Head Of Information Security
Current• Lead the Information Security structure and responsibility for Information security Governance, Risk, and Compliance in addition for planning and design of end-to-end security system for both IT and Network.• The responsibility also involves information security vendors management and supervising and advice on all operations related to information security systems.• Conducting Risk Assessment and Vulnerability Assessment for all related IT and Network nodes.• Defining all security… Show more • Lead the Information Security structure and responsibility for Information security Governance, Risk, and Compliance in addition for planning and design of end-to-end security system for both IT and Network.• The responsibility also involves information security vendors management and supervising and advice on all operations related to information security systems.• Conducting Risk Assessment and Vulnerability Assessment for all related IT and Network nodes.• Defining all security risks and their associated vulnerabilities.• Defining all threats and taking the required mitigations.• Implementing a security risk matrix with regular actions and follow up.• Developing required information security policies and procedures.• Ensure adherence to information security standards.• Following up all nodes and Systems are up-to-date patched, hardened, and configured in consistency with related policies, vendor recommendations and best practices.• Providing in-depth support for information security incidents including internal violations, hacker attacks and Denial of Services.• Assisting with the investigation of security breaches, policy violations and other security incidents.• Conducting and promoting Security Awareness for corporate employees where required.• Performing integration of security systems with other nodes and systems.• Playing the role of technical adviser to a variety of ad hoc committees dealing with matters of information security.• Designing, Implementing and managing the Information Security Operation Centre.• Develop regular consolidated information security reports from all security events gathered from various systems.• Perform regular checks and audits related to information security and reporting to the management. Show less