Information Security Officer

2 days ago


Doha, Baladīyat ad Dawḩah, Qatar Management Solutions International (MSI) Full time 90,000 - 120,000 per year

Location

Doha, Qatar

Experience

Job Type

Recruitment

Job Description

Information Security

Information Security Responsibilities

  • Primary responsible for planning, coordinating, and organizing Information Security activities.
  • Enforce and monitor the implementation and compliance with IT Information Security Policy.
  • Develop and manage the implementation of Information Security Policies and Procedures.
  • Ensure Risk Assessments are conducted on all information systems such as people, process, technology, and information processing facilities.
  • Ensure implementation of all Information Security controls, as set forth in the Risk Treatment Plan, to ensure adequate security for the respective system.
  • Conduct Information Security communications and outreach by leveraging the Information Security Management System (ISMS) committee.
  • Establish appropriate measures to assess operational capabilities and determine compliance and effectiveness levels with Information Security Policy.
  • Supervise other related assurance functions, as necessary.
  • Ensure the compliance of Information Security Policies in the organization.
  • Develop and ensure implementation of Information Security procedures.
  • Develop and ensure implementation of incident handling and reporting.
  • Follow-up, escalate, and report the resolution of Information Security issues identified during security assessments, penetration tests, and audits.
  • Develop, implement, and maintain Disaster Recovery (DR) procedures and infrastructure in relation to the Business Continuity Plan (BCP)/IT Service Contingency Plan.
  • Conduct and coordinate Information Security awareness and orientation programs.
  • Responsible for conducting Committee meetings.

Security Incident Management

  • Incident Management:

    Establish a formal procedure for internally reporting and tracking security incidents. Ensure incident response and escalation procedures are followed, and inform all employees, contractors, and third-party users of their responsibility to report security incidents.
  • Incident Handling:

    Participate and/or oversee the investigation and management of information security events and policy violations and track them to conclusion.
  • Incident Notification and Reporting:

    Follow policy for the notification and reporting of incidents immediately upon discovery.
  • Corrective/Preventive Actions:

    Develop and document corrective action plans and implement preventive actions to mitigate recurrence.

Problem Management

  • Analyze a security incident to detect an underlying problem that exists or is likely to exist.
  • Categorize and prioritize the problem based on the frequency, severity, and impact of the incident.
  • Investigate and diagnose the root cause of the problem.
  • Test and apply temporary workarounds.
  • Document the known error record.

Risk Management

  • Risk Management Program:

    Create a formal process to address risk through the coordination and control of activities regarding each risk.
  • Risk Assessment:

    Conduct formal vulnerability assessments of the environment on a regular basis.
  • Risk Mitigation:

    Create a formal process to mitigate vulnerabilities and more.

Qualifications

Experience

  • 8+ years in IT work experience
  • 5+ years in a similar role

Education

  • Bachelor of Engineering
  • Or Bachelor of IT
  • Or Bachelor of Computer Science

Certifications

  • CRISC – Certified in Risk and Information Systems Control
  • Or ISO/IEC 27001 Lead Implementer or Lead Auditor
  • Or CISSP – Certified Information Systems Security Professional

Required Skillset

  • Expertise in implementation of security frameworks such as NIST, ISO/IEC 27001, and other local regulations and frameworks.
  • Expertise in compliance requirements like GDPR, HIPAA, PCI DSS, SOX, and other relevant laws and regulations.
  • Expertise in conducting risk assessments, identifying security risks, evaluating impact, and implementing mitigation strategies.
  • Expertise in developing policies, procedures, and processes.
  • Expertise in creating and managing security awareness and training programs to educate employees on cybersecurity threats and best practices.


  • Doha, Baladīyat ad Dawḩah, Qatar Tenet Healthcare US Full time 30,000 - 60,000 per year

    Information Security Audit AssistantJob SummaryThe Information Security Audit Assistant assists the company's information security department in conducting internal and external security compliance audits to ensure that the organization's IT systems, processes, and operations comply with relevant security standards and regulations. This position is suitable...


  • Doha, Baladīyat ad Dawḩah, Qatar ECCO Gulf Majorel Qatar Full time 90,000 - 120,000 per year

    Information Security AnalystJob PurposeResponsible to support Information Security Governance, Risk and Controlactivities. Assist in all information security activities in order to protect theorganization's information technology assets from cyber-attacks.Function Information TechnologyKey ResponsibilitiesSupporting and maintaining the required Information...


  • Doha, Baladīyat ad Dawḩah, Qatar ECCO Gulf WLL Full time 120,000 - 240,000 per year

    Job PurposeResponsible to support Information Security Governance, Risk and Controlactivities. Assist in all information security activities in order to protect theorganization's information technology assets from cyber-attacks.Function Information TechnologyKey ResponsibilitiesSupporting and maintaining the required Information Security policies,...


  • Doha, Baladīyat ad Dawḩah, Qatar ECCO Gulf Majorel Qatar Full time 90,000 - 120,000 per year

    Job DescriptionECCO Gulf Majorel Qatar is seeking an experienced Information Security Specialist to join our dynamic IT team in Qatar. As an integral part of our organization, you will be responsible for safeguarding our information systems and ensuring the confidentiality, integrity, and availability of our data. Your expertise will help us maintain a...


  • Doha, Baladīyat ad Dawḩah, Qatar Premium Solutions Consultancy Full time 120,000 - 180,000 per year

    Urgent Requirement A well-known IT Consultancy in Qatar is looking for suitable candidates to furnish the below position local with NOC, JOB Title: Information Security (ISMS) Consultants Nationality: Indian / Pakistan / Filipino Notice Period: Immediately Job Location: Qatar Job DescriptionOwn and successfully drive projects for ISO 27001, ISO...


  • Doha, Baladīyat ad Dawḩah, Qatar Intrinsic Security Full time 90,000 - 120,000 per year

    Role:Cyber Security Engineer (SOC Analyst)Location:Qatar (Onsite)Department:Cybersecurity OperationsReports To:Head of Security OperationsRole Overview:We are seeking a highly skilled and motivated Cyber Security Engineer (SOC Analyst) to join our security team. The ideal candidate will bring hands-on experience in SOC environments, advanced knowledge of...


  • Doha, Baladīyat ad Dawḩah, Qatar Seaworks Co Full time 90,000 - 120,000 per year

    Qualifications:Bachelor's degree in Information Technology or Cybersecurity.Professional certifications such as CompTIA Security+ or CEH.Additional certifications such as CISSP or CISM are an advantage.Minimum of three years' experience in Information Security orCybersecurity.Experience with security tools such as Firewalls, DLP, EDR, and SIEM.Proficiency in...


  • Doha, Baladīyat ad Dawḩah, Qatar QatarEnergy Full time 90,000 - 120,000 per year

    Primary Purpose of the JobGovernance and execution of the Information Security Management System (ISMS) including developingpolicies,standards and procedures required for the corporate information security in both an Informationtechnology (IT) and Operational Technology (OT) capacity.Define required information security policies, standards and procedures...


  • Doha, Baladīyat ad Dawḩah, Qatar COZMALABS Full time 100,000 - 150,000 per year

    Responsibilities:Implement real-time oversight of security systems, including firewalls, IDS/IPS, EDR, XDR, WAF, SIEM, and email gateways, to promptly detect and mitigate threats in both on-premises and cloud environments.Conduct regular vulnerability scans and risk assessments to identify security gaps, ensuring timely remediation in both on-premises and...


  • Doha, Baladīyat ad Dawḩah, Qatar North Oil Company Qatar Full time 60,000 - 120,000 per year

    Job description:Job PurposeThe company relies