.
#J-18808-LjbffrCrisis Management & Security Officer
Posted 4 days ago
Job Viewed
Job Description
Yokogawa, award winner for ‘Best Asset Monitoring Technology’ and ‘Best Digital Twin Technology’ at the HP Awards, is a leading provider of industrial automation, test and measurement, information systems and industrial services in several industries.
Our aim is to shape a better future for our planet through supporting the energy transition, (bio)technology, artificial intelligence, industrial cybersecurity, etc. We are committed to the United Nations sustainable development goals by utilizing our ability to measure and connect.
About The Team
Our 18,000 employees work in over 60 countries with one corporate mission, to "co-innovate tomorrow". We are looking for dynamic colleagues who share our passion for technology and care for our planet. In return, we offer you great career opportunities to grow yourself in a truly global culture where respect, value creation, collaboration, integrity, and gratitude are highly valued and exhibited in everything we do.
Job Responsibility
- Establish & maintain Business Continuity Management System and its requirements, and maintain Business Continuity Plan for Security & Safety purposes.
- Continuously assess the news and the region stability, and physically assess certain regions for security threats, as & when required (ex. Algeria, Nigeria & Iraq).
- Support Crisis Management during pandemics and infectious diseases.
- Conduct trainings (ex. Vismo, Business Trips, HEAT, …etc.).
- Maintain the Crisis Management portal, review PCAS & projects security plans for level 3 & 4, Subsistence Allowance Claims review & approvals and manage travel requests.
- Update & review Crisis Management QMS documents, and prepare & maintain Crisis Management records and contracts (ex. Vismo Privacy Statement, RKM & DTS, Annual Management Reviews, …etc.).
- Conduct regular tests (Satellite phones, Vismo safety checks, AWS regional safety checks), sharing Crisis Management related announcements and being on call (24 hrs) for all emergencies, Vismo users, WhatsApp users and YMA Crisis Management phone callers.
- Overall system continuous improvements & developments.
Job Qualification & Experience
- A Bachelor Degree with at least 5 years’ experience.
- Good report writing in English & Arabic.
- Preferably has a military, security or risk assessment background.
- Business continuity management system implementation & maintenance.
Job Skills
- Good English and Arabic language skills with strong editorial capability.
- Strong Communication and Leadership Skills.
- Project Management and Organizational Skills to handle multiple tasks & assignments.
Job Competencies
- Self-motivated with minimal Supervision.
- Knowledgeable & adaptable on the key responsibilities and functions listed above.
- A team player with pleasant people Skills.
- Preferable to have military/government connections.
- Bilingual ( Arabic & English ) is mandatory.
Yokogawa is an Equal Opportunity Employer. Yokogawa wants a diverse, equitable and inclusive culture. We will actively recruit, develop, and promote people from a variety of backgrounds who differ in terms of experience, knowledge, thinking styles, perspective, cultural background, and socioeconomic status. We will not discriminate based on race, skin color, age, sex, gender identity and expression, sexual orientation, religion, belief, political opinion, nationality, ethnicity, place of origin, disability, family relations or any other circumstances. Yokogawa values differences and enables everyone to belong, contribute, succeed, and demonstrate their full potential. #J-18808-Ljbffr
Crisis Management & Security Officer
Posted 11 days ago
Job Viewed
Job Description
Join to apply for the Crisis Management & Security Officer role at Yokogawa
Join to apply for the Crisis Management & Security Officer role at Yokogawa
Get AI-powered advice on this job and more exclusive features.
Not just a job, but a career
Yokogawa, award winner for ‘Best Asset Monitoring Technology’ and ‘Best Digital Twin Technology’ at the HP Awards, is a leading provider of industrial automation, test and measurement, information systems and industrial services in several industries.
Not just a job, but a career
Yokogawa, award winner for ‘Best Asset Monitoring Technology’ and ‘Best Digital Twin Technology’ at the HP Awards, is a leading provider of industrial automation, test and measurement, information systems and industrial services in several industries.
