5 Security Analyst jobs in Bahrain
ANALYST – AIRPORT SECURITY SYSTEMS
Posted 11 days ago
Job Viewed
Job Description
Company : Gulf Air Group
Division : Information Technology
Location : (Location)
Department : Information Technology
Closing Date : 18-Feb-2025
MAIN OBJECTIVETo architect, design, plan, implement and support all Safety and Security systems, as a technical expert in these areas, to provide the company with the necessary Safety and Security services to achieve its strategic objectives.
MAIN DUTIES- Monitor, maintain and support services, within specialism area, to ensure the security, integrity and access to these critical information assets by ICT's internal and external customers.
Monitor, manage and maintain solutions to ensure maximum uptime.
Perform daily systems monitoring, including verifying the integrity and availability of all solution resources, capacity management, reviewing system and application logs, and verifying completion of scheduled jobs.
Manage solution enhancements to improve business performance.
Perform systems maintenance and management, including solution administration, upgrades, audits and user account management.
Develop and improve efficient and reliable deployment and maintenance strategies.
Draft and maintain solution architecture, configuration and operating procedure documentation on a continuous basis.
Advise on solution security, backups, and disaster recovery needs.
Ensure that all requests for support are dealt with according to set standards and procedures. - Perform and conduct Enterprise ICT activities as per service level agreements to ensure ICT's internal and external customers are provided with the required uninterrupted services to achieve their objectives.
Develop implementation plans for complex requests for change. Lead the assessment, analysis, development, documentation and implementation of changes based on requests for change.
Ensure that incidents are handled according to agreed procedures. Analyze causes of incidents, and inform service owners in order to minimize probability of recurrence to contribute to service improvement.
Ensure that appropriate action is taken to anticipate, investigate and resolve problems in systems and services. Coordinate the implementation of agreed remedies and preventative measures.
Monitor and report on supplier performance, customer satisfaction, and market intelligence. Engage proactively and collaboratively with suppliers to resolve incidents, problems, or unsatisfactory performance.
Analyze service availability, reliability, maintainability and serviceability. Ensure that services meet and continue to meet all of their agreed performance targets and service levels.
Document and maintain IT assets, inclusive of software, hardware and licenses, within specialism area, and act to highlight and resolve potential instances of unauthorized assets such as unlicensed copies of software.
Be available for off-hours planned service windows, as well as other off-hours maintenance work as and when required.
Provide 24x7 on call day-to-day support on specialism area solutions and services. - Perform and conduct DevOps activities to deliver, evolve and improve services at a high velocity to better meet the demand of ICT's internal and external customers.
Implement, configure and maintain tools, including automation, to identify, track, log and maintain accurate, complete and current information on service configurations, within specialism area.
Design, implement and maintain system, within specialism area, integrations with internal and external systems to ensure that they meet functional requirements, interface specifications and ICT's security and governance standards and policies.
Collaborate with technical teams to develop and agree system integration plans. Assist in database support activities.
Use system management tools to collect and report on load and performance statistics and to automate the provisioning, testing and deployment of new and changed system components.
Design, code, verify, test, document, amend and refactor complex programs, scripts or integrations, within specialism area.
Create test cases using in-depth technical analysis of both functional and non-functional specifications such as reliability, efficiency, usability, maintainability and portability. Produce test scripts and materials to test new and amended software or services. - Design, implement and maintain digital transformation initiatives and associated architectures, as assigned by Manager, to meet the demand of ICT's internal and external customers to ensure they achieve their objectives and improve business value.
Technical solution architecture design, planning, implementation and the highest level of performance tuning.
Design components and modules using appropriate modelling techniques and recommend designs that take into account target environment, existing systems and performance and security requirements.
Adopt appropriate systems design methods, tools and techniques, as promulgated by section Director, in the translation of planned architecture into working solutions.
Produce specifications of cloud-based or on premises components, tiers and interfaces for translation into detailed designs of services and products.
Monitor system performance and implement performance tuning.
Determine opportunities for improvement of the current solutions and assess future enhancements.
Investigate new and emerging technologies and where possible automate manual tasks. - Plan and co-ordinate activities to manage and implement the full project management lifecycle for complex projects from initiation to final operational stage, including the transition into “business-as-usual”, to ensure delivery within scope, schedule and budget.
Plan and drive scoping, requirements definition and prioritization activities for large and complex initiatives.
Investigate operational requirements, problems, and opportunities, seeking effective business solutions.
Review business cases and determine appropriate procurement routes.
Evaluate the quality of project outputs against agreed service acceptance criteria.
Oversee and measure the fulfillment of contractual obligations using key performance indicators.
Support programme or project control boards and provide basic guidance on individual project proposals.
A Diploma degree as minimum to accept while a BSc. Degree in Computer Science or equivalent is preferred.
ExperienceA minimum of 0-2 years’ experience in related field.
