Job Description
Job Identification: 617
Duties & Responsibilities
- Define, implement, and enforce information security policies.
- Establish an information security risk management strategy, process, and program plan.
- Ensure that controls are adequate to meet legal, regulatory, policy, standards, and security requirements (PCIDSS, ISO etc.).
- Conduct audits.
- Establish the method for identifying and assessing risks, classification, level of description, listing the financial impact, mitigation, and the level of control
- Call for the implementation of action plans for operational risk management.
- Build, maintain and strengthen partnering with business functions to collect, aggregate and report risk information.
Job Requirements
Education:
- Minimum Education: First Degree in Computer Science / Engineering.
Experience:
- Minimum experience -10 years working knowledge in Information Technology/Information Security. Higher Degrees/Professional Certificates
- Working knowledge of PCI DSS
- Working knowledge of ISO 27001
- Information Security Standards, security architecture and practices.
- Good knowledge of network security and encryption models.