Info Security Manager

3 weeks ago


مصر, Egypt PepsiCo Full time

**Overview**

The main purpose of the role is to lead, manage, and own the activities necessary to perform information security risk assessments on the third parties with which PepsiCo enters a business relationship for services around the world of varying levels of criticality and complexity. The third-party information security risk assessor will act as a trusted liaison providing guidance, counsel, direction, and support to Business Teams and other stakeholders at various levels (including executive leadership) around the globe to better manage PepsiCo risks by performing third-party information security risk assessment activities. This role will also advocate awareness and execution of other critical third-party related security assessment activities such as ensuring contracts include the required Global Information Security Requirements (GISR) and completion of Payment Card Industry Data Security Standards (PCI-DSS) assessments. The third-party information security risk assessor will drive various process improvement initiatives and efforts to further enhance the TPSRM assessment process and other PepsiCo initiatives globally.

**Responsibilities**
- Lead, manage, and own the activities necessary to perform information security risk assessments on the global third parties with which PepsiCo enters a business relationship for services of varying criticality and complexity. At the conclusion of the assessment process, this position will make a determination of whether the third party exposes PepsiCo to security risks or not, and make a decision on the remediation actions to pursue. Failure to do so properly can expose PepsiCo to significant risks.
- Act as a trusted liaison providing direction, guidance, and counsel to Business Teams and other stakeholders at various levels (including executives) around the globe in support of third-party information security risk assessment activities. This requires a great level of technical and client relationship expertise to properly provide accurate advice. Not doing so could lead Business Teams in the wrong direction and potential prolong or severely impact the success of initiatives.
- Advocate and be an ambassador of other critical third-party related security assessment activities such as ensuring contracts include the required Global Information Security Requirements (GISR) and completion of Payment Card Industry Data Security Standards (PCI-DSS) assessments. The Assessor is commonly a critical link to identify when GISR and/or PCI actions are needed. Therefore, this role will have a material impact on educating Business Teams and providing direction to further those initiatives.
- Partner with stakeholders to drive various process improvement initiatives and efforts to further enhance the TPSRM assessment process (such as introduction of CyberGRX capabilities) and other PepsiCo initiatives. In this capacity the position will set the direction of key initiatives and their implementation with Business Teams around the globe. This role will work to obtain buy in from Business Teams and then further their adherence through training and follow-up.
- Develop innovate mechanisms to allow critical documentation to be securely stored and readily available for analysis and reporting purposes. The data captured and archived is critical to ensure historical references, manage day-to-day third-party risks, review trends and work management initiatives, and provide as evidence of adherence to regulatory, compliance, and policy requirements.

**Qualifications**

Mandatory Technical Skills:

- Strong third-party information (cyber) security risk assessment skills to evaluate functional and technical capabilities of third parties.
- In depth technical experience and knowledge of infrastructure technologies, network, web, computing, cloud services, manufacturing equipment, mobile devices, DevSecOps principles, threat modeling, and information (cyber) security, allowing this role to provide technical leadership and coaching to other members of the organization.
- Thorough understanding of Confidentiality, Integrity, and Availability controls, Privacy laws, as well as PCI-DSS compliance assessment (SAQ, ISA, QSA) principles.
- Comprehensive technical and functional understanding of various information security solutions, technologies, and industry-leading practices, allowing this role to provide recommendations, support key decisions, and contribute to industry forums.
- Technical and business expertise and savviness to drive information security requirements/ clauses in third-party contracts, together with people skills to negotiate requirements with third-party representatives.
- Strong understanding of business needs and commitment to delivering high-quality, prompt, and efficient service to the business, allowing them to meet their strategic objectives.
- Bachelor’s degree, master’s degree preferable.
- 7-10 years of experience in third-party information security risk co



  • مصر, Egypt PepsiCo Full time

    **Overview** Our Information Security Group at PepsiCo is looking for a cyber security thought leader, influencer, security advocate, and driver of change, to join our very exciting journey to manage cyber security risks for PepsiCo and all our partners around the world. The Third-Party Information Security Compliance Senior Manager will be responsible for...


  • مصر, Egypt PepsiCo Full time

    Overview: The main purpose of the role is to lead, manage, and own the activities necessary to perform information security risk assessments on the third parties with which PepsiCo enters a business relationship for services around the world of varying levels of criticality and complexity. The third-party information security risk assessor will act as a...


  • مصر, Egypt PepsiCo Full time

    Overview: The Standards Exception Associate Specialist is an additional role within Information Security Policy and Exception team. The Standards Exception team reviews, facilitates, monitors and escalates Standards Exceptions to ensure any non-compliance to Standards has the appropriate risk documented and accepted. In addition, this position will follow up...


  • مصر, Egypt PepsiCo Full time

    **Overview** The Standards Exception Associate Specialist is an additional role within Information Security Policy and Exception team. The Standards Exception team reviews, facilitates, monitors and escalates Standards Exceptions to ensure any non-compliance to Standards has the appropriate risk documented and accepted. In addition, this position will...


  • مصر, Egypt SSC Egypt Full time

    1. Oversee and manage the Information Security Management team to ensure proper management of the resources to support the ongoing business initiatives and ensure clear personal development plan is developed for each team member with an adequate training and coaching plan. 2. Ensure the annual review and update of the area’s processes, procedures and...

