Epicareer Might not Working Properly
Learn More

IT Security Manager

Salary undisclosed

Apply on

Availability Status

This job is expected to be in high demand and may close soon. We’ll remove this job ad once it's closed.


Original
Simplified
IT Security Manager

ROLE SUMMARY
  • Responsible for management of IT Security - System, Infrastructure and Application Security Administration.
  • Cultivate and maintain IT security awareness.
  • Evaluate and enhance IT security architecture.
  • Support the development and implementation of IT Strategic Plan.
  • Plan, organize, review and recommend on matters pertaining to IT security.
  • Encourage and implement compliance with appropriate standards, procedures and controls for information security.
  • Regular review and ensure compliance to audit requirement, BNM guidelines, legal and regulations.
  • Point of contact for any IT audit related matters.
  • Access and analyze risk on IT security task-related subject matters.
  • Coordinator for IT Risk Management on Micro TRP and Macro TRP.
  • Any other task assigned by HOD
MAIN RESPONSIBILITIES

IT Strategic Planning
  • Provide strategic and tactical planning, development, evaluation and co-ordination of IT Security.
  • Support the development and implementation of IT Strategic Plan, IT Security Architecture and Best Practices.
Threat and Vulnerability Management
  • Conduct periodic vulnerability assessment of the IT application systems, system management, network and communication infrastructure, and security infrastructure.
  • Analyze the logs of the various systems including firewalls, intrusion detection/prevention systems, etc for initiating preventive and/or corrective measures.
  • Identify protection goals, objectives and metrics consistent with IT and corporate risk management strategy.
  • Continuously monitor, measure, and report security posture to management.
Identity and Access Management
  • Ensure that process exist in the company for the creation, modification, access privileges and deletion of user id. Conduct review to assess that the access privileges are on the basis of need to know.
  • Communications and Relationship
  • Advise management of risks and best security practices
  • Work with business management to prioritize security initiatives and spending based on appropriate risk management and/or financial methodology.
IT Security Policies and Procedures
  • Manage the development and implementation of IT security policies, standards, guidelines and procedures to ensure on-going maintenance of security.
  • Physical protection responsibilities will include asset protection, access control systems, etc.
  • Information protection responsibilities will include network security architecture, network access and monitoring policies, employee education and awareness, etc.
IT Risk Management and Compliance
  • Conduct regular review and vulnerability testing on application systems, system management, network and communication management to ensure compliance to BNM Guidelines, audit guidelines, IT Security Policy, Procedures and Standards.
  • The incumbent will act as the coordinator for Macro- and Micro-TRP by ensuring risk identification
  • analysis, control and mitigation activities are carried out.
  • Ensure proper documentation on critical IT systems and services to facilitate disaster recovery.
  • Work and adopt G-ITR best practices to include in IT Security setup
Incident Management
  • Oversee incident response planning as well as the investigation of security breaches and assist with disciplinary and legal matters associated with such breaches as necessary.
  • Prioritize and resolve the security incident and service request within the agreed service level.
  • Consultation Services
  • Work with external consultants or IT security service providers as appropriate for security audit and solution.
  • Provide support to the other IS support teams in security design and solution.
  • Recommend security solutions to strengthen and secure the business environment towards more effective and increase competitive advantage.
  • Participate in systems design to ensure implementation of appropriate security policies; evaluate the security posture of computers and networks.
Talent Management
  • Identify and recruit people with the right skill set and mindset for security administration.
  • Identify competencies and training needs of the IT security staff
  • Train and develop IT security staff
Leadership
  • Works cooperatively foster teamwork using effective communication and helping peers and subordinates to meet projects and service expectations.
  • Has in depth knowledge in own discipline
  • Ability to solve complex problems
  • Work independently with minimum guidance
  • Ability to lead projects
  • Collaborate, assist and work closely with cross-functional colleagues
  • Using best practices to improve processes and governance.
About Cognizant:

Cognizant (Nasdaq: CTSH) engineers modern businesses. We help our clients modernize technology, reimagine processes and transform experiences so they can stay ahead in our fast-changing world. Together, we're improving everyday life. See how at www.cognizant.com or @cognizant .
Job ID 45173