Roles and Responsibilities:
- Design implement and maintain security solutions (firewalls intrusion detection/prevention systems and endpoint protection etc.).
- Ensure the secure configuration and operation of network and system infrastructure.
- Monitor network and system activity for signs of potential security breaches or incidents.
- Respond to security incidents conduct investigations and implement corrective actions.
- Document incidents and create detailed incident reports
- Ensure compliance with relevant regulations standards and frameworks (e.g. GDPR HIPAA ISO 27001 NIST).
- Conduct regular compliance audits and assessments documenting findings and implementing corrective actions.
- Maintain records of compliance activities and prepare reports for internal and external stakeholders. Develop and enforce security policies standards and procedures.
- Develop and deliver security awareness training programs for employees.
- Promote a culture of security awareness and best practices within the organization.
- Work closely with IT legal and business teams to ensure comprehensive security strategies.
- Provide expert advice and guidance on cybersecurity matters to stakeholders.
Requirements
Relevant certifications such as CISSP CISM CEH or similar.
GRCrelated certifications (e.g. CGEIT GRCP) are a plus.
Proven experience in developing and implementing security policies and risk management.
Experience: 56 years.
Relevant certifications such as CISSP, CISM, CEH, or similar. GRC-related certifications (e.g., CGEIT, GRCP) are a plus. Proven experience in developing and implementing security policies and risk management. Experience: 5-6 years.