Senior Information Security Officer

2 weeks ago


Doha, Baladīyat ad Dawḩah, Qatar Talent Pal Full time
JobSummary andPurpose

Drivea strong and robust Information Security Management System (ISMS)in the organization through threat/vulnerability detection securityscanning penetration testing security monitoring vulnerabilitymitigations threat mitigations identifying IT/OT security risks andother related information securityactivities.

Ensure adherenceto the various information security standards and standards andprovide technical consultation on Information Securityissues.

Accountabilities

KeyAccountabilities:

InformationSecurity Management:

1. Identifyinformation security vulnerabilities and threats in the companyIT/OT technology network and infrastructure using varioustechniques e.g. penetration testing and vulnerabilityassessment.
2. Collate information from the conductedassessments and recommend appropriate remedial steps.
3.Develop review improve and update information security policiesprocedures guidelines and other related documents.
4.Provide support to build the organization wide information securityawareness and training programs. Contribute and provide content forawareness activities.
5. Monitor evaluate and ensure thesegregation of duties on all systems to mitigate the risk ofunintentional and/or deliberate system misuse.
6. Ensurecompliance with the applicable internal and internationalinformation security standards (e.g. NIA ISO27001).
7.Monitor changes or updates in any applicable law regulation oraccreditation standards pertaining to Information Security andensure compliance as required.
8. Ensure appropriateadministrative and technical safeguards are in place to protectinformation assets from internal and external threats. Coordinatephysical safeguards for those assets in coordination with theGeneral Services department.
9. Liaise and maintaincontact with governmental authorities regulatory bodies securitygroups and industry forums in the field of InformationSecurity.
10. Prepare security baselines and safeguardapplications operating systems and infrastructure devices byadopting the latest standards.
11. Resolve informationsecurity issues and improve the Information Security performance byproviding technical consultation in system development acquisitionprocurement implementation change management operation/support andarchitectural and other adhoc projects.
12. Assist allorganizational units in areas related to Information Security andfollow the related processes to provide support.

Accountabilities2

13. Workwith the concerned parties on the Information Security incidentsand vulnerability management processes from design toimplementation and beyond.
14. Review technicalinformation in the requirements statements feasibility analysisoperating procedure manuals and other documents produced in theprocess of system development.
15. Monitor and assess ITsystems security system audit trails/logs and the validity ofsystem configurations whenever required.
16. Assist invulnerability mitigation e.g. through software/system patchingthrough the IT department.
17. Assist in performingongoing security monitoring of information systems includingassessing information security risk conducting functional and gapanalyses to determine the extent to which key business areas andinfrastructure comply with statutory and regulatoryrequirements.
18. Evaluate and recommend new informationsecurity technologies and countermeasures against threats toinformation or privacy and develop security reports anddashboards.
19. Ensure identification recording reportingand resolving any Information Security violations.
20.Support and assist the other activities linked with Enterprise Riskand Business Continuity Management such as Risk Assessments andBusiness Impact Analysis.
21. Support the development ofthe organizations disaster recovery and business continuity plansfor information security and testsreadiness.

GenericAccountabilities:

QualityHealth Safety & Environment (QHSE):
22.Adhere to all relevant QHSE policies procedures instructions andcontrols so that NAKILAT provides a safe world class secure andenvironmentally responsible service to customers the public and itsown people.

Policies Systems Processes& Procedures:
23. Implement approvedpolicies processes and procedures and provide instructions tosubordinates to ensure their properimplementation.

Others:
24. Carry out any other duties as directed by the immediatesupervisor.

Accountabilities3Accountabilities4CompetenciesInteractive Communication Collaboration& Teamwork Drive Vision Solution Oriented Customer Centricity Achievement Oriented Empower & Nurture TalentKey ResultAreas
  • Contributeto the development and management of policies and procedures forthe Information Security ManagementSystem.
  • Develop coordinate and conductorganization wide information security awareness programs andtrainings.
  • Prepare Information Security relatedrisk assessments reports and other relevantdocumentation.
  • Conduct the required activitiesto identify threats and vulnerabilities for IT and OTinfrastructure.
  • Monitor various InformationSecurity systems.
  • Drive the vulnerabilitypatching.
Interactions and WorkingRelations

Internal: Interaction with all staff oninformation security activities such as data classification accessreview threats/vulnerabilities identification and mitigationsupport and contribution to information security initiatives andprojects.
External: Interface withvendors and external auditors and organizations for informationsecurity relatedmatters

FinancialAuthorities

AsperTOFA.

