Head of Information Security Management

2 weeks ago


مصر, Egypt SSC Egypt Full time

1. Oversee and manage the Information Security Management team to ensure proper management of the resources to support the ongoing business initiatives and ensure clear personal development plan is developed for each team member with an adequate training and coaching plan.
2. Ensure the annual review and update of the area’s processes, procedures and policies with the development and adherence to the developed SLAs.
3. Ensure the proper enforcement of the developed security policies across all areas.
5. Oversee the implementation of the Information Security Management strategy and objectives to ensure the proper enforcement of the developed security policies.
6. Liaise with IT Security Department to ensure adequacy of security testing and assessments prior to execution, to ensure sound security practices are implemented across all bank’s platforms, systems and services provided, while also ensuring the relevant processes and procedures are adequately reflecting and considering the security policy requirements, as well as risk, compliance and controls requirements.
7. Develop and enhance information security procedures with proper reflection of the emerging threats and changes to the bank’s Cyber Security landscape, including the maintenance of staff awareness of these policies and procedures, as well as proper monitoring of policy exceptions.
8. Ensure that a proper security risk assessment framework is in place and effectively implemented across different areas of the organization, with timely identification, escalation, resolution and follow up for all outstanding issues related to Security as tracked in the Security risk register and KRIs.
9. Act as support arm when it comes to Information Security consultation for all different business units within the organization and provide sound feedback and alternative solutions for security risk mitigation.
10. Validate and ensure adequate feedback is provided on behalf of the security organization (Info Sec, IT Security, Physical Security, Security Operations Center) to internal/external auditors, regulatory bodies and other entities as applicable.
11. Seek concurrence from the Non-Financial Risks and Compliance Committee and keep the relevant Committees updated with the overall Security Risk Rating of the bank to assist in better-formed decisions and security strategy planning.
12. Report Security risks, compliance and controls dashboards and exceptions to Non-Financial Risks and Compliance Committee and other relevant committees as required.
13. Communicate with Senior Management for any needed clarifications or highlighting security risks that require more organizational; awareness and action, through the relevant committees or individually.
14. Work closely with Security Operations Centre to ensure aspects of Information Security Risk, Control and Compliance that require continuous monitoring are adequately embedded within the day-to-day SOC operations.
15. Ensure the annual maintenance of the PCI-DSS certification to keep the card holders’ data secured against cyber-attacks.
16. Ensure the annual compliance with the CBE Regulations, SWIFT CSP requirements and International Information Security and Business Continuity Management ISO 27001 standards, to prevent security breaches.
17. Handle and manage exceptions and escalations, to ensure proper support and alignment is in place between Information Security Management and the different stakeholders.
18. Work collaboratively with Business units, IT teams, Audit, Legal and risk management functions to address open gaps/issues driven from internal/external audit, independent assessments and reviews as applicable, and ensure proper tracking mechanism is in place in coordination with the relevant stakeholders.
19. Participate in the development of the Security & Resilience Management group strategy in line with CIB and Group strategy to ensure vertical and horizontal integration with other interfacing initiatives and departments across the bank.
20. Participate in the development of the Security & Resilience Management group policies, processes and procedures to ensure all relevant procedural/legislative requirements are fulfilled
21. Manage the day-to-day operations of the Information Security Management Department providing guidance, encouraging teamwork and facilitating related professional work processes in order to achieve high performance standards.
22. Liaise with internal and external parties at the appropriate levels to ensure smooth flow of interactions.
23. Contribute to the preparation of the Security & Resilience Management group budget, and monitor the financial performance of a given area of activity versus set budget to ensure alignment.
24. Manage the effective achievement of Information Security Management department objectives by setting individual targets, developing and motivating staff, providing of formal and informal feedback and appraisal in order to maximize subordinate and depart



  • مصر, Egypt EGBank Full time

    **MAJOR RESPONSIBILITIES AND ACOUNTABILITIES** - Review and evaluate the design of security systems. - Review and evaluate security policies, controls and incident response planning in cooperation with stakeholders throughout the enterprise. - Review identity and access policies in cooperation with stakeholders throughout the enterprise. - Review...


  • مصر, Egypt ICARDA Full time

    **Reports to**: Director of Finance **Location**: Cairo, Egypt Main purpose of position The Information Technology Unit (ITU) Head sets the direction, purpose, plan, and rules for the ITU function at ICARDA, and guides the ITU team to accomplish its objectives. The ITU Head will manage ICARDA technology operations, and policies implementation, and ensure...


  • مصر, Egypt SSC Egypt Full time

    1. Ensure proper management of the Security Compliance resources to support ongoing business initiatives from a security compliance perspective. 2. Ensure the annual review and update of the area’s processes and procedures with the development and adherence to the developed SLAs. 3. Support the implementation of the key strategic business initiatives and...


  • مصر, Egypt athGADLANG Full time

    **aG Resources is hiring an Information Security Consultant with a minimum of 2 years of experience.** **Responsibilities**: - Advise on ISMS policies and procedures. - Conduct security inspections, audits, and assessments. - Develop and implement ISMS management systems. - Deliver training sessions on information security awareness and practices. -...


  • مصر, Egypt SSC Egypt Full time

    Develop, execute and track the performance of security measures to protect information and network infrastructure and computer systems. - Design computer security strategy and engineer comprehensive cybersecurity architecture. - Identify, define and document system security requirements and recommend solutions to management. - Configure, troubleshoot and...


  • مصر, Egypt SSC Egypt Full time

    1. Follow the security risk assessment methodology to assess the different business initiatives and projects. 2. Perform security risk assessments to align with the bank’s security policies and guidelines. 3. Validate and review the business requirements and ensure the relevant security measures are catered for throughout the different phases of the...


  • مصر, Egypt اورنچ مصر Full time

    About the job Head of Security Operation Center **Duties and Responsibilities** Ensures that standardized methods and procedures are used to manage all Changes effectively and quickly Coordinate and manage the various change committees (Standards and urgencies), analyses the requests, considering risks, unavailability and impact related to the...


  • مصر, Egypt SSC Egypt Full time

    1. Manage the cyber security management resources and ensure proper segregation of functions and capacity management to support different business and technology initiatives/requirements. 2. Lead The information security analysis function to ensure adequate definition and implementation of security controls requirements within the secure software development...


  • مصر, Egypt Expleo Full time

    Overview: The Information Security & Compliance Analyst (ISCA) is part of the Information Security Management System (ISMS) of the Group, managed by the Group Chief Information Security Officer (CISO). The ISCA acts on behalf of the CISO and is supporting forces for developing Information Security as defined by the Group and for participating in the...


  • مصر, Egypt IT VIKINGS Full time

    27 - Dec - Job Description: - Installation, configuration and maintenance for network Security equipment (Web Security, Mail Security, End point Security, Data Security, etc.) for IT Vikings customers. - Provides remote and on-site support to our customers. - Performing troubleshooting and root cause analysis on security appliances, Network appliances. -...