|
||||||||||||||||||
الوصف الوظيفي Establishing Information Security and Risk Management policies and procedures based on International well-established standards such as ISO 27001:2013 and ISO 31000:2018. Ensuring compliance with ISO 27001:2013 information security standard. Monitoring IT security practices. Reviewing IT security settings and configurations and enforcing changes when necessary. Managing and tracking corporate risk register. Enforcing risk assessment methodologies based on global standards and best practices. Information security monitoring to ensure protection of SPSP information systems through Security Incident and Event Management (SIEM) and/or Managed Security Spreading awareness Of information security through various means, such as live sessions, on-line training and e-mail. Reporting corporate risks to SPSP Audit and Risk Committee if deemed necessary. المهارات CRISK or ISO 31000 certification and knowledge. Thorough Knowledge of risk management Sound independent judgement Very good Communication and interpersonal skills. Must be able to work independently as well as in teams. High Analytical and problem-solving skills. Independent, self-driven and proactive attitude. Master’s in information security is desirable. تفاصيل الوظيفة |
||||||||||||||||||