Sunday, May 22, 2016

Opening for Information Security Engineer (Compliance) with WTS Energy

Job Purpose & Scope:

  • To work as a member of Information security team and implement effective security and risk management practices for all IT infrastructure, internet, intranet, e-business solutions, external remote access services.
  • Responsible for implementation of information security policies and procedures. Ensures that IT security related systems (e.g. anti-virus, firewall etc) are appropriate, and properly maintained and administered.
  • Responsible for performing periodic checks on systems and reports results based on risk assessment and category level, carries out an internal audit of the information security function and advises on best practice on implementing effective procedures based on company policies and international standards. Ensures that adequate Information Security-training program is developed, promoted and administered. 

Principal Accountabilities:

  • To ensure that the IT security policies, procedure, standards and guidelines are properly implemented.
  • Review, monitor, investigate and report any incidents of attacks against the company.
  • Work as a member of security operations center for security monitoring on IT and OT networks
  • Performs forensic investigations as required by other entities of the company (e.g. Internal Audit)
  • Provide security advice, support and direction to any technical and administrative personnel assigned to work involving computer security.
  • Work as a part of the team on evaluating new security software and hardware solutions.
  • Recommend actions/practices to management in order to ensure compliance with security and regulatory requirements in decision-making process.
  • Ensure and implement compliance with state information security and risk management policies, standards and guidelines.
  • Perform risk analysis process (Identification and prioritization, counter measure identification, plan and follow-up) on new IT projects and solutions.
  • Identify vulnerabilities and develop and ensure the implementation of the appropriate solutions to eliminate or minimize their potential effects.
  • Responsible for developing, testing and maintaining IT Disaster Recovery plans.
  • Provide security input and recommendations to the software review committee on the evaluation of new software and hardware systems.
  • Responsible for developing, testing and maintaining Incident response program
  • Provide quarterly reports on information security status to the IT steering committee and IT manager (when required)
  • Responsible for ensuring and organizing awareness process for all the Company IT Infrastructures.
  • Review of new systems designs and major modifications for security implications, prior to implementation; participate in change management approvals.


Organizational Relationships (Work Contacts):

Regular contacts with IT at all levels and with all IT users to implement and manage the information systems security policy.
Company & other OPCO’s at equivalent level to coordinate/participate on IT Security matters, when the need arises.
Vendors and business solution providers for exchange of information & technical/commercial clarifications, on regular basis.

Minimum Requirement:

Qualification:

Bsc. In computer science, Information systems engineering or related discipline.
Certified Information Systems Auditor (CISA)
Microsoft Certified System Engineer (MCSE)
Certified Information systems security Professional (CISSP)
SANS Certification desirable

Technical Knowledge & Skills:

At least 6 years’ experience in Information Security Compliance, conducting risk assessment and use of risk assessment tools in an enterprise environment.
In-depth technical knowledge, spanning a range of system security hardware and software products.
Have the ability and capability of training IT personnel as well corporate computing users.

Behavioral Skills:

Has flexibility, influence & persuasion.
Has the willingness to challenge existing practices.

Other Knowledge & Skills:

Proficient in making oral & written presentations and reports.
Strong communication skills.
Fluent in English language.

Terms and conditions:

Employment Type: Direct Hire
Duration: Long term
Resident based full time job
Salary is negotiable and will be fix by the client depending on the interview outcome.

Click on THIS link to apply.

No comments:

Post a Comment