Information Security Manager
5 days ago
**About the Role**:
The Information Security Manager, supports the organization’s overall Information Security including Cybersecurity posture and culture. The Information Security Manager will require both strong technical and interpersonal skills to effectively analyze information systems, research and validate alerts, and operate security tools for monitoring MTS environment. In this role, the incumbent must make well executed judgments in developing and deploying solutions as a part of Application Security. This individual will be required to oversee and coordinate with Information Security team members, members of other internal IT teams, service vendors, and stakeholder groups to ensure the efficient, timely delivery of security recommendations.
This role involves developing security policies, conducting risk assessments, and managing security technologies to protect the company's assets from threats and vulnerabilities.
**Key** Responsibilities**
- Evaluate/assess Application Security Architecture and suggest recommendations. Provide best practices.
- Prepare Threat Models for Application security and recommend mitigations.
- Support administration of local and vendor managed security solutions for MTS environment.
- Analyze security threats, vulnerability assessments, and audit results to recommend security solutions that enable business objectives.
- Work with the Application Engineering teams to ensure Static Application Security Testing is performed as part of CI/CD. Provide guidance on remediation.
- Oversee conducting Dynamic Application Security Testing. Review findings and engage Application Engineering teams for remediation.
- Review and improve Access Management & Controls.
- Collaborate with other teams to support response efforts to security-related findings or concerns.
- Oversee reporting on incident response metrics and providing assessment reports.
- Continuously improve the organization’s security stance and framework.
- Help to develop and maintain Security Best Practices manual/portal.
- Assist with the organization’s security awareness training program.
- Recommend and participate in the design and implementation of policies, procedures, standards, tools, and methodologies.
- Work with Security Operations Center to analyze and respond to alerts from automated logging, monitoring tools. Review and update the incident response and disaster recovery plans as needed
- Maintain up-to-date knowledge of the Information security industry, including awareness of new or revised security solutions and improved security processes.
- Keep a keen watch for new vulnerabilities and exploits and execute documented incident response procedures to deal with them.
**Experience & Skills**
- 7-10 years of experience working in IT, and
- 7-10 years of experience in Information Security.
- Familiar with OWASP Top 10.
- Familiar with Threat Modeling tools/process.
- Familiar with SAST and DAST tools/process.
- Familiar with Identity and Access Management, IGA, PAM.
- Familiar with DevSecOps, CI/CD.
- Familiar with security best practices of IT networks.
- Familiar with security best practices of public or private clouds.
- Familiar with NIST SP 800-53, CSF.
- Experience managing security service providers to complete regular duties.
- Experience leading other team members.
**Minimum Qualifications**
Any combination of education and experience that would likely provide the required knowledge, skills, and abilities as well as possession of any required licenses or certifications is qualifying
- Strong knowledge of industry standards and best practices for Information Security
- Ability to set and manage priorities judiciously
- Excellent written and oral communication skills
- High Emotional Intelligence (interpersonal skills)
**Education**
- B.S. degree in Computer Science or related technical discipline or any other college discipline with additional 2 years of Information Security experience and CISSP certification.
**Certifications**
- Certifications such as CISSP or CISM is required.
- Certifications such as GCIH, OSCP, ISO 27001 LA are highly desirable.
JfsGCVcgMw
-
Senior Information Security Engineer
2 weeks ago
القاهرة, Egypt Orange Egypt Full time**Purpose of the job** To manage and support Information security technology tools to meet organizational needs. **Job Location: New Capital Administrative City, Cairo** **Key Responsibilities**: 1. maintaining and troubleshooting second layer of support to theses tools 2. Troubleshoot raised issues from operation team 4. Work with vendors to...
-
Sr. Specialist, Information Security
2 weeks ago
القاهرة, Egypt Egyptian Banks Company Full timeProvides detailed security assessment and review for IT security infrastructure - Reviews security requirements and assesses the security posture of current EBC payment solution and new projects to identify gaps or improvements based on risk assessments, threat modeling, and technical testing - Participates in design and initial implementation of new...
-
Grc Junior Specialist
3 days ago
القاهرة, Egypt Giza Systems Full timeThe Role **Job Description Role**: GRC Junior Specialist job is to participate in information security Governance, Risk Management and Compliance Engagements within Jafeer and for Jafeer Customers. Responsibilities: - Participate in various IT Risk Management & Business continuity initiatives - Ensure that requirements in IT Audit, Standard, Policy,...
-
Grc Senior Specialist
5 days ago
القاهرة, Egypt Giza Systems Full timeThe Role **Job Description Role**: GRC Senior Specialist job is to lead information security Governance, Risk Management and Compliance Engagements within Jafeer and for Jafeer Customers. Responsibilities: - Lead/Participate in various IT Risk Management & Business continuity initiatives - Ensuring that requirements in IT Audit, Standard, Policy, Compliance...
-
Cyber Security Manager
23 hours ago
القاهرة, Egypt Egis Group Full time**Company Description** Egis is an international player active in architecture, consulting, construction engineering and mobility services. We create and operate intelligent infrastructures and buildings that respond to the climate emergency and contribute to more balanced, sustainable and resilient territorial development. Operating in 100 countries, Egis...
-
Regional Security Manager
23 hours ago
القاهرة, Egypt Dell Full timeThe Dell Security & Resiliency organization manages the security risk across all aspects of Dell’s business. With team members located in over 15 countries, you will have an excellent opportunity to influence the security culture at Dell and further develop your career. Join us as **Regional Security Manager** on our **Global Security Operations** in the...
-
القاهرة, Egypt Mastercard Full timeOur Purpose We work to connect and power an inclusive, digital economy that benefits everyone, everywhere by making transactions safe, simple, smart and accessible. Using secure data and networks, partnerships and passion, our innovations and solutions help individuals, financial institutions, governments and businesses realize their greatest potential. Our...
-
Security Engineer
23 hours ago
القاهرة, Egypt CrossWorkers Full time**Industry**: IT Software - **Reporting Line**: SDM-Head of Nearshore Centre - **Employment Type**: Full Time - Annual Contract - **Level**: Senior - **Location**: Cairo Office, New Cairo. - **Job Function**: Technical Position We're seeking a proficient **Security Engineer** to join our team at Crossworkers. In this position, you will be responsible for...
-
Regional Security Officer
2 weeks ago
القاهرة, Egypt World Health Organization Full time**Grade**: P5 **Contractual Arrangement**: Fixed-term appointment **Contract Duration (Years, Months, Days)**: 2 years (Subject to availability of funds, satisfactory performance.) **Job Posting**: Jan 30, 2025, 2:03:30 AM **Closing Date**: Feb 23, 2025, 4:59:00 PM **Primary Location**: Egypt-Cairo **Organization**: EM/BOS Business...
-
Senior Security Analyst
5 days ago
القاهرة, Egypt Integrated Technology Group Full time**Responsibilities**: - Conduct in-depth security reviews of complex software code to identify and mitigate advanced vulnerabilities. - Assist in designing and implementing secure coding practices and architecture standards. - Conduct threat modelling exercises to identify potential security threats and vulnerabilities. - Evaluate and recommend security...