The Position duties & responsibilities are as follows :
Work alongside other Cybersecurity and Compliance analysts and report directly to the OCIO Manager with dotted line to Risk, Security and Compliance Manager.
The main tasks will include driving and co-ordinate deployment of (Information Risk Management) IRM standards, processes, tools and training
Analyse deficiencies / gaps in the current IT security processes and procedures, motivate for process improvements and lead small security initiatives to rectify these.
Perform some oversight on management reporting and dashboards on overall IT and IRM compliance.
Help drive compliance by ensuring actionable plans promote compliance and risk management (IRM Plans).
Support the co-ordination of Data Privacy (DP) program ensure compliance with local legislation and regulations by providing policies, procedures, controls and standards
Support the Implementation, support and maintenance of IT security compliancy and monitoring technologies and drive action plan in case of deviations
Coordinate action plans on non-compliancy issues with different support areas.
Review IT security standards and policies on effectiveness.
Building awareness of security controls, procedures, policies and best practices.
Work with team to implement, track and monitor all changes required as a result of "Joiner, Mover, Leaver" requirements
Document network, system, and application user access control procedures and update policies and processes as required
Perform regular audits to ensure security practices are compliant
Knowledge Skills & Attributes Requirements :
Bachelors Degree in Computer Science, Information Systems or other related field, or equivalent work experience.
Certification in risk, information systems and / or security desired
Skills and exposure to tools such as Outlook, Excel, Word, Power Point and Visio
Written and verbal communication in English
Ability to learn from training and on-the-job coaching
Demonstrates teamwork
Demonstrates accountability
This role supports to following critical Head Office and Global processes :
Interpret cyber security and corporate risk, and governance frameworks
Develop applicable policies and standards
Monitoring and reporting
Ensuring policy compliance