< p>Manager IT Services Information Security amp Risk Audit amp Compliance IT Disaster Recovery Risk Management Oracle Peoplesoft – Cairo Egypt
< u>< strong>CA Global Headhunters has been retained by the Afreximbank an African focused Trade Finance bank to recruit for 21 positions. Should you meet the minimum requirements and wish to apply for the position please apply directly to CA Global Headhunters.
All roles offer Tax Free Salaries paid in USD
Risk Management
< u>< strong>Responsibilities
< u>< strong>
- Maintain a risk management framework.< li>
- Perform risk assessments on resources and projects to be protected.< li>
- Perform vulnerability assessments to evaluate the effectiveness of existing controls.< li>
- Report significant changes in risk to management on both a periodic and event driven basis.< li>
- Maintain and monitor a risk action plan.< li>
- Update security standards and guidelines procedures with results of risk assessments.< li>
< ul>Information Security Governance
< u>< strong>- Ensure a framework for information security governance and IT control.< li>
- Update and advise top management on security direction and issues.< li>
- Review current and potential legal and regulatory issues affecting information security and assess their impact on Afreximbank< li>
- Avail technical information about security systems and ongoing programs in the information security arena and especially as applied to financial organisations.< li>
- Provide technical security expertise to IT staff to ensure that the requisite level of security is implemented in all information assets.< li>
< ul>Information Security Policies
< u>< strong>- Leads the preparation and implementation of necessary information security policies standards procedures and guidelines < li>
- Maintain and review information security policies that support business goals and objectives and are consistent with applicable laws and regulations.< li>
- Maintain standards procedures and guidelines that support information security policies and ensure business processes and IT infrastructure activities address information security risks.< li>
- Maintain documentation of all information systems security and change management processes.< li>
< ul>Information Security
< u>< strong>- Oversee and direct information security activities in line with the information security operations and programme framework.< li>
- Monitor and report on the effectiveness and efficiency of information security controls and the compliance with information security policies.< li>
- Manage security plans and control techniques covering banking applications and supporting networks.< li>
- Maintain access rules and exercise adequate control over the administration of user ID’s.< li>
- Review and monitor change management procedures on all system changes systems configuration changes and application of security patches to ensure that information security is not compromised.< li>
- Perform system audit checks including pre implementation and post implementation of projects.< li>
- Monitor and review operations logs and event console activity to identify potential security related events and investigate all anomalies.< li>
- Manage system compliance to identified achievement targets for end points antivirus patches threats etc .< li>
< ul>Information Security Awareness
< u>< strong>- Lead and facilitate internal training and awareness of IT security policies controls and best practices as well as the impact of non adherence in order to
- Contribute to the implementation of IT governance < li>
- Promote accountability by business process owners and other stakeholders in managing information security risks.< li> < ul>< li>
< ul>Audit And Compliance
< u>< strong>- Ensure periodic IT audits assessments to confirm that
- The rules of use for information systems comply with the enterprise’s information security policies< li>
- The administrative procedures for information systems comply with Afreximbank information security policies< li>
- Change control management principles are adhered to< li>
- Software inventory licensing is adhered to across all systems< li>
- Services provided by other organisations including outsourced providers are consistent with established information security policies and< li>
- Non compliance issues and other variances are resolved in a timely manner.< li> < ul>< li>
- Conduct regular audits on IS facilities to ensure compliance to security policy standards and guidelines procedures.< li>
- Work closely with the Risk department as well as the Internal Auditor and respond to all external and internal audit issues raised.< li>
< ul>Incident and Response Management IT Disaster Recovery
< strong>- Lead activities relating to contingency planning business continuity management and IT disaster recovery in conjunction with relevant functions and third parties< li>
- Review response and recovery plans that include organising training and equipping the teams.< li>
- Periodically test the response and recovery plans where appropriate.< li>
- Ensure the execution of response and recovery plans as required.< li>
- Manage post event reviews to identify causes and corrective actions.< li>
< ul>Any other duties as may be assigned by management.
Requirements< u>< strong> < strong> Qualification and Skill < strong>- Bachelor’s degree in Computer Science Information Technology Computer Engineering Engineering Management Information Systems or Computer Engineering or other relevant degree from a recognized University a Master’s degree in a relevant field or a recognised professional qualification in lieu < li>
- Minimum of 8 years experience as Information Security and Risk Manager in a modern international ICT environment preferably an international bank< li>
- Information security management qualifications such as CISSP or CISM< li>
- Hands on team leadership and management experience ideally coupled with suitable management qualification< li>
- Typically a background in technical IT roles such as IT infrastructure architecture development or operations with a clear and abiding interest in information security< li>
- Sound knowledge and understanding of information processing environments infrastructure data communications and operating system administration and information security principles.< li>
- Must be highly aware of emerging trends in IT security.< li>
- Strong knowledge on various banking applications and infrastructure.< li>
- Experience of ERP Software Oracle SAP etc very desirable< li>
- Ability to communicate and function in a culturally diverse and change oriented setting < li>
- Excellent verbal and written communication skills in English. Knowledge of the Bank's other working languages is an added advantage< li>
- Willingness to travel and to work long hours where required in order to achieve the Bank's objectives < li>
< ul>Contractual information < u>< strong>- Permanent role< li>
- Willing and able to relocate to Cairo< li>
- Willingness to travel extensively and to work long hours where required in order to achieve the Bank's objectives< li>
- Ability to communicate and function in a culturally diverse and change oriented setting< li>
< ul>Please apply directly by clicking on the Apply Now button above and visit our websites
< strong>For Any Further Information Please Get In Contact With
< u>< strong>Sharon Mhambi
< strong>Recruitment Consultant Resourcer
CA Global Finance
< strong>CA Global will respond to short listed candidates only. If you have not had any response in two weeks please consider your application unsuccessful however your CV will be kept on our database for any other suitable positions.
Please apply directly by clicking on the Apply Button and visit www.caglobalint.com for the latest CA Global jobs.
Sharon Mhambi
< strong>Recruitment Resourcer
CA Global Finance
CA Global will respond to short listed candidates only. If you have not had any response in two weeks please consider your application unsuccessful however your CV will be kept on our database for any other suitable positions
from وظائف مطورين أوراكل في مصر http://ift.tt/2dTEdey
via IFTTT
- Ensure periodic IT audits assessments to confirm that
- Lead and facilitate internal training and awareness of IT security policies controls and best practices as well as the impact of non adherence in order to
from وظايف مصرية http://ift.tt/2e4wgiF
via IFTTT