Reports directly to:
Senior Manager Information Security
Job Purpose:
The Senior Officer – Information Security will work directly under the Senior Manager Information Security and s/he will be responsible for developing and implementing the security measures that keep the Bank’s information assets safe. Working with IS management, the Senior Officer will identify gaps in existing IS policies/ standards/ guidelines/ procedures and recommend updates to bring them into alignment with regulatory requirements, leading practices and industry standards. They will evaluate controls over new and existing computer applications/systems and present recommendations to IS management, as appropriate.
Job Context/ Dimensions:
The Senior Officer will engage with stakeholders across various departments of the bank to validate the level compliance of bank practices with the approved information security policies. Where required, the Senior Officer is expected to coordinate activities with external specialist firms in the performance of IS duties.
Duties & Responsibilities:
a) Monitor information security trends internal and external to the Bank and keep IS management informed about information security related issues and activities affecting the Bank.
b) Monitor the bank’s networks for security breaches and investigate a violation when one occurs.
c) Prepare reports that document security breaches and the extent of the damage caused by the breaches supporting IS management to respond to security incidents.
d) Conduct vulnerability assessments and support contracted third party penetration testing. Track identified and reported security weaknesses to their resolution.
e) Research the latest information security trends advising IS management of leading practices to improve the bank’s security posture.
f) Serve as a contact during security audits and consultancy reviews, providing the auditors/ consultants and examiners with the artifacts requested. After the audit/ review, ensure that exceptions are tracked to closure on a timely basis.
g) Evaluate and make recommendations for updates to existing Information Security policies, standards, guidelines, procedures, processes and forms as needed.
h) Review out-of-policy application access requests submitted by the user community and approve or reject, as appropriate.
i) Advise the IS management on risk issues that are related to information security and recommend actions in support of the Banks wider risk management programs.
j) Understand potential threats, vulnerabilities, and control techniques and communicate the information to IT system & network administrators.
k) Assist Bank’s departments or units as necessary to investigate security breaches and pursue associated disciplinary and legal matters.
l) Support in the development and delivery of security awareness and training programs.
m) Other duties as may be assigned by IS management.
Independence of Operation:
a) Work within framework of bank’s information security policies, standards, guidelines and procedures as applicable.
b) Work accomplishments will be reviewed by the Senior Manager Information Security.
Accountability / Decision Making:
All decision to be made in co-ordination with Assistant Manager Information Security and/or Senior Manager Information Security wherever necessary.
Qualifications:
Bachelors degree in Computer Science, Programming or related information technology field.
Professional / Technical Qualifications / Diplomas:
Platform specific (e.g. SIEM/ Networking/ Operating System) certifications.
Security (e.g. CEH/ CISSP) certifications
Experience:
5 – 7 years’ experience in related industry
Specialist Skills Required for the Job:
Detail oriented – Pays careful attention to the bank’s computer systems and watches for minor changes potentially indicative of a compromise.
Hands-on experience in one of more of the following: Web Proxies, Firewalls, Web Application Firewalls, Intrusion Detection, Network Access Control, Anti-Malware, Encryption, Data Loss Prevention, and Static or Dynamic Code Scanning.
Excellent technical knowledge to be able to advise appropriate security controls and operate security tools such as SIEM and VA Scanner.
Good communication skills. Should be able to communicate with non-technical users without using jargon.
An inquisitive nature.
Ability to adapt to a fast-moving IT landscape and keep pace with latest thinking and new security technologies.
A passion for technology and security safeguarding with a desire to deliver.
Multi-tasking – can manage several concurrent projects and prioritize demands
Duties and responsibilities: Creating long- and short-term plans, including setting targets for milestones, adhering to deadlines and allocating resources Assisting...
Apply For This JobJob Title : Relationship Officer – Banking Location : Abu Dhabi Type : Outsourced Functional Roles and Responsibilities Generate new...
Apply For This JobJob Description Reception are upkeep and décor Meeting Room Booking and Managing PB Office and IT requirements Make appropriate customer...
Apply For This JobJob Description: Keeping up to date with the relevant rental laws and any other guidelines by the land department, municipality...
Apply For This JobPosition Title: Autocad Draftsman Employment Type: Full Time Salary: all-inclusive depending on experience and qualifications Job Location: Dubai, UAE About the Client: An...
Apply For This JobOverview of the role: The role will involve responsibilities of tenant liaison for matters related to work permit approvals for...
Apply For This Job