Information Security Governance
4 days ago
**MAJOR RESPONSIBILITIES AND ACOUNTABILITIES**
- Review and evaluate the design of security systems.
- Review and evaluate security policies, controls and incident response planning in cooperation with stakeholders throughout the enterprise.
- Review identity and access policies in cooperation with stakeholders throughout the enterprise.
- Review investigations after breaches or incidents, including impact analysis and recommendations for avoiding similar vulnerabilities;
- Ensure compliance with the changing laws and applicable regulations;
- Translate that knowledge to identification of risks and actionable plans to protect the business;
- Schedule periodic security audits;
- Make sure that security policies and procedures are communicated to all personnel and that compliance is enforced;
- Constantly update the security strategy to leverage new technology and threat information;
- Brief the executive team on status and risks, including taking the role of champion for the overall strategy and necessary budget in cooperation with stakeholders throughout the enterprise.
- Communicate best practices and risks to all parts of the business, outside IT.
- Develop, implement and monitor in cooperation with stakeholders throughout the enterprise a global strategic, comprehensive enterprise information security and risk management program to ensure that the integrity, confidentiality and availability of information is owned, controlled or processed by the organization.
- Manage the enterprise's information security organization consisting of direct reports and indirect reports. This includes hiring, training, staff development, performance management and annual performance reviews.
- Develop security organization talent, engaging/managing third parties as needed to ensure the required capabilities are available either internally or externally.
- Develop, maintain and publish up-to-date information security policies, standards and guidelines in cooperation with stakeholders throughout the enterprise. Oversee the approval, training, and dissemination of security policies and practices.
- Implement a standard Risk Philosophy, Risk Universe & Risk Taxonomy.
- Develop and manage information security budgets and monitor for variances.
- Create and manage information security and risk management awareness training programs for all employees, contractors and approved system users.
- Work directly with the business units to facilitate security risk assessment and risk management processes, and work with stakeholders throughout the enterprise on identifying acceptable levels of residual risk.
- Provide regular reporting on the current status of the security program to management, senior managers and the Board of Directors as part of a strategic enterprise risk management program.
- Create a framework for roles and responsibilities with regard to information ownership, classification, accountability and protection.
- Develop and implement an information security management framework that aligns with EGBank business model, EGbank risk profile, and EGbank existing compliance initiatives and efforts.
- Coordinate information security and risk management projects in cooperation with stakeholders throughout the enterprise from across the business unit teams and IT organization.
- Work with our compliance team to ensure that security and privacy programs are in compliance with relevant laws, regulations and policies to minimize or eliminate risk and audit findings.
- Define and facilitate the global information security risk assessment process including the reporting and oversight of treatment efforts to address negative findings.
- Manage security incidents and events to protect corporate IT assets, including regulated data and the company's reputation.
- Monitor the external threat environment for emerging threats, and advise relevant stakeholders on the appropriate courses of action.
- Liaise with external agencies, such as law enforcement and other advisory bodies as necessary, to ensure that the organization maintains a strong security posture.
- Develop and oversee effective disaster recovery policies and standards to align with enterprise business continuity management program goals in cooperation with stakeholders throughout the enterprise.
- Coordinate the development of implementation plans and procedures to ensure that business-critical services are recovered in the event of a security event.
- Provide direction, support and in-house consulting in these areas.
- Facilitate a metrics and reporting framework to measure the efficiency and effectiveness of the program, facilitate appropriate resource allocation, and increase the maturity of the security.
**MINIMUM**
**JOB REQUIREMENTS**
- Minimum education:
- B.Sc of Engineering, Computer Science or similar discipline- Languages- Fluency in English and Arabic Spoken and Written- Ideal experience- 10+years of relevant professional work experience
-
مصر, Egypt Majid Al Futtaim Full time**BUSINESS INTRODUCTION** Majid Al Futtaim Holding is the leading shopping mall, retail, communities, entertainment developer and operator in the Middle East, North Africa, and Central Asia regions. With over 48,000 people, revenues of over US$ 11 Billion, and operations in 18 countries. Some of the iconic brands we carry include Mall of the Emirates,...
-
Information Security Engineer
2 hours ago
مصر, Egypt EGIC Full time**Job Purpose** Understand information security, technology architecture, and business security. Design, direct, and deliver on IT security-related activities in an organization. Serve as a bridge between the employee—often the end-user of security processes—and the technical aspects of IT security. Collaborate, work with their teams to develop strong...
-
Information Security Senior Grc
2 weeks ago
مصر, Egypt MigrationIT Full time**Job Information**: Industry - Financial ServicesWork Experience - 4-5 yearsCity - CairoState/Province - AI QahirahCountry - EgyptZip/Postal Code - 11311- Conduct technical risk assessments and collaborate/communicate in a simple, clear, and concise manner to the various communities within our organization. - Develop the required Information Security...
-
Information Security Junior Grc
2 weeks ago
مصر, Egypt MigrationIT Full time**Job Information**: Industry - Financial ServicesWork Experience - 1-3 yearsCity - CairoState/Province - AI QahirahCountry - EgyptZip/Postal Code - 11311- Provide guidance and share best practices for design and implementation of the GRC platforms. - Ensure partnership with different teams for Proactive Compliance Risk Management - identification,...
-
Third-party Information Security Assessor
6 days ago
مصر, Egypt PepsiCo Full timeOverview: Our Information Security Group at PepsiCo is looking for information/ cyber security professionals to join our very exciting journey to manage information/ cyber security risks for PepsiCo as we engage thousands of third parties around the world. The Third-Party Information/ Cyber Security Compliance Associate Specialist will be responsible for...
-
Information Security Senior Vulnerability
2 weeks ago
مصر, Egypt MigrationIT Full time**Job Information**: Industry - BankingWork Experience - 4-5 yearsCity - New CairoState/Province - AI QahirahCountry - EgyptZip/Postal Code - 11311- Monitor the external web and identify zero-day threats and new and evolving threats - Analyze the threats and develop flash, advisory and operations reporting templates, etc. - Coordinate with CSOC analysts on...
-
Information Security Engineer
2 weeks ago
مصر, Egypt SSC Egypt Full timeDevelop, execute and track the performance of security measures to protect information and network infrastructure and computer systems. - Design computer security strategy and engineer comprehensive cybersecurity architecture. - Identify, define and document system security requirements and recommend solutions to management. - Configure, troubleshoot and...
-
Information Security Threat Intelligence Senior
2 weeks ago
مصر, Egypt MigrationIT Full time**Job Information**: Industry - BankingWork Experience - 4-5 yearsCity - New CairoState/Province - AI QahirahCountry - EgyptZip/Postal Code - 113111- Monitor the external web and identify zero day threats and new and evolving threats 2- Analyze the threats and develop flash, advisory and operations reporting templates, etc. 3- Coordinate with CSOC analysts...
-
Information Security Specialist
2 hours ago
مصر, Egypt Allianz Egypt Full time**Responsibilities**: - Control & Review Audits/assessments; management of incident prevention, detection and incident response and ensure ongoing maintenance of security. - Risk Assessment Develop and implement an ongoing risk assessment program targeting information security. Recommend methods foe vulnerability detection and remediation and oversee...
-
Information Security Engineer
2 days ago
مصر, Egypt IT VIKINGS Full time-Job Description: - Installation, configuration and maintenance for network Security equipment (Web Security, Mail Security, End point Security, Data Security, etc.) for IT Vikings customers. - Provides remote and on-site support to our customers. - Performing troubleshooting and root cause analysis on security appliances, Network appliances. - Prepare and...