Responsible for developing, reviewing, implementing and maintaining information security policies designed to protect information and any supporting information systems from any unauthorized access, use, disclosure, corruption or destruction
Develop policies, procedures and standards to ensure the security, confidentiality and privacy of information that is consistent with organizational Information Security Policy
Monitor and report on any information intrusion incidents and activate strategies to prevent further incidents.
Work with concerned stakeholders to ensure that information assets have been assigned appropriate security classifications.
Identifying the classification level of information asset
Defining and implementing appropriate safeguards to ensure the confidentiality, integrity, and availability of the information asset
Ensure compliance and report situations of non-compliance
Providing training for Information Security
Define ISMS and manage ISO 27k projects for small to mid-sized companies.
IT audits, ITGC, SSAE, SOC audits, IT Process Audit, Systems Audit, Gap assessment
Facilitate Audits with concerned stakeholders and external auditors.
Required Candidate profile :
Graduate or Master s in Engineering or IT security
ISO27001 Lead Auditor, CISA or CISM or similar certification
Experienced in ISO 27001
Experience as IS auditor / ISMS Consultant
Prior experience in consulting firms is added feature
Strong auditing skills
Excellent Communication Skills
Employement Category:
Employement Type: Full time Industry: Management Consulting / Strategy Role Category: Others Functional Area: Not Applicable Role/Responsibilies: Information Security Officer