Information Security Compliance Manager
5 days ago
1. Ensure proper management of the Security Compliance resources to support ongoing business initiatives from a security compliance perspective.
2. Ensure the annual review and update of the area’s processes and procedures with the development and adherence to the developed SLAs.
3. Support the implementation of the key strategic business initiatives and projects through conducting the necessary compliance checks and security assessments such as (Code Reviews and Penetration Tests) before systems’ rollout.
4. Manage and oversee the vulnerability management program to ensure proper identification, assessment, reporting and timely remediation of the identified vulnerabilities.
5. Review periodical vulnerability scans and penetration tests results to prepare a long/medium term remediation plan in order to mitigate any existing threats and avoid any potential risks.
6. Ensure effective participation in the projects/Business Requirement Documents (BRD) initiation cycle, security testing and validation process including Penetration Testing, Dynamic Scans, Secure Code reviews, internal security controls checks/validations,etc. within the overall software development and acquisition process to assess and identify areas of concern from security compliance perspective in line with regulations, standards and best practices.
7. Ensure & maintain the annual compliance with PCI-DSS, SWIFT CSP, EU GDPR and CBE regulations & other applicable standards and regulations.
8. Ensure compliance with Information Security and Business Continuity Management ISO standards to maintain the acquired ISO certificates.
9. Manage vendor communication across all security testing/services requirements, while ensuring appropriate agreements are in place with third parties to preserve the bank’s information confidentiality, integrity and availability.
10. Work collaboratively with Business units, IT teams, Audit, Legal and risk management functions to address open gaps/issues driven from internal/external audit, independent assessments and reviews as applicable, and ensure proper tracking mechanism is in place in coordination with the relevant stakeholders.
11. Ensure that a proper process is maintained across the different IT areas for enforcement and closure of vulnerability management and patch management gaps.
12. Maintain a proper security compliance portfolio and ensure proper reporting to the relevant committees as applicable.
13. Manage and operate a number of security tools (within security compliance scope) such as Firewall Policy Management (Compliance Modules), Vulnerability Scanning and Enterprise Security Management tools, Dynamic and static code scanning/review tools, Enterprise Security Monitoring tools.
14. Ensure the annual license and support renewal are done in a timely manner through the bank’s approved process lifecycle for all tools managed by Security Compliance.
15. Ensure proper validation of the responses obtained for open internal/external audit issues before communicating with Information Security Management to properly assess and track the open audit issues.
16. Resolve communication/misunderstanding conflicts between Security Compliance team and different stakeholders to ensure a streamlined process is in place.
17. Reflect necessary compliance triggers in the Security Operations Center use cases and participate in reviewing use cases development, testing and launching to be monitored on ongoing basis by the SOC team.
18. Ensure adherence to the defined compliance operating model to support the different security controls and compliance requirements and communicate violations to the relevant teams.
19. Participate and recommend improvements to policies, processes and procedures and manages their implementation to ensure all relevant procedural / legislative requirements are fulfilled.
20. Participate in the formulation and implementation of the Information Security Management Department strategy to ensure the alignment.
21. Supervise the day to day operations of the Information Security Compliance team providing some guidance in the related area, encouraging teamwork and facilitating related professional work processes in order to achieve high performance standards.
22. Supervise the activities and work of subordinates to ensure that all work within a specific area is carried out in an efficient manner and in compliance with the set policies, processes and procedures.
**Requirements**:
- Bachelor’s degree of Engineering, Computer Science, Information Security or equivalent.
- Minimum 8 - 10 years of experience in IT or related fields Information Security auditing/compliance (recommended)
- Risk Management Background with Risk analysis skills
**- Recommended Certifications**:
- CISM
- ISO Lead Implementer / Auditor
**- Mandatory Certifications**:
- CISA
**Skills**:
- Very good command of English and Arabic languages
- Very good Conflict Management skills
- Very good communication and presentatio
-
Information Security and Compliance Analyst
5 days ago
مصر, Egypt Expleo Full timeOverview: The Information Security & Compliance Analyst (ISCA) is part of the Information Security Management System (ISMS) of the Group, managed by the Group Chief Information Security Officer (CISO). The ISCA acts on behalf of the CISO and is supporting forces for developing Information Security as defined by the Group and for participating in the...
-
Head of Information Security Management
5 days ago
مصر, Egypt SSC Egypt Full time1. Oversee and manage the Information Security Management team to ensure proper management of the resources to support the ongoing business initiatives and ensure clear personal development plan is developed for each team member with an adequate training and coaching plan. 2. Ensure the annual review and update of the area’s processes, procedures and...
-
Information Security Senior Manager
1 week ago
مصر, Egypt MigrationIT Full time**Job Information**: Field - Security & GRCField / Area - SecurityIndustry - Financial ServicesJob Category - Information SecurityWork Experience - 5+ yearsCity - CairoState/Province - AI QahirahCountry - EgyptZip/Postal Code - 11311- Developing and implementing security policies, procedures, and protocols to protect the organization's assets, data, and...
-
Chief Information Security Officer
4 days ago
مصر, Egypt Canonical - Jobs Full timeThis CISO role is for a global cybersecurity leader with a passion for Linux and open source to help define the way Canonical secures its corporate infrastructure, designs its products and assures regulatory compliance. This role will be responsible for the end to end definition and implementation of the cybersecurity and compliance program. They will...
-
Senior Information Security Grc
3 days ago
مصر, Egypt ISEC Full time**Senior Information Security GRC is required.** **Key responsibilities**: - Experience in Implementing ISMS, performing internal reviews, drafting and enforcing policies in accordance with Central Bank of Egypt regulation, ISO 27001, and PCI-DSS. - Experience in PCI-DSS remediation and certification audit. - Experience in defining cyber security policies,...
