Security Technology Risks
4 days ago
Overview:
The Security Risk Lead role is unique to the International Business Information Security Office organization and is responsible for information security risk and technical security analysis within the sector.
**Responsibilities**:
- Assist Attack Surface Management and Global Digital Connections teams when working with third parties locally on website/mobile security remediation
- Escalate and provide appropriate, informed recommendations on security gaps/opportunities within the region to Sector BISO
- Engage with key stakeholders to ensure that processes and initiatives operate within the documented security org framework, monitor security policy/standards compliance, and Information Security strategy is understood and communicated
- Identify Stakeholder resistance and barriers and tighten the cohesion between business and Information Security
- Works with all members of the Information Security sector and global functions organization to understand the security impact of complex technical issues (i.e., vulnerability remediation, incident response, new project/program capabilities)
- Analysis and research into sector security operational metrics to understand causality and differentiating factors in consultation with InfoSec, SDM’s, and Operations to drive strategy and approach to the prioritization and mitigation of risk
- Interface with the BRM organization and the InfoSec Engineering Solutions Architects to deliver secure business solutions.
- Support model design and drafting of documentation/runbooks for new security services in collaboration with (for example) Security Solutions, Engineering and Architecture teams
- Develop and implement strategies for engaging business functions on information security technical matters and gain buy-in
- Build technical FAQs and other communications resources on Information Security programs, initiatives, capabilities and risk in consultation\collaboration with SMEs and functional capability owners
- Support of vulnerability mitigation and remediation plan development
- Act as trusted advisor in the exception risk management process to include articulating risk and vulnerability information, determining mitigating controls, and assist in remediation plan development
- Participates in educating business functions on Information Security services and processes
- Participates and provides guidance specific to Incident After Action Engagement Program and post incident activities
- Provide feedback on security requirements during planning cycles
- Collaborate with and support OT and Third Party Security Risk Management team on assessments, issues, and remediation
Qualifications:
- 8-10 years as IT Security Architect/Engineer or similar experience
- CISM, CISSP, GIAC certifications preferred
- Well versed in NIST Cybersecurity Framework
- Well versed in Agile development methodology and DevSecOps framework
- Written/spoken English proficiency required
- Strong interpersonal and oral communication skills
- Ability to translate highly technical information into plain language
- High level of analytical and problem-solving abilities.
- Highly self-motivated and directed.
- Strong organizational skills.
- Excellent attention to detail.
- Experience working in a team-oriented, collaborative environment.
- Ability to manage multiple priorities and work across multiple organizations and teams
-
مصر, Egypt Majid Al Futtaim Full time**BUSINESS INTRODUCTION** Majid Al Futtaim Holding is the leading shopping mall, retail, communities, entertainment developer and operator in the Middle East, North Africa, and Central Asia regions. With over 48,000 people, revenues of over US$ 11 Billion, and operations in 18 countries. Some of the iconic brands we carry include Mall of the Emirates,...
-
Sr. Supervisor, Technology Security Engineering
2 weeks ago
مصر, Egypt اورنچ مصر Full timeAbout the job Sr. Supervisor, Technology Security Engineering **Purpose of the job** Design, Implement and Continuously Improve the Security Controls for Orange EG Products & Services, and Insure the Confidentiality, Integrity & Availability of Orange EG Critical Systems. **Duties and responsibilities** - Perform initial risk assessment on any new system...
-
Information Security Governance
4 days ago
مصر, Egypt EGBank Full time**MAJOR RESPONSIBILITIES AND ACOUNTABILITIES** - Review and evaluate the design of security systems. - Review and evaluate security policies, controls and incident response planning in cooperation with stakeholders throughout the enterprise. - Review identity and access policies in cooperation with stakeholders throughout the enterprise. - Review...
-
Network & Security Team Leader
1 week ago
مصر, Egypt Interact Technology Solutions Full timeJob Duties and tasks: *Manage and resource planning to related professional services team activities to ensure the projects fulfillment. *Monitor and promote team development in technical and business aspects. *Calculate and Evaluate team KPI’s. *Review Solution Design and documentation. *Report to line manager any major/critical incidents on...
-
Technical Security Engineering, Advisor
2 weeks ago
مصر, Egypt اورنچ مصر Full timeAbout the job Technical Security Engineering, Advisor **Purpose of the job** Lead the activities of Design, Implement and Continuous Improvement of the Security Controls for Orange EG Products & Services, and Insure the Confidentiality, Integrity & Availability of Orange EG Critical Systems. **Duties and responsibilities** - Act as a technical reference...
-
IT Grc Specialist
1 week ago
مصر, Egypt CEQUENS Full time**Key Roles and Responsibilities**: **1. Governance**: - Develop and maintain IT governance policies, procedures, and standards in alignment with industry best practices and regulatory requirements. - Implement governance frameworks such as COBIT, ISO 27001, NIST, SOC 2, PCI etc., to ensure effective IT governance across the organization. - Coordinate with...
-
Risk and Performance Reporting Specialist
4 days ago
مصر, Egypt PepsiCo Full timeOverview: The Risk and Performance Reporting Specialist is a newly created role within Information Security reporting to the Director of Information Security Risk and Performance Management. The position is responsible for leading the Risk and Performance Management initiatives, enhancement projects, and will serve as a team lead within the RPMR group. The...
-
Info Security Specialist
2 weeks ago
مصر, Egypt PepsiCo Full time**Overview** The main purpose of the role is to lead, manage, and own the activities necessary to perform information security risk assessments on the third parties with which PepsiCo enters a business relationship for services around the world of varying levels of criticality and complexity. The third-party information security risk assessor will act as a...
-
Info Security Specialist
2 weeks ago
مصر, Egypt PepsiCo Full timeOverview: The main purpose of the role is to lead, manage, and own the activities necessary to perform information security risk assessments on the third parties with which PepsiCo enters a business relationship for services around the world of varying levels of criticality and complexity. The third-party information security risk assessor will act as a...
-
Network Security Engineer
6 days ago
مصر, Egypt Vodafone Full time**Role purpose**: - To Support in develop and maintain functional and secure networks, taking into consideration all available technologies and business requirements, troubleshoot Network & security environment problems, and provide technical support. **Key accountabilities and decision ownership**: - Analysing network security threats and developing...