Qualifications Experience and JobSkills

Qualifications:

  • BachelorsDegree in Computer Science or any other equivalentfield.
  • Certified Information Systems SecurityProfessional (CISSP) Certified Ethical Hacker (CEH) and CertifiedISO27001 Lead implementer arepreferred.
  • Globally recognized credentialcertification is preferred in Information Security domain forexample CISMISO27001LA.

Experience:
  • Minimumof 4 years of Information Securityexperience.
  • IT background ispreferred.


Job SpecificSkills:
  • Ability to managepressure prioritize needs requirements and positively interact withthe company users and external parties.
  • Abilityto trouble shoot and investigate information securityincidents.
  • Knowledge of Information SecurityManagement System (ISO and other Information Securityframework (NIST).
  • Security relatedqualifications (e.g. CISSP CISM CEH ISO 27001LI/LA).

JobSpecific Competencies:
ii.Technical

8) Business /IndustryKnowledge
9) Enterprise Risk Management
10)Business Risk
11) Risk Project Management
12)Business Continuity Management
13) Governance
14) Risk Management Methodology/Process
15) RiskIdentification and Assessment
16) Business ImpactAnalysis
17) Risk Response & Reporting
18) Risk Mitigation & Control
19) InformationSecurityManagement

SeniorInformation Security OfficerDepartment: Business Support ServicesCity: Ras Laffan

Job Segment: Information Security InformationSystems Testing Change Management Computer Science TechnologyManagement

Thisjob has been sourced from an external job board.
Morejobs on

  • Doha, Baladīyat ad Dawḩah, Qatar Thales e-Security, Inc. Full time

    Chief Information Security Officer (CISO) page is loaded Chief Information Security Officer (CISO)remote typeOn-Site locationsDoha time typeFull time posted onPosted Today job requisition idR Location: Doha, QatarThales people architect solutions at the heart of the defence-security continuum. Interoperable and secure information and telecommunications...


  • Doha, Baladīyat ad Dawḩah, Qatar Talent Pal Full time

    Job Summary and PurposeDrive a strong and robust Information Security Management System (ISMS) in the organization through threat/vulnerability detection security scanning penetration testing security monitoring vulnerability mitigations threat mitigations identifying IT/OT security risks and other related information security activities. Ensure adherence to...


  • Doha, Baladīyat ad Dawḩah, Qatar People Dynamics Full time

    The Information Security Officer (ISO) is responsible for protecting and maintaining the confidentiality, Integrity, and availability of information and related infrastructure assets; managing the risk of security.exposure or compromise; assuring a secure and stable information technology (IT) environment.identifying and responding to events involving...


  • Doha, Baladīyat ad Dawḩah, Qatar Talent Pal Full time

    Job Summary and Purpose:Drive a strong and robust Information Security Management System (ISMS) in the organization through threat/vulnerability detection, security scanning, penetration testing, security monitoring, vulnerability mitigations, threat mitigations, identifying IT/OT security risks and other related information security activities.Ensure...


  • Doha, Baladīyat ad Dawḩah, Qatar Nakilat Full time

    Select how often (in days) to receive an alert: Create Alert ** PREFERENCE WILL BE GIVEN TO QATARI CANDIDATES ** Job Summary and PurposeDrive a strong and robust Information Security Management System (ISMS) in the organization through threat/vulnerability detection, security scanning, penetration testing, security monitoring, vulnerability mitigations,...


  • Doha, Baladīyat ad Dawḩah, Qatar Thales Full time

    Location: Doha, QatarThales people architect solutions at the heart of the defence-security continuum. Interoperable and secure information and telecommunications systems for defence, security, and civil operators, are based upon innovative use of radiocommunications, networks, and cybersecurity. We are ground breaking new digital technologies such as 4G...


  • Doha, Baladīyat ad Dawḩah, Qatar Thales Group Full time

    Location: Doha, QatarThales people architect solutions at the heart of the defence-security continuum. Interoperable and secure information and telecommunications systems for defence, security, and civil operators, are based upon innovative use of radiocommunications, networks, and cybersecurity. We are ground breaking new digital technologies such as 4G...

  • Information Security

    2 weeks ago


    Doha, Baladīyat ad Dawḩah, Qatar Mekdam Holding Group Full time

    About the job Information Security (OSCP) SpecialistJob Role: Information Security Specialist (Application Security)Work location Government entityLocation: Doha, QatarJob Purpose Statement:We are looking for a skilled Professional for VAPT, Application Security, Offensive Security & compliance profile. The ideal candidate will have experience in Network...


