hireejobsgulf

Specialist-Information Security

8.00 to 10.00 Years   Qatar   09 Feb, 2023
Job LocationQatar
EducationBachelor's degree / higher diploma
SalaryNot Mentioned
IndustryConstruction & Building
Functional AreaNot Mentioned

Job Description

Job purpose: The Specialist-Information Security responsibilities covers Information Security Management System (ISMS) and Identity and Access Control.The Specialist-Information Security develops and supervises the implementation of Information Security organizational and IT departmental policies and procedures for a secure and compliant management of Information Assets. As part of the ISMS, the incumbent develops an Information Risk Management Program that involves identification, assessment, and continuous Security audits on the different information Assets. Also, in charge of developing the organizations Information Security Awareness and Training Program covering new joiners and existing staff and contractors.The Specialist-Information Security defines and support the implementation of the different departments? access matrices.Main tasks and responsibilities (the position exist to perform the below tasks and essential activities)

  • Develops security policies, procedures, standards and guidelines; reviews existing security policies, standards, guidelines, and procedures to meet the security standards and frameworks. Conducts security audit and assess effectiveness of policy and procedures.
  • Review and support the development of systems Access Matrices.
  • Leads the implementation, operation and maintenance of an ISO2700x compliant Information SecurityManagement System or equivalent.
  • Documents communicate organizational and departmental policies, standards, procedures and guidelines.
  • Develop the Information Asset Management procedures and, in coordination with the different IT, clinical and support departments, performs asset discovery and provide guidance to complete the information assets and classification register.
  • Develops the IT Risk Management Strategy, Methodology, and Risk register.
  • Performs InformationSecurityRisk assessments and assess the control environment of the clinical /support processes and applications under review, including both manual and automated processes.
  • Monitors, manages and improves the effectiveness of the different types of information security controls (technical, process or physical controls).
  • Assists both internal and external audits relating toinformationsecurityas well as performing independent audits to validate completeness and accuracy of theinformationsecurityprogram.
  • Documents and maintains all records and evidences on implementing a successful information security management system based on security standards and frameworks adopted by Elegancia Healthcare.
  • Analyses and documents the existing user access and privileges provisioning/De-provisioning process, conducts process-reengineering to address security gaps.
  • In coordination with Clinical and support departments, supervises the development of departmental and application access matrices and validate before implementation.
  • Implement the automated access management review and validation process for user provisioning.
  • Manages the implementation of Identity management control solutions for an efficient and cost-effective management of users? accounts.
  • Manages the implementation of Access Control.
  • Assess and validate the controls and identity management architecture of all acquired applications and ensures compliance with Elegancia Healthcare policies before roll out for production use.
  • Monitors & reviews user access rights and privileges and generate reporting to the management on periodic basis, as per the Information Security policies requirements.
  • Adheres to Elegancia Healthcare standards as they appear in the Code of Conduct and Conflict of Interest policies

Keyskills :

APPLY NOW

Related Jobs

© 2023 HireeJobsGulf All Rights Reserved