Royal Airport Services is looking for a qualified Information Security candidate to provide expert advice, support & management on information security related matters throughout the organization including maintaining & continually improving the Information Security Management System (ISMS) in accordance with ISO 27001.

The Information Security Candidate will…

  •  Identify & mitigate information security risks in line with industry practices, the risk appetite of the business & any legal, regulatory or contractual requirements
  •  Ensure compliance to legal, regulatory & contractual Information Security requirements & internationally recognized standards are integrated as part of “business as usual” activities
  •  Ensure all stakeholders operate under similar requirements & conduct appropriate & proportionate due diligence assessments
  •  Undertake Business Impact Assessments (BIA) and Information Security Management Reviews as necessary across the business – identifying risks, deficiencies, improvements & requirements in operational & technical controls
  •  Manage & update Information Security policies, standards & operational processes
  •  Must have a strong background in information technology with a clear understanding of the challenges of information security.
  •  Excellent analytical and problem-solving abilities to identify and fix security risks. To build understanding and awareness of security issues throughout the organization
  •  Assess the organization’s security measures, such as firewalls, anti-virus software and passwords, to identify any weak points that might make information systems vulnerable to attack.
  •  Prioritize security coverage to ensure that strategically important data, such as business information or personal data, receives the highest levels of protection.
  •  Provide training for employees, explaining security risks and demonstrating good practices, such as using strong passwords and protecting data when they use mobile devices outside the office.
  •  Set up procedures and automated processes to monitor the status of computers and networks.

Assessing the risks to computer systems and planning to minimize possible threats

  • Upgrading existing security systems or designing new ones
  • Testing security products and evaluating them
  • Simulating security breaches to test procedures
  • Making plans for disaster recovery in case security is breached
  • Carrying out corrective actions in the event of a breach
  • Looking for weak points in the system and securing them
  • Ensuring that international and national network security standards are met
  • Preparing technical documentation and reports for users and managers.

Experience required

  •  Min 5 years’ experience in Information Security
  •  Expert knowledge of ISO 27000 family
  •  Expert knowledge of Information Security audit
  •  Graduate with relevant degree
  •  CISSP / CISA or equivalent Information Security or Systems Audit accreditation
  •  ISO 27001 Lead Auditor or Implementer

工作详细内容

全部职位:
1 发布
工作时间:
早班
工作类型:
工作地址:
性别:
没有偏好
最低学历:
学士
学位头衔:
Graduate with relevant degree
职位等级:
资深专业人员
经验:
5年 - 7年 (Min 5 years’ experience in Information Security, Expert knowledge of ISO 27000, Information Security Audit, CISSP/CISA, ISO 27001 Lead Auditor/Implementer)
在之前申请:
Jan 31, 2021
发布日期:
Dec 30, 2020

MENZIES-RAS Pvt Ltd

· 2001-2500 员工 - 伊斯兰堡

Menzies-RAS (Pvt.) Ltd. is an ISO 9001:2015 & OHSAS 18001:2007 Certified Ground Handling Company, which right from its inception embarked upon the mission to introduce the best “Ground Handling Practices” consistent with the International Standards. The tenets of best practices in passenger handling, cargo management, ramp operations, baggage handling, equipment reliability, occupational health & safety, security and human resource development are our hall mark.

你最大的竞争优势

快速得到有竞争力的分析和专业的对你的评定
联系我们团队的专业顾问来提升你的简历
尝试罗资 专业版
我在ROZEE上找到工作啦!