  • Doha, Baladīyat ad Dawḩah, Qatar Qatar Airways Full time

    About the role:Qatar Airways are pleased to announce an incredibly exciting opportunity to join our Flight Operations team as a Senior Aeronautical Information Management Officer to be based in Doha, Qatar.As a Senior Aeronautical Information Management Officer, you will be responsible for managing daily activities related to publication of Aeronautical...


  • Doha, Baladīyat ad Dawḩah, Qatar Qatar Petroleum Full time

    Job SummaryLead Information Security projects and report regularly on their progress. Coordinate and provide expert technical support by integrating Cyber & Information Security requirements into ICT projects, OT and Infrastructure projects, and review and validate the effective implementation of Cyber & Information Securityrequirements into project...


  • Doha, Baladīyat ad Dawḩah, Qatar Qatar Petroleum Full time

    Job SummaryLead Information Security projects and report regularly on their progress. Coordinate and provide expert technical support by integrating Cyber & Information Security requirements into ICT projects, OT and Infrastructure projects, and review and validate the effective implementation of Cyber & Information Securityrequirements into project...

  • Security Guard

    2 weeks ago


    Doha, Baladīyat ad Dawḩah, Qatar PROFESSIONAL SECURITY Full time

    Secures premises and personnel by patrolling property, monitoring surveillance equipment, and access points. Investigates security breaches, incidents, and other alarming behavior. Controls traffic by directing drivers. Completes reports by recording observations, information, occurrences, and surveillance activities. Interviews witnesses and obtains...


  • Doha, Baladīyat ad Dawḩah, Qatar قطر للطاقة Full time

    CompanyQatarEnergy is a state-owned public corporation established byEmiri Decree No. 10 in 1974. It is responsible for all phasesof the oiland gas industry in the State of Qatar.The principal activities of QatarEnergy, its subsidiaries and jointventures arethe exploration, production, local and international saleof crude oil,natural gas and gas liquids,...


  • Doha, Baladīyat ad Dawḩah, Qatar Robert Walters Full time

    Requirements For The Role7+ years of experience in Information Security Develop and monitor a strategic, comprehensive enterprise information /cyber security risk management program to ensure protection of digital anddata assets Implement and lead the strategy for managing and reporting securityincidents and oversee investigations of reported security...


  • Doha, Baladīyat ad Dawḩah, Qatar Injazat Information Technology Full time

    Responsibilities: Collaboratingwithdepartment managers to determine securityneeds. Planning andimplementing comprehensivesecurity strategies. Controlling thesecurityoperations budget, monitoring expenses, anddocumentingprocesses. Supervising, recruiting, andtraining securitypersonnel. Gathering securityintelligence and implementingpreventativemeasures....


  • Doha, Baladīyat ad Dawḩah, Qatar Boeing Full time

    Do you aspire to help build something better? Would you like to work for a company that employs the best talent to develop and deliver world class capabilities and systems to protect Australia and its national interests? Would you like to work on cutting edge projects? Then we would like to talk to you.As an equal opportunity employer that promotes a diverse...


  • Doha, Baladīyat ad Dawḩah, Qatar Robert Walters Full time

    Requirements For TheRole7+ years of experiencein Information Security Develop and monitora strategic, comprehensive enterprise information/cyber security risk management program toensure protection of digital anddataassets Implement and lead the strategy formanaging and reporting securityincidents andoversee investigations of reported securitybreaches Manage...


  • Doha, Baladīyat ad Dawḩah, Qatar Ooredoo QSC Full time

    VAC9296 - Senior Analyst Fixed Security Architecture Field: CEO Office Contract Type: Full Time - Permanent Location: Qatar - Doha Closing date: 29-Feb-2024 About Us:: Ooredoo is a dynamic global Telecommunications player operating in 10 countries serving more than 138 million customers. Ooredoo Qatar employs approximately 1,600 people driving Ooredoo to...


  • Doha, Baladīyat ad Dawḩah, Qatar Mekdam Technical Services Full time

    Information Security Specialist (Application Security) - OSCP Certificate MandatoryJob Role: Information Security Specialist (Application Security)Job Purpose Statement:We are looking for a skilled Professional for VAPT, Application Security, Offensive Security & compliance profile. The ideal candidate will have experience in Network basics, Security...


  • Doha, Baladīyat ad Dawḩah, Qatar Charterhouse Full time

    The RoleCharterhouse is working with an international market leader in Supply Chain and Logistics solutions, who is looking to hire a Chief Information Officer (CIO) to join their team in Qatar. This is a senior role, providing strategic vision and leadership to IT, Innovation and the Business Process Improvement Department, and reporting directly to the...