A seasonal, experienced, highly skilled information security specialist with outstanding qualification and demonstrated track record of securing / managing information security functions/wings of large IT companies. The leadership position is focused on understanding the security challenges in the current and future state of business operations, and to prepare the organization with the right tools, skills, resources, relationships and capabilities against growing information security risks. Must have degree of Masters / 4 years Bachelors in Information Security / Computer Science / Information Technology / Project Management / Business Administration from some reputed foreign or HEC-recognized institution / university.

Required Competencies:

  • Professional security management certification like CCISO, CISM, CISSP, CISA, CEH, COBIT, ITIL, CompTIA Security+, SSCP, CCSP,
  •  Minimum 8 to 12 years of experience in a combination of information (cyber/network/data) security and risk management.
  • Knowledge of common information security management frameworks, such as ISO/IEC 27001, PCI-DSS and NIST.
  • Excellent analytical and problem solving and leadership skills.
  • Excellent written and verbal communication skills and high level of personal integrity.
  •  Innovative thinking and leadership with an ability to lead and motivate cross-functional, interdisciplinary teams.
  •  Experience with contract and vendor negotiations and management including managed services & Security Operation Center (SOC).
  •  Specific experience in Agile (scaled) software development or other best in class development practices.
  •   Experience with Cloud computing/Elastic computing across virtualized environments.

Responsibilities:

  •  Manage, lead, mentor and motivate a team of professionals at different levels of hierarchy in the Information Security (IS) wing to ensure optimal utilization of their maximum potential.
  •  Establish and maintain the enterprise vision, strategy, and program to ensure information assets and technologies are adequately protected.
  • Develop, implement and monitor a strategic, comprehensive enterprise information security and IT risk management program.
  •  Develop, maintain, enhance, implement and monitor information (Cyber/network/data) security management / information risk management processes / framework / methodologies compliance against CIA (Confidentiality, Integrity, and Availability).
  • Ensure the confidentiality, integrity and availability of organization's information, data and IT services.
  • Manage to provide a secure, reliable platform (application/network/infrastructure) organization-wide and to authorized third parties with the assurance that the platform is appropriate to process sensitive information.
  • Develop, implement, and maintain corporate-wide Information Security policies, standards and technologies.
  • Tracking latest IT security innovations and keeping abreast of latest information/cyber security technologies
  • Ensure Disaster Recovery and Business Continuity.
  •  Provide a centralized management structure for all information security functions.
  • Perform IT security risk assessments and reporting on ways to minimize threats.
  •  Develop strategies to handle security incidents and trigger investigations.
  • Ensuring incident identification, assessment, quantification, reporting, communication, mitigation and monitoring.
  • Work directly with the business units to facilitate risk assessment and risk management processes
  • Provide leadership to the enterprise's information security organization
  • Partner with business stakeholders across the company to raise awareness of information security and risk management concerns.
  •  Manage to perform internal information security audits on regular intervals against all technologies.
  • In Case of a Security Breach, leads incident response activities to minimize the impact of a Security Breach. Technical and forensic investigation into how the breach happened and the extent of the damage.
  •  Ensure compliance to legal, regulatory & contractual information security requirements.
  • Manage to conduct information security awareness sessions / workshops on regular basis.
  • ·Assist with the overall business technology planning, providing a current knowledge and future vision of technology and systems.
  •  Manage staffing, including recruitment, supervision, scheduling, development, evaluation, and disciplinary actions.
  • Ensure cybersecurity stays on the organizational radar.
  • Ensure that cybersecurity is truly a central part of organizational culture, keeping stakeholders at all levels informed and vigilant.
  • Any task assigned by management.

工作详细内容

全部职位:
1 发布
工作时间:
早班
工作类型:
部门:
Networks and Infrastructure
工作地址:
性别:
没有偏好
最低学历:
硕士
学位头衔:
Masters in Information Security / Computer Science / Information Technology / Project Management / Business Administration from some reputed foreign or HEC-recognized institution / university.
职位等级:
部门主管
经验:
8年 - 12年 (Relevant experience will be preferred.)
在之前申请:
Dec 01, 2021
发布日期:
Nov 05, 2021

Pakistan Revenue Automation (Pvt) Ltd

· 1001-1500 员工 - 伊斯兰堡

Pakistan Revenue Automation (Pvt.) Ltd. (acronym – PRAL) has extensive experience of working with federal and provincial tax and revenue agencies to provide wide variety of tax and revenue collection solutions. Since its incorporation in June, 1994, PRAL has been involved in the development of wide array of tax and revenue related solutions pertaining to Income Tax, General Sales Tax, Federal Excise, Customs, Capital Value Tax, Provincial Sales Tax & Services. etc. Over more than two decades of services, PRAL has gained valuable experience of increasing efficiency and efficacy of tax and revenue agencies through use of latest Information and Communication Technologies with Business Process Improvement / Re-engineering. PRAL has also proven its expertise in the areas of software development, project management, technical advisory and consulting services, managing data centers, large databases management, network administration, software implementations, trainings and data entry services. This wide spectrum of services offered by PRAL facilitates our valued customers looking for One-Stop Shop solutions from conceptualization to post-implementation operations. The essence of PRAL’s business strategy is to develop sustainable partnerships with its customers thus acting as a catalyst in transforming and adapting its IT solutions and integrating these to the “New Wave of Technological Innovations” to meet the global requirements of tax and revenue agencies.

你最大的竞争优势

快速得到有竞争力的分析和专业的对你的评定
联系我们团队的专业顾问来提升你的简历
尝试罗资 专业版

相同职位头衔

我在ROZEE上找到工作啦!