Manages projects, tasks and activities of the IT Security. Management responsibilities for IT security for its infrastructure, data resources and systems.
Applies significant knowledge of industry trends and developments to improve Information Security, service and performance.
Remains at the forefront of emerging industry practices. Identifies opportunities for improvement and makes constructive suggestions for change.
Leads the design, implementation, operation and maintenance of the Information Security Management System based on the ISO/IEC 27000 series standards, including certification against ISO/IEC 27001 where applicable.
Able to manage the internal / external audit requirements and conduct periodic reviews on implemented controls.
Leads or commissions suitable information security awareness, training and educational activities.
Leads or commissions information security risk assessments and controls selection activities