Search by job, company or skills

Cybersecurity Governance and Assurance Specialist

6-8 Years
  • Posted 7 hours ago
  • Be among the first 10 applicants

Job Description

Job description:

Key Responsibilities

  • Responsible for the management and enforcement of IS related policies, processes and procedures.
  • Execute policies, processes and procedures to facilitate effective Cyber related-risk Process and Control arising from Audit Findings or Process improvement maturity
  • Partner and work with internal stakeholders to review, identify, streamline and implement process improvements with regards to Cyber risk management
  • Reference to regulator's notices, circulares and guidelines (such as, TRM, Cyber Hygiene) to assess risk and gaps, and work with Line 2 and Tech to improve policies and processes to mitigate risks, minimize their impact to operations
  • Prepare and provide data for risk analysis and reporting.
  • Communicate and provide guidance of new IS policies and standards to relevant stakeholders.
  • Support IS related audits, regulatory inspections, Risk and Compliance activities and providing support to business audits that have IS involvement.
  • Review the audit findings with key stakeholders to determine audit findings root cause, formulate action plans accordingly and verify remedial solutions for closure
  • Support audit lifecycle from start to end (eg kick off meeting, RFI, fieldwork, reporting and closure of audit findings).
  • Ability to innovate and automate as required

Requirements

  • Degree in Computer Science, Engineering or any other related disciplines with at least 6 years of progressive experience in Information security, including experience in security policy development, risk assessment, compliance implementation & monitoring and governance 
  • Good working knowledge of enterprise security risk management methods and techniques to successfully deliver the security risk management and assessment outcome.
  • Prior experience in implementing a program which includes the collation, management and reporting of security metrics (KRI) such as vulnerability management, open software security vulnerabilities, penetration testing findings, security alerts and incidents
  • Experienced in information security frameworks including ISO27000 standard, NIST framework and regulations such as Cyber Hygiene Notice, Technology Risk Management Guidelines and Personal Data Protection Act.
  • Ability to work in a team environment and work independently with minimal supervision and produce results that meet standards of quality, timeliness and acceptability
  • Willingness to deep-dive and learn about the Information Security function within the payments domain
  • Strong writing, communication and inter‐personal skills 

More Info

Job Type:
Industry:
Employment Type:

About Company

Job ID: 152731375

Beware of Scammers

We don’t charge money for job offers