Assistant Manager, It Security Department At Mtb
Gulshan Avenue, Dhaka
• Major contribution in PCI DSS project- Develop RFP, work for vendor selection process, risk assessment, coordinate with stake holder to remediate the findings towards the protect Go-Live.• Develop and establish of Information Security Governance, Risk response and Compliance utilizing standards based controls aligned to business specific threats.• Develop and implement ICT security Policies, MTB Central BCP and Procedures as per Bangladesh Bank guideline, ISO 27001 and SWIFT CSP Standard as well as ensure those are reviewed and updated regularly.• Develop and implement Baseline Standards for Core Routers, Core Switches, Core Firewalls and Servers followed by CIS Benchmark.• Ensure that controls are adequate to meet security requirements as well as to protect sensitive information and informaiton systems.• Ensure yearly risk assessment in collaborating with Risk Management Department.• Ensure risk assessments for applications and systems, identify areas of potential vulnerability and recommend the remediation plan and compensating controls before Go-Live.• Conduct periodic vulnerability assessment of informaiton assets of the Bank and analyze the logs of the various systems for initiating preventive measures.• Business Continuity and comprehensive disaster recovery plan for informaiton systems in line with Bangladesh bank and International standard.• Ensure that process exist in the Bank for the creation, modification, access privileges and deletion of user id. • Conduct review to assess that the access privileges are on the basis of need to know.• Monitor compliance with information security policies and procedures, referring findings to the appropriate stake holder's responsible person.• Arrange information security awareness through training, quizzes and related methods amongst staff within the Bank.