Role Objective:
Assist in researching, developing, and reviewing the Bank's information security, and privacy compliance and governance that includes information security, and privacy policies and procedures.
Detailed Duties and Responsibilities:
-
To assist in managing and developing the Bank's Information Security Management System (ISMS) in compliance with IS027001 certification.
-
Responsible for monitoring the effectiveness of information security and privacy adopted and exploring new innovative information security and privacy trends in the Bank.
-
Perform information security risk assessments and serves as an internal auditor for security issues
-
Responsible of promoting information security, privacy and anti-fraud awareness amongst the employees.
-
Assist in the preparation and maintenance of documentation related to information security and privacy.
-
Responsible for incident response planning and security, and privacy breach investigation
-
Liaison with other teams members to identify current and future internal and external security vulnerabilities to reduce information security risks.
-
Participate in new systems design related exercises from an ISMS standpoint to assist in the selection of an efficient, effective and well controlled system.
-
Responsible to actively participate in the Bank's Business Recovery and Contingency Planning process to ensure continuity of operations as outlined in the IS027001.
-
Stays abreast of information security, privacy and anti-fraud trends and issues by attending seminars, participating in discussions, and communicating with colleagues in the same field in order to promote.
-
Performs other related duties and responsibilities as directed by authorized bank's management.
Educational Qualifications:
Bachelor's Degree in Computer Engineering / Computer Science / Information Systems preferably with CRISC/ SSCP certification.
Experience:
0 - 2 years experience in IT and information Security related areas within a financial sector.
Must have strong writing skills to craft policies and procedures.