About the job Information Security Manager
Information Security Manager
Minimum Requirements:
-
A bachelors degree in Computer Science or Information Technology.
-
Completed Cyber Security or an equivalent qualification.
-
Professional certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM) (Negotiable).
-
3-5 years of experience in information / Cyber Security, and IT Security background.
-
Strong knowledge of information security principles and practices.
-
Understanding network protocols, firewalls, intrusion prevention, and intrusion detection systems.
-
Proficiency with various operating systems, such as Windows, Linux, etc.
-
Ability to identify and assess vulnerabilities in systems, networks, and social engineering.
-
Proficient understanding of scripting and programming languages, including but not limited to Python, Perl, Bash, Java, PHP, etc.
Responsibilities:
- Creating and enforcing security policies, procedures, and protocols to protect the company's data and information assets.
- Identifying, mitigating security risks, and ensuring compliance with relevant regulations and standards.
- Addressing security incidents and working in collaboration with various departments, promoting a culture of security awareness and the implementation of best security practices within The Company.
- Providing leadership and effective communication to guide and motivate a team of Cyber Security specialists.
- Defining Cyber-Security objectives supported by a roadmap to ensure the companys information assets and data are effectively protected.
- Defining metrics on measuring and improving the maturity level of The Companys Cyber Security posture.
- Defining and enhancing management and operational reporting of the Cyber Security posture.
- Creating and maintaining information security policies and procedures to mitigate risks and ensure compliance with industry standards and regulations.
-
Monitoring and ensuring compliance with applicable regulations and standards, such as NIST and ISO 27001.
-
Conducting risk assessments to identify potential vulnerabilities and threats and developing strategies to mitigate those risks.
-
Managing security systems for potential breaches and crisis management by responding to security incidents effectively.
-
Conducting training and education programs to raise security awareness among employees and foster a culture of security within the organization.
-
Staying updated with the latest Cyber trends and threats.
-
Managing hybrid security environments integration between on-premises and cloud platforms.
-
Working with various stakeholders across The Company to ensure a cohesive approach to Cyber Security.
-
Collaboration and partnering with security vendors.