-
Information Security Senior Grc
4 days ago
مصر, Egypt MigrationIT Full time**Job Information**: Industry - Financial ServicesWork Experience - 4-5 yearsCity - CairoState/Province - AI QahirahCountry - EgyptZip/Postal Code - 11311- Conduct technical risk assessments and collaborate/communicate in a simple, clear, and concise manner to the various communities within our organization. - Develop the required Information Security...
-
Information Security Junior Grc
4 days ago
مصر, Egypt MigrationIT Full time**Job Information**: Industry - Financial ServicesWork Experience - 1-3 yearsCity - CairoState/Province - AI QahirahCountry - EgyptZip/Postal Code - 11311- Provide guidance and share best practices for design and implementation of the GRC platforms. - Ensure partnership with different teams for Proactive Compliance Risk Management - identification,...
-
Compliance Manager
4 days ago
مصر, Egypt Canonical - Jobs Full timeThe Information Systems (IS) Compliance Manager leads our work to achieve relevant certifications such as SOC2 as well as compliance with regulatory frameworks such as GDPR. This role is to ensure that Canonical conducts its business processes in compliance with laws and regulations, international standards, and accepted business practice. This position is...
-
Information Security Governance Officer
5 days ago
مصر, Egypt SSC Egypt Full time1. Conduct the annual review and update of the area’s processes, procedures and policies with the adherence to the developed SLAs. This includes mainly the review of the Information Governance Policy, the Security Governance Policy, the Data Classification Policy and the Information Access Management & Handling Procedures. 2. Design and Develop the Data...
-
Security Manager
5 days ago
مصر, Egypt Envision Employment Solutions Full time**_Ready and hungry for a new adventure? You are definitely in the right place! _**We at **Envision Employment Solutions** are always on the look for top talents around the globe and matching them with our partners' hiring needs, to help them build and scale! - Our partners offer awesome work environment, competitive salaries, full benefits, and many...
-
Information Security Management System
3 weeks ago
مصر, Egypt SGS Full timeCompany Description We are SGS - the world’s leading testing, inspection and certification company. We are recognized as the global benchmark for sustainability, quality and integrity. Our 97,000 employees operate a network of 2,650 offices and laboratories, working together to enable a better, safer and more interconnected world. **Job...
-
Information Security Risk Analyst
5 days ago
مصر, Egypt Plugin Talents Full time**About the job Information Security Risk Analyst**: **Objectives** help to raise a security culture and focus on driving advances to the security posture at best practices and standards, specifically to ISO27001, GDPR, and NIST. **Accountabilities** TASKS - Support the identification, analysis, and governance of information security risks across the...
-
Third-party Information Security Assessor
4 weeks ago
مصر, Egypt PepsiCo Full timeOverview: Our Information Security Group at PepsiCo is looking for information/ cyber security professionals to join our very exciting journey to manage information/ cyber security risks for PepsiCo as we engage thousands of third parties around the world. The Third-Party Information/ Cyber Security Compliance Associate Specialist will be responsible for...
-
Third-party Information Security Assessor
3 days ago
مصر, Egypt PepsiCo Full timeOverview: Our Information Security Group at PepsiCo is looking for information/ cyber security professionals to join our very exciting journey to manage information/ cyber security risks for PepsiCo as we engage thousands of third parties around the world. The Third-Party Information/ Cyber Security Compliance Associate Specialist will be responsible for...
-
IT Compliance Assistant Manager
3 days ago
مصر, Egypt SSC Egypt Full time**Key Responsibilities**: 1. Overseeing and managing compliance with relevant laws, regulations, and standards related to information technology (IT). This includes ensuring adherence to data privacy and protection regulations, IT security standards, and any specific compliance requirements applicable to ODE. 2. Developing and maintaining IT policies,...
-
Information Security Consultant
5 days ago
مصر, Egypt athGADLANG Full time**aG Resources is hiring an Information Security Consultant with a minimum of 2 years of experience.** **Responsibilities**: - Advise on ISMS policies and procedures. - Conduct security inspections, audits, and assessments. - Develop and implement ISMS management systems. - Deliver training sessions on information security awareness and practices. -...
-
Information Security Engineer
2 days ago
مصر, Egypt SSC Egypt Full timeDevelop, execute and track the performance of security measures to protect information and network infrastructure and computer systems. - Design computer security strategy and engineer comprehensive cybersecurity architecture. - Identify, define and document system security requirements and recommend solutions to management. - Configure, troubleshoot and...
-
Information Security Analyst
3 weeks ago
مصر, Egypt Misr Technology Services Full time**Job** Responsibilities**: - Evaluate/assess Application Security Architecture and suggest recommendations. Provide best practices. - Support administration of local and vendor managed security solutions for MTS environment. - Analyze security threats, vulnerability assessments, and audit results to recommend security solutions that enable business...
-
Information Security Analyst
5 days ago
مصر, Egypt SSC Egypt Full time1. Follow the security risk assessment methodology to assess the different business initiatives and projects. 2. Perform security risk assessments to align with the bank’s security policies and guidelines. 3. Validate and review the business requirements and ensure the relevant security measures are catered for throughout the different phases of the...
-
Team Leader, Information Security
3 weeks ago
مصر, Egypt Arrow Electronics, Inc. Full timePosition: Team leader, Information Security (Security Architecture & Risk Assessment) **Job Description**: Job Description and Duties: Performing security assessments, including architecture assessments, pen-testing, security controls assessments, and code analysis/review. Identifying, presenting, and prioritizing security risks, providing recommendations...