Scopes Scope is setting cybersecurity, data privacy and security standards, educate management and users, developing policies and plans to compliance to ISO/ISE 27001:2022 and assist in all IT security relevant incidents Job Responsibilities
Define general information security policy such as network policy, remote access, email, internet, wifi, teleworking, and communicate to all employees
Define security measurement to manage the risk introduce by mobile devices and protect the company data residing in devices if lost
Define Information transfer & system development policy
Define Change management and Incident management policy
Identify best strategy to classify Data type that used in all business processes
Establish Access control policy for server administrator and network device
Establish plan on data continuity, plan on cyber attack incident
Establish information security policy for supplier relationships
Assess and propose and audit management of privileged access right
Assess on cryptographic control policy and cryptographic key management
Assess clear desk and clear screen policy
Assess and propose best method for event logging and monitoring
Propose best method for PC user registration and deregistration process to enable assignment of access rights
Conduct audit schedule and carry out security audit
Review security posture rating finding and work with all respective teams to close the finding
Review other external pentest finding and work with all respective teams to close the finding
Audit inventory of IT assets
Ensure there is a systematic approach to record and track vendor performance
Ensure there is a systematic approach in assessing new application to ensure the vendor is taking care of data privacy
Create Information security awareness via poster, newsletter, training, briefing, workshop, champaigns
Job Requirements
Degree in Computing or equivalent. Preferable in Cybersecurity study.
Atleast 2 years of working experience and any professional certification in ISO/IEC 27001 Information Security Management System (ISMS)
Knowledge in Information System Auditing, IT Security Technology and ISO/IEC 27001.
Able to travel across different branches in different states if necessary.
Interested candidates please submit your application through Jobstore.com
Beware of fraud agents! do not pay money to get a job
MNCJobz.com will not be responsible for any payment made to a third-party. All Terms of Use are applicable.