About Application ProcessIf you meet the criteria and you are enthusiastic about the role, we would welcome your application. To complete the application, you would need the following document(s):
#J-18808-LjbffrInformation Security Specialist
Posted 4 days ago
Job Viewed
Job Description
The Information Security Specialist supports the Head of Information Security and Business Continuity in safeguarding the bank’s critical information assets and ensuring the resilience of its operations. This role is responsible for implementing and maintaining comprehensive information security measures, business continuity plans, and disaster recovery strategies that protect the bank’s systems, data, and services from cybersecurity threats and operational disruptions.
The Specialist will contribute to the bank's proactive risk management approach by identifying vulnerabilities, responding to incidents, ensuring regulatory compliance, and leading initiatives to enhance business continuity. In addition, this role involves coordinating BCP and DR activities, conducting regular testing, and ensuring the organization’s preparedness for crises or emergencies.
Reporting directly to the Head of Information Security and Business Continuity, the Specialist will collaborate closely with IT and other departments and business units to integrate security and business continuity frameworks into the bank’s operational processes, supporting a secure and resilient environment that enables the bank to achieve its strategic objectives.
Responsibilities of the role:
Information Security:
- Develop, implement, and maintain information security policies, procedures, and standards in alignment with PCI-DSS and regulatory requirements.
- Monitor, analyze, and respond to security incidents, vulnerabilities, and threats across the bank’s IT systems and networks
- Conduct periodic risk assessments and gap analyses to identify security weaknesses and develop mitigation strategies
- Coordinate internal and external audits related to information security; ensure timely closure of audit findings
- Provide security awareness training to staff and promote a culture of information security
- Support secure configuration and change management processes across IT assets and infrastructure
- Work with IT and other departments to ensure security is embedded into system design and operational processes
- Stay up to date with current cyber threats and trends, and recommend appropriate risk mitigation measures
Business Continuity:
- Develop and maintain the bank’s business continuity management frameworks in line with the bank’s and regulatory guidelines
- Conduct business impact analyses (BIAs) and risk assessments across business units to identify critical functions and recovery priorities
- Lead the development, testing, and continuous improvement of BCP and DR plans to ensure organizational resilience.
- Coordinate with IT, facilities, and business teams to ensure recovery strategies are effective and practical.
- Conduct regular BCP/DR drills and exercises, and report findings with actionable recommendations.
- Liaise with regulatory bodies, auditors, and stakeholders to ensure compliance and readiness.
- Maintain documentation and evidence of BCM program activities and test results.
Areas of Knowledge, Qualification and Experience
- Atleast 5 years of experience working within a Banking Environment
- Bachelors Degree in Computer Science / Cyber Security background.
- Relevant certifications from ISC2, ISACA, SANS are highly preferred
- In-depth understanding of global information security standards (e.g., ISO 27001, NIST Cybersecurity Framework, CIS Controls) and regulatory requirements (e.g., CBB, PCI-DSS). Ability to implement and manage these frameworks within a banking context.
INFORMATION SECURITY OFFICER
Posted 11 days ago
Job Viewed
Job Description
This role will be responsible for handling the implementation and maintenance of GFG and subsidiaries Information Security Management System in accordance with local laws, regulations and best practices.
KEY ACCOUNTABILITIES- Support Head Information Security in defining and implementation of information security governance documentation including policies, manual, SOPs and guidelines.
- Support Head Information Security in conducting Risk-based Assessment of Information Security policies and operating procedures owned by other departments within the group against industry-recognized security standards and best practices, ensuring adequate preventive, detective and corrective controls to provide data integrity, confidentiality and availability.
- Support Head Information Security in conducting analysis of security requirements and controls to identify gaps and provides recommendations of industry best practices, trends, and technology products.
- Support Head Information Security in conducting on annual basis and continuous basis Information Security Risk Assessment, identify business and technology risks, internal controls which mitigate risks, and related opportunities for internal control improvement.
- Develop and maintain information register and ensure that the information is classified by data owners and protected in accordance with the information classification framework.
- Conducting awareness sessions to the new and existing employees on information security policies and global trends as per the awareness program.
- Support in defining information security requirements in information systems, projects and third parties in cooperation with the delivery departments i.e. ICT, and FM.
- Support in conducting incident investigation for information security incidents and ensuring that the necessary actions and disciplinary actions are taken.
- Support in defining information security requirements to be included in ICT Disaster recovery plans to ensure continuity of information security controls during disasters.
- Support in conducting internal and external audits to ensure that BAC Information Security Management system complies with best practices and local regulations.
- Improve the maturity of the information security management system through suggesting and supporting in the implementation of technologies such as DLP solutions, GRC solutions etc.
Bachelor’s degree in information technology.
Certified Information Security Auditor (CISA) (Preferred)
MINIMUM EXPERIENCE3+ years of Information Security experience
JOB SPECIFIC SKILLS- Proven ability to establish and manage “dotted-line” business relationships to deliver agreed outcomes/deliverables.
- Ability to work effectively with all levels of personnel across the organization.
- Proven ability to communicate clearly and appropriately based on audience with excellent facilitation and customer service skills.
- Excellent written and verbal communications, critical thinking skills, effective interpersonal skills, strong formal presentation abilities.
- Ability to be flexible and work effectively with ambiguity and change.
