Job Description
Job Description
- Ensure that there is an updated inventory for IT assets and create the process for the tracking of the commissioning and decommissioning of assets
- Develop an effective patch management process aligned to the Bank’s policy in patch and vulnerability management
- Track and monitor compliance status of the digital ecosystems with the relevant security controls
- Provide regular and detailed reports on the Bank’s vulnerability posture, patching activities and remedial actions required.
- Develop an effective testing process to ensure that all required remedial changes are fully tested prior to go live and post-implementation testing occurs post deployments
- Develop an effective user awareness program to educate both users and management
- Perform other duties as may be assigned by the Unit Head, Infrastructure Security or Information Security Operations Department.
Job Requirements
Minimum Education:
- First Degree in Computer Science / Engineering, Higher Degrees
At least three Relevant Professional Certifications as appropriate.
Experience:
- Ten (10) years relevant working experience and 3 year working experience at supervisory level.
Knowledge:
- Banking structure, policies and procedures.
- Operating systems
- Systems architecture
- Banking industry
- Banking Operations
- Banking services/products
- Microsoft office suite
- Information security expertise
- Security implementations and methodology
- Understanding of information security principles
- Project Management knowledge
- Working knowledge of financial services
- Security regulatory environment (i.e., PCI DSS)
- Understanding of IT infrastructure
- One or more of the following certifications:
- Cisco certifications
- Microsoft Certifications
- CheckPoint Certification (CCSA, CCSP)
- PMP.
Skill / Competencies
Core SFIA 5 Skill Requirements:
- Information Management (IRMG 4)
- Information Security (SCTY 3)
- Security Administration (SCAD 4)
- Problem Management (PBMG 4)
- Technology Audit (TAUD 4)
Other SFIA 5 Skill Requirements:
- Service Level Management (SLMO 3)
- Learning Delivery (ETDL 3)
Other Required Knowledge and Capabilities:
- Proficient knowledge of technology security best practices and standards (ISO27001, ITIL, TOGAF, CISSP etc.)
- Proficient understanding of security management and controls (e.g. Threat and Vulnerability Management, Penetration Testing, anti-virus solutions and end-point protection, etc.)
- Proficient knowledge of network infrastructure and architectures Proficient knowledge of core IT (Infrastructure, Applications)
- Proficient knowledge of security methods, processes and tools
- Good strategic planning and management skills
- Good interpersonal and communication skills and the ability to work effectively with business stakeholders
- Sound conflict management skills
- Good administrative and managerial ability
- Customer-centricity
- Creative, results-oriented and analytical with strong problem-solving capability
- Good leadership and influencing ability
- Customer Relationship
- Business/ Operational Strategy
- Technical Strategy & Planning
- Business Continuity Management
- Business Change Management
- Human Factor Engineering
- Installation And Integration
- Service Strategyrecords Management
- Procurement Management
- IT Appreciation & Application
- Hardware Configuration
- Business Analysis
- Database Design & Administration
- Server Administration
- Operating Systems Administration
- Network Planning & Design.