  • Security Manager

    1 week ago


    مصر, Egypt Envision Employment Solutions Full time

    **_Ready and hungry for a new adventure? You are definitely in the right place! _**We at **Envision Employment Solutions** are always on the look for top talents around the globe and matching them with our partners' hiring needs, to help them build and scale! - Our partners offer awesome work environment, competitive salaries, full benefits, and many...


  • مصر, Egypt Orange Business Full time

    **About the role**: **Job Purpose**: The role of Security Manager is to provide a value added expert service centered around information and cyber security on behalf of contract customers. Global ownership of customers' cyber security, and information risk details. Ownership of security services lifecycle (define, assess, review, and improve ) to meet...


  • مصر, Egypt Orange Business Services Full time

    **About the role**: **Job Purpose**: The role of Security Manager is to provide a value added expert service centered around information and cyber security on behalf of contract customers. Global ownership of customers' cyber security, and information risk details. Ownership of security services lifecycle (define, assess, review, and improve ) to meet...

  • Sales Manager

    4 weeks ago


    مصر, Egypt masters of world for security Full time

    sales manager with a similar experience in a security company **Salary**: E£20,000.00 - E£50,000.00 per month Application Question(s): - do you have experience in security company ? how many years ? write the name of the company ( must have sales experience as sales in a security company ) **Language**: - English (preferred) Ability to Commute: -...


  • مصر, Egypt Microsoft Full time

    Security is foundational to all product and service offerings from Microsoft. WebXT needs an experienced security professional with a deep-rooted passion in identifying security issues before they impact millions of users. As part of the Web Experiences (WebXT) Security team, you will collaborate with product engineering to innovate software design to defend...


  • مصر, Egypt Orange Business Services Full time

    **About the role**: **Responsibilities**: - Coordinates day-to-day execution of the process - Identifying and implementing changes to the process - Communicating new and changed policies - Ensuring the standards and procedures are being followed - Identifying and implementing process improvement - Creating, analyzing and distributing process reports,...


  • مصر, Egypt PepsiCo Full time

    Overview: - As directed by the Business Unit leadership and in collaboration with the PepsiCo Office of Global Security, ensure that the businesses in AOR ( Area of responsibility) benefit from effective and sustainable security programs that mitigate risk to our people, assets, and objectives while protecting PepsiCo Brands. **Responsibilities**: -...


  • مصر, Egypt SSC Egypt Full time

    1. Manage the cyber security management resources and ensure proper segregation of functions and capacity management to support different business and technology initiatives/requirements. 2. Lead The information security analysis function to ensure adequate definition and implementation of security controls requirements within the secure software development...


  • مصر, Egypt SSC Egypt Full time

    1. Ensure proper management of the Security Compliance resources to support ongoing business initiatives from a security compliance perspective. 2. Ensure the annual review and update of the area’s processes and procedures with the development and adherence to the developed SLAs. 3. Support the implementation of the key strategic business initiatives and...

  • Security Manager

    2 weeks ago


    مصر, Egypt Linah Farms Full time

    Designing, implementing, and maintaining security policies, procedures, and programs that protect our employees, Machinery, equipment and assets through physical, CCTV and other technology solutions. - Conduct security risk assessments and vulnerability analyses to identify potential security threats and develop strategies to mitigate them. - Establish and...


  • مصر, Egypt Souq.com for E-Commerce LLC Full time

    Fluent in Arabic and English - Experience in managing the operation and installation of global physical security systems. Including experience in writing design specifications and standards, technical manuals and procedures, and developing and delivering training programs - BS degree (or higher) in Electronic, Electrical or Mechanical Engineering or...


  • مصر, Egypt Orange Business Full time

    **About the role**: **Responsibilities**: Coordinates day-to-day execution of the process Identifying and implementing changes to the process Communicating new and changed policies Ensuring the standards and procedures are being followed Identifying and implementing process improvement Creating, analyzing and distributing process reports, KPI’s Act...


  • مصر, Egypt MigrationIT Full time

    **Job Information**: Field - Security & GRCField / Area - SecurityIndustry - Financial ServicesJob Category - Information SecurityWork Experience - 5+ yearsCity - CairoState/Province - AI QahirahCountry - EgyptZip/Postal Code - 11311- Developing and implementing security policies, procedures, and protocols to protect the organization's assets, data, and...


  • مصر, Egypt Palm Hills Developments Full time

    Cairo, Egypt - Posted an hour ago - Expires in 2 months - Ref:JB4596212 **New** **Job Details**: - Job Location - Cairo, Egypt - Job Role - Information Technology - Employment Status - Full time - Employment Type - Employee - Number of Vacancies - 1 - Career Level - Management - Years of Experience - Min: 5 Max: 8 - Nationality - Egypt - Degree -...


  • مصر, Egypt PepsiCo Full time

    **Overview** This role is responsible for coordinate resources, solve technical requirements, evaluate risks and scope of SAP improvements, upgrades and implementations for Global PGT and individual PGT and deploy technological solutions according PepsiCo’s SAP/IT best practices and compliance. **Responsibilities** - Point Person for PGT SAP...