IT Services; Cyber & Network Security; Business Support Services
Functional Area
Not Mentioned
Job Description
Develop and Implement Security Policies: Design, implement, and enforce information security policies, standards, guidelines, and procedures to protect the organizations information assets.
Risk Assessment and Management: Conduct regular risk assessments and identify potential vulnerabilities and threats. Develop and implement risk mitigation strategies and controls to minimize risks to an acceptable level.
Security Incident Response: Establish and manage an incident response program to effectively respond to and resolve security incidents. Coordinate with internal stakeholders and external partners to investigate and address security breaches or incidents.
Security Audits and Compliance: Conduct periodic security audits to assess compliance with relevant laws, regulations, and industry standards. Ensure that security controls and practices meet legal and regulatory requirements.
Security Awareness and Training: Develop and deliver security awareness and training programs to educate employees about information security best practices, policies, and procedures.
Security Architecture and Infrastructure: Collaborate with IT teams to design and implement secure information systems and networks. Ensure that security controls are integrated into the organizations technology infrastructure.
Vendor Management: Assess the security capabilities of third-party vendors and manage vendor relationships to ensure compliance with security requirements and protect the organizations information assets.
Incident Monitoring and Threat Intelligence: Monitor security events and alerts from various sources, including security systems and threat intelligence feeds. Stay updated on emerging threats and vulnerabilities and take proactive measures to mitigate them.