Employer Active
Job Alert
You will be updated with latest job alerts via emailJob Alert
You will be updated with latest job alerts via emailVMS ID
Demand No
Grade
JD
CGEMJP
- Security and Compliance lead
B2
Job Title: Security and Compliance lead
Responsibilities:
1. Develop and Implement Security Policies: Create and maintain security policies and procedures to ensure compliance with industry regulations and standards.
2. Conduct Risk Assessments: Perform regular security risk assessments to identify vulnerabilities and implement mitigation strategies.
3. Manage Security Audits: Oversee internal and external security audits and ensure timely resolution of any findings.
4. Training and Awareness: Conduct security training programs for employees to promote a culture of security awareness.
5. Compliance Monitoring: Monitor compliance with security policies and regulatory requirements and report on compliance status.
6. Stakeholder Coordination: Coordinate with regulatory bodies auditors and other stakeholders on security risk-related matters1.
7. Continuous Improvement: Drive continuous improvement in security compliance practices and benchmark performance against industry peers1.
8. Incident Response: Develop and maintain an incident response plan to address security breaches and incidents.
Technical Skills:
1. Information Security Management: Deep understanding of security frameworks (e.g. NIST ISO 27001 PCI-DSS) and best practices.
2. Risk Management: Ability to identify assess and mitigate security risks.
3. Incident Response: Proficiency in developing and executing incident response plans.
4. Compliance Knowledge: Familiarity with regulatory requirements and compliance standards (e.g. GDPR HIPAA).
5. Security Technologies: Experience with security tools and technologies such as firewalls intrusion detection/prevention systems and encryption.
Soft Skills:
1. Strong analytical and problem-solving abilities to address complex security challenges.
2. Excellent verbal and written communication skills adaptability
3. Capability to conduct security training and awareness programs for employees.
4. Ability to manage and connect with various teams and coordinate with various stakeholders.
5. Ensure thoroughness in security assessments and audits. stay updated with the latest security trends and adapt to evolving threats.
Qualifications:
Education: Bachelors or masters degree in computer science Information Technology Information Security or a related field.
Certifications: Relevant certifications such as CISSP CISA CISM ISO27001 or CRISC.
Experience: Proven experience in security and compliance roles with a strong understanding of security frameworks and regulations (e.g. NIST PCI COBIT).
Skills: Excellent communication skills ability to manage multiple projects and strong analytical and problem-solving abilities.
Full-time