Information Security Architect
Posted 13 days ago
Job Viewed
Job Description
Company Description
Job Description
VAM Systems is currently looking for Information Security Architect for our Bahrain operations with the following skillsets & terms and conditions:
Years of Experience : 7- 10 Years
Education Qualification : BE Computer Science and Engineering
Certifications required : CISSP, CCSP, CEH, CCNP, AWS, Azure, Java, Python, VB
Professional Training Required : Azure Solutions Architect, AWS Solution Architect, Secure Software Development and Programming.
Skills
- Proficiency and working knowledge in technology stacks used in application development, Web applications, in particular secure application design.
- Depth knowledge of IT risks, cyber security, and computer operating software like Windows, Linux, and UNIX.
- In-depth knowledge in the software's design with the aid of programming languages like Python, Java, etc.
- Advanced understanding of security protocols, cryptography, and security.
- Understanding of network protocols, Source Code Reviews and OWASP Top 10 security practices.
- In-depth knowledge of frameworks used in developing applications.
- Good understanding in security measures such as firewalls, intrusion detection, and prevention systems (IDS/IPS), network access controls, and network segmentation.
- Knowledge of DNS, Security principles of routing, authentication, VPN, proxy services, and DDOS mitigation technology.
- Expertise in the architecture of information security systems. Project Manager
- Good knowledge of IT Infrastructure, Cloud Technologies like AWS, Azure, and Information Security systems, specifically in architecture.
- Perform security analysis, develop robust security architecture, and ingrain security solutions into the Bank's Group environment ensuring the confidentiality, integrity, and availability of the bank’s information.
- Develop security architecture for various Information Security control systems.
- Perform Information Security Risk Assessments of new IT systems, design and recommend security controls to mitigate risks, reassess and enhance security architecture as needed.
- Review security architecture of new technology solutions and business applications, assess security, and recommend security controls to address security risks.
- Research and recommend/implement the security standards, systems, and best practices.
- Review system security, recommend security controls, and implement enhancements.
- Manage information security projects/assignments.
- Evaluate and implement information security technologies and countermeasures against threats to information.
- Review technical service requests and technical changes raised by IT users for Information Security risks.
- Follow Security by Design methodology to assure end-to-end security.
- Develop security baseline for all IT assets, such as routers, firewalls, LANs, WANs, VPNs, and other network devices, and ensure efficacy.
- Provide security architectural guidance to IT Project Managers.
- Understand the risk and weakness in applications.
- Secure application design and architecture, and conduct application security testing.
Terms and conditions
Joining time frame: 15-30 Days
Additional Information
Terms and conditions:
Joining time frame: maximum 4 weeks Seniority level
- Seniority level Mid-Senior level
- Employment type Full-time
- Job function Information Technology
- Industries IT Services and IT Consulting
Referrals increase your chances of interviewing at VAM Systems by 2x
Sign in to set job alerts for “Information Security Architect” roles.We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrSenior Information Security Specialist
Posted 11 days ago
Job Viewed
Job Description
Roles & Responsibilities:
- Monitoring the system and ensuring the system is available 24/7.
- Maintain best practices and security standards.
- Design and implement security solutions that protect the organization's On-prem / cloud infrastructure, applications, and data from security threats.
- Conduct regular security assessments of the organization's On-prem / cloud environment to identify potential security vulnerabilities and recommend appropriate remediation measures.
- Configure and maintain various security tools such as firewalls, intrusion detection and prevention systems, and security information and event management (SIEM) systems to ensure optimal protection against security threats.
- Regularly monitor the syslogs and take corrective actions if any security breaches or vulnerabilities are found in the logs.
- Run VAPT tools to mitigate security vulnerabilities.
- Manage access controls for cloud resources, including user authentication and authorization, identity and access management (IAM), and network security groups (NSGs).
- Monitor the On-prem / cloud environment for security incidents and respond promptly to any security breaches or threats.
- Create and maintain security policies and procedures for the organization's On-prem / cloud environment, including disaster recovery plans, incident response plans, and security awareness training for employees.
- Keep up-to-date with the latest security trends and best practices to ensure that the organization's On-prem / cloud environment remains secure against evolving security threats.
- Review and apply the WAF policies to protect against DDoS and application-related attacks.
- Test the WAF rules and ensure they block malicious traffic.
Qualifications & Technical Skills:
- Minimum of 10 years of experience.
- B.Sc. in Computer Engineering or Equivalent.
• Security Incident Handling & Response
• Security Management Frameworks
• Firewall/IDS/IPS (Palo Alto, Fortinet, Cisco, etc.)
• Vulnerability Management (VAPT)
• SIEM Management
• Data Management Protection
• Advanced Malware Prevention
• Identity & Access Management
• AWS: IAM, KMS, VPC, Security Groups, Network ACLs, VPC endpoints, CloudWatch, VPC Flow Logs
• Logging and Monitoring, SIEM, Syslog
• CloudFront, WAF and Certificate Management
• Technical Certifications like CEH, Security+, CISSP, etc.
#J-18808-LjbffrBe The First To Know
About the latest Security analyst Jobs in Bahrain !