Our aim is to shape a better future for our planet through supporting the energy transition, (bio)technology, artificial intelligence, industrial cybersecurity, etc. We are committed to the United Nations sustainable development goals by utilizing our ability to measure and connect.
About The Team
Our 18,000 employees work in over 60 countries with one corporate mission, to "co-innovate tomorrow". We are looking for dynamic colleagues who share our passion for technology and care for our planet. In return, we offer you great career opportunities to grow yourself in a truly global culture where respect, value creation, collaboration, integrity, and gratitude are highly valued and exhibited in everything we do.
Job Responsibility
1- Establish & maintain Business Continuity Management System and its requirements, and maintain Business Continuity Plan for Security & Safety purposes.
2- Continuously assess the news and the region stability, and physically assess certain regions for security threats, as & when required (ex. Algeria, Nigeria & Iraq).
3- Support Crisis Management during pandemics and infectious diseases.
4- Conduct trainings (ex. Vismo, Business Trips, HEAT, …etc.).
5- Maintain the Crisis Management portal, review PCAS & projects security plans for level 3 & 4, Subsistence Allowance Claims review & approvals and manage travel requests.
6- Update & review Crisis Managements QMS documents, and prepare & maintain Crisis Management records and contracts (ex. Vismo Privacy Statement, RKM & DTS, Annual Management Reviews, …etc.).
7- Conduct regular tests (Satellite phones, Vismo safety checks, AWS regional safety checks), sharing Crisis Management related announcements and being on call (24 hrs) for all emergencies, Vismo users, WhatsApp users and YMA Crisis Management phone callers.
8- Overall system continuous improvements & developments.
Job Qualification & Experience
1-A Bachelor Degree with at least 5 years’ experience.
2-Good report writing in English & Arabic.
3-Preferably has a military, security or risk assessment background.
4-Business continuity management system implementation & maintenance.
Job Skills
1- Good English and Arabic language skills with strong editorial capability.
2- Strong Communication and Leadership Skills.
3- Project Management and Organizational Skills to handle multiple tasks & assignments.
Job Competencies
1- Self-motivated with minimal Supervision.
2- Knowledgeable & adaptable on the key responsibilities and functions listed above.
3- A team player with pleasant people Skills.
4- Preferable to have military/government connections
5- Bilingual ( Arabic & English ) is mandatory
Yokogawa is an Equal Opportunity Employer. Yokogawa wants a diverse, equitable and inclusive culture. We will actively recruit, develop, and promote people from a variety of backgrounds who differ in terms of experience, knowledge, thinking styles, perspective, cultural background, and socioeconomic status. We will not discriminate based on race, skin color, age, sex, gender identity and expression, sexual orientation, religion, belief, political opinion, nationality, ethnicity, place of origin, disability, family relations or any other circumstances. Yokogawa values differences and enables everyone to belong, contribute, succeed, and demonstrate their full potential.
Are you being referred to one of our roles? If so, ask your connection at Yokogawa
about our Employee Referral process!
- Seniority level Mid-Senior level
- Employment type Full-time
- Job function Other, Information Technology, and Management
- Industries Automation Machinery Manufacturing
Referrals increase your chances of interviewing at Yokogawa by 2x
Get notified about new Security Officer jobs in Muharraq, Muharraq Governorate, Bahrain .
Budaiya, Northern Governorate, Bahrain 3 hours ago
Manama, Capital Governorate, Bahrain 2 weeks ago
Application Security - Identity and Access ManagementManama, Capital Governorate, Bahrain 2 weeks ago
Manama, Capital Governorate, Bahrain 2 months ago
Manama, Capital Governorate, Bahrain 3 months ago
We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrBe The First To Know
About the latest Ciso Jobs in Bahrain !
Senior Cyber Security Engineer
Posted 10 days ago
Job Viewed
Job Description
Position Overview:
We are seeking a talented and experienced Cybersecurity Engineer to design, implement, and manage robust security solutions across our enterprise infrastructure. The ideal candidate will possess a strong understanding of various cybersecurity domains, including network security, cloud security, endpoint protection, identity and access management, and incident response.
