fbpx

Information Security Officer

Full time @Nair Systems in IT- Software / DB / QA / Web / Graphics / GIS
  • Colombo, Sri Lanka, 00100
  • Apply Before : 22nd November 2022
  • Share:

Job Detail

  • Job ID 40919
  • Experience 8 Years +
  • Qualifications Degree Bachelor

Job Description

Nair Systems is currently looking for Information Security Officer for our Qatar operations with the following terms & conditions.

Job Description

  • Experience performing risk and compliance assessments and in-depth knowledge of industry standards and regulatory requirements (e.g., NIAF, ISA, PCI-DSS, HIPAA, HITRUST, HITECH, FISMA, NIST, ISO 3100, ISO 2700X, COBIT, FFIEC, NERC CIP).
  • Experience assessing and defining system specifications preferably in relation to compliance, data protection and data privacy regulations such as GDPR.
  • Understanding of entity’s services, processes and controls environments.
  • Experience with risk assessment techniques and with GRC/ERM tools (e.g. RSA Archer, MetricStream, SAP GRC, Logicmanager, etc.).
  • Strong background in information security, IT audit or security risk management.
  • Knowledge of national and international laws, regulations, policies, and ethics as they relate to cybersecurity.
  • Identify, document, and publish organization-wide common controls.
  • Develop organization-wide tailored control baselines and/or profiles.
  • Working knowledge of risk and security frameworks, standards, and best practices (e.g. ISO 31000, COBIT, NIST, ISO 27001/2 etc.)
  • Designing and implementing an overall risk management process for the organization, which includes an analysis of the impact on the company when risks occur.
  • Conducting policy and compliance audits, which will include liaising with internal and external auditors.
  • Align information security management processes with strategic, operational, and budgetary planning processes.
  • Hands-on experience with cybersecurity internal audits and self-assessments.
  • Experience performing Cyber Security Audits and compliance assessments and in-depth knowledge of industry standards and regulatory requirements (e.g., HIPAA, HITRUST, HITECH, FISMA, NIST, ISO 2700X, COBIT, FFIEC, NERC CIP, etc.)
  • Experience assessing and defining system specifications preferably in relation to compliance, data protection and data privacy regulations such as GDPR.
  • Strong knowledge of the management of both physical and logical information security systems.
  • Demonstrate functional audit knowledge and ability to apply auditing protocols.
  • Provide leadership, direction and guidance in assessing and evaluating information security risks and monitor compliance with security standards and appropriate policies.

Certifications

  • CISA, CEH, CompTIA, CRISC, CGEIT, CISSP, COBIT, CISM, CCNP, CCIE Security, ISO27001
  • Experience required: 5 to 10 years

Terms and conditions

  • Joining time frame: 2 weeks (maximum 1 month)

Should you be interested in this opportunity, please send your latest resume in MS Word format at the earliest through Job Hub

Other jobs you may like