Job Description
Job Identification Number: 586
Duties & Responsibilities
- Participate in planning & design of infrastructure security architecture
- Responsible for day-to-day management, support and monitoring of technology security in order to protect technology resources and enterprise data in accordance with strategic business objectives, institutional regulations and laws.
- Develop planning of executing the selection, installation, configuration, and testing of access management infrastructure systems.
- Develop the setting-up of policies and procedures around all access management infrastructure systems which include: Two Factor Authentication Systems, Identity Management Systems, Privileged Identity Management Systems, Peripheral device control systems as well as establishing access connections for all devices.
- Perform the planning & design of enterprise security architecture (Logical and physical) for user access management.
- Manage the deployment and administration of token / 2 factor authentication services within the bank.
- Coordinate day to day operations of access management (creation, modification, deletion etc.) for users
- Participate in the creation of enterprise security policies, standards, baselines, guidelines & procedures
- Coordinate day to day operations of the in-place Identity Management Solution.
- Ensure there are no security breaches related to IDM, physical security and 2 factor authentication solutions
- Direct the creation and review of policies and procedures for the identity management environment and associated infrastructure such as Single Sign On, Active Directory,
- Participate in the design of controls & execution of all logical and physical access security audits.
- Keep abreast of new/revised or improved security solutions, processes and development of new access Management Solution.
- Provides direction in the development of policies for authentication and authorization security.
- Provides operational and management support, and work on initiatives associated with identity and access management functions.
- Coordinate the support and maintenance of secure user account and access administration processes in accordance with information security policies and procedure.
- Maintain up to date knowledge of access management systems in IT security industry.
Job Requirements
Minimum Education:
- First Degree in Computer Science / Engineering, Higher Degrees
- At least three Relevant Professional Certifications as appropriate
Minimum Experience:
- Ten (10) years relevant working experience and 3 year working experience at supervisory level Perform other duties as may be assigned by the Unit Head, Infrastructure Security or Information Security Operations Department.
Key Competency Requirements
Knowledge:
- Banking structure, policies and procedures.
- Operating systems
- Systems architecture
- Banking industry
- Banking Operations
- Banking services/products
- Microsoft office suite
- Information security expertise
- Security implementations and methodology
- Understanding of information security principles
- Project Management knowledge
- Working knowledge of financial services
- Security regulatory environment (i.e., PCI DSS)
- Understanding of IT infrastructure
- One or more of the following certifications:
- CISSP
- CISA
- CISM
- ISO 27001
- CEH
- ISSAP
- CWSP
- GSE
- Microsoft Certifications
- PMP
Skill / Competencies
Core SFIA 5 Skill Requirements:
- Information Management (IRMG 4)
- Information Security (SCTY 3)
- Security Administration (SCAD 4)
- Problem Management (PBMG 4)
- Technology Audit (TAUD 4)
Other SFIA 5 Skill Requirements:
- Service Level Management (SLMO 3)
- Learning Delivery (ETDL 3)
Other Required Knowledge and Capabilities
- Proficient knowledge of technology security best practices and standards (ISO27001, ITIL, TOGAF, CISSP, CISA, CISM etc.)
- Proficient understanding of security management and controls (e.g. Threat and Vulnerability Management, Penetration Testing, anti-virus solutions and end-point protection, etc.)
- Proficient knowledge of network infrastructure and architectures
- Proficient knowledge of core IT (Infrastructure, Applications)
- Proficient knowledge of security methods, processes and tools
- Good strategic planning and management skills
- Good interpersonal and communication skills and the ability to work effectively with business stakeholders
- Sound conflict management skills
- Good administrative and managerial ability
- Customer-centricity
- Creative, results-oriented and analytical with strong problem-solving capability
- Good leadership and influencing ability
- Customer Relationship
- Business/ Operational Strategy
- Technical Strategy & Planning
- Business Continuity Management
- Business Change Management
- Human Factor Engineering
- Installation And Integration
- Service Strategy
- Records Management
- Procurement Management
- IT Appreciation & Application
- Hardware Configuration
- Business Analysis
- Database Design & Administration
- Server Administration
- Operating Systems Administration
- Network Planning & Design.