Key Responsibilities:
- Security Architecture & Design: Participate in the design, implementation, and review of security architectures for new and existing systems, applications, and cloud infrastructure. Develop and maintain security standards, policies, and procedures in alignment with industry frameworks (NIST, ISO 27001). Evaluate and recommend new security technologies and solutions to enhance our security posture.
- Vulnerability Management & Penetration Testing: Conduct regular vulnerability assessments and penetration tests on networks, applications, and systems. Analyze vulnerability scan results, prioritize risks, and collaborate with IT teams to implement effective remediation strategies.
- Incident Response & Threat Intelligence: Serve as a key member of the incident response team, participating in the detection, analysis, containment, eradication, and recovery from security incidents. Utilize SIEM tools to monitor security events, identify anomalies, and investigate potential threats, with experience in Microsoft and Cisco Solutions. Stay current with the latest threat intelligence, attack vectors, and security vulnerabilities, disseminating relevant information to the team.
- Security Operations & Tooling: Administer and maintain various security tools, including Fortinet FortiGate firewalls, Cisco Meraki security appliances, intrusion detection/prevention systems (IDS/IPS), Microsoft Defender for Endpoint and other EDR solutions, and DLP solutions. Configure and manage security controls for cloud environments, particularly Microsoft Azure. Develop and implement security automation scripts with PowerShell to streamline security operations and enhance efficiency.
- Data Governance & Compliance: Implement and manage data governance policies using Microsoft Purview to ensure data classification, retention, and protection across our digital estate. Support internal and external security audits by providing necessary documentation, evidence, and explanations of security controls. Ensure all security measures comply with relevant data protection regulations and industry standards.
- Identity & Access Management: Assist in the implementation and management of IAM solutions, including SSO, MFA, and PAM.
- Security Awareness: Contribute to the development and delivery of security awareness training programs for employees.
Required Skills & Qualifications:
- Bachelor’s degree in computer science, Cybersecurity or Information Technology.
- 8+ years of hands-on experience in a Cybersecurity Engineer, Security Analyst, or similar role.
- Strong technical proficiency across multiple cybersecurity domains, including: FortiGate firewalls, Cisco Meraki, Microsoft Defender for Endpoint and other EDR solutions.
- Cloud security with a focus on Azure and AWS
- Experience with Microsoft Purview for data governance and compliance.
- Security Information and Event Management (SIEM) solutions (Auvik, QRadar, Sentinel).
- Experience with PowerShell and PowerBI for automation and analysis.
- Solid understanding of Windows, Linux, macOS and their security configurations.
- Expertise with cybersecurity frameworks (ISO 27001 and NIST)
- Relevant Cybersecurity certifications
- Familiarity with DevOps security practices and Secure Software Development Life Cycle (SSDLC).
Information Security Specialist
Posted 15 days ago
Job Viewed
Job Description
The Information Security Specialist supports the Head of Information Security and Business Continuity in safeguarding the bank’s critical information assets and ensuring the resilience of its operations. This role is responsible for implementing and maintaining comprehensive information security measures, business continuity plans, and disaster recovery strategies that protect the bank’s systems, data, and services from cybersecurity threats and operational disruptions.
The Specialist will contribute to the bank's proactive risk management approach by identifying vulnerabilities, responding to incidents, ensuring regulatory compliance, and leading initiatives to enhance business continuity. In addition, this role involves coordinating BCP and DR activities, conducting regular testing, and ensuring the organization’s preparedness for crises or emergencies.
Reporting directly to the Head of Information Security and Business Continuity, the Specialist will collaborate closely with IT and other departments and business units to integrate security and business continuity frameworks into the bank’s operational processes, supporting a secure and resilient environment that enables the bank to achieve its strategic objectives.
Responsibilities of the role:
Information Security:
- Develop, implement, and maintain information security policies, procedures, and standards in alignment with PCI-DSS and regulatory requirements.
- Monitor, analyze, and respond to security incidents, vulnerabilities, and threats across the bank’s IT systems and networks
- Conduct periodic risk assessments and gap analyses to identify security weaknesses and develop mitigation strategies
- Coordinate internal and external audits related to information security; ensure timely closure of audit findings
- Provide security awareness training to staff and promote a culture of information security
- Support secure configuration and change management processes across IT assets and infrastructure
- Work with IT and other departments to ensure security is embedded into system design and operational processes
- Stay up to date with current cyber threats and trends, and recommend appropriate risk mitigation measures
Business Continuity:
- Develop and maintain the bank’s business continuity management frameworks in line with the bank’s and regulatory guidelines
- Conduct business impact analyses (BIAs) and risk assessments across business units to identify critical functions and recovery priorities
- Lead the development, testing, and continuous improvement of BCP and DR plans to ensure organizational resilience.
- Coordinate with IT, facilities, and business teams to ensure recovery strategies are effective and practical.
- Conduct regular BCP/DR drills and exercises, and report findings with actionable recommendations.
- Liaise with regulatory bodies, auditors, and stakeholders to ensure compliance and readiness.
- Maintain documentation and evidence of BCM program activities and test results.
Areas of Knowledge, Qualification and Experience
- Atleast 5 years of experience working within a Banking Environment
- Bachelors Degree in Computer Science / Cyber Security background.
- Relevant certifications from ISC2, ISACA, SANS are highly preferred
- In-depth understanding of global information security standards (e.g., ISO 27001, NIST Cybersecurity Framework, CIS Controls) and regulatory requirements (e.g., CBB, PCI-DSS). Ability to implement and manage these frameworks within a banking context.
Senior Information Security Specialist
Posted 18 days ago
Job Viewed
Job Description
Roles & Responsibilities:
- Monitoring the system and ensuring the system is available 24/7.
- Maintain best practices and security standards.
- Design and implement security solutions that protect the organization's On-prem / cloud infrastructure, applications, and data from security threats.
- Conduct regular security assessments of the organization's On-prem / cloud environment to identify potential security vulnerabilities and recommend appropriate remediation measures.
- Configure and maintain various security tools such as firewalls, intrusion detection and prevention systems, and security information and event management (SIEM) systems to ensure optimal protection against security threats.
- Regularly monitor the syslogs and take corrective actions if any security breaches or vulnerabilities are found in the logs.
- Run VAPT tools to mitigate security vulnerabilities.
- Manage access controls for cloud resources, including user authentication and authorization, identity and access management (IAM), and network security groups (NSGs).
- Monitor the On-prem / cloud environment for security incidents and respond promptly to any security breaches or threats.
- Create and maintain security policies and procedures for the organization's On-prem / cloud environment, including disaster recovery plans, incident response plans, and security awareness training for employees.
- Keep up-to-date with the latest security trends and best practices to ensure that the organization's On-prem / cloud environment remains secure against evolving security threats.
- Review and apply the WAF policies to protect against DDoS and application-related attacks.
- Test the WAF rules and ensure they block malicious traffic.
Qualifications & Technical Skills:
- Minimum of 10 years of experience.
- B.Sc. in Computer Engineering or Equivalent.
• Security Incident Handling & Response
• Security Management Frameworks
• Firewall/IDS/IPS (Palo Alto, Fortinet, Cisco, etc.)
• Vulnerability Management (VAPT)
• SIEM Management
• Data Management Protection
• Advanced Malware Prevention
• Identity & Access Management
• AWS: IAM, KMS, VPC, Security Groups, Network ACLs, VPC endpoints, CloudWatch, VPC Flow Logs
• Logging and Monitoring, SIEM, Syslog
• CloudFront, WAF and Certificate Management
• Technical Certifications like CEH, Security+, CISSP, etc.
#J-18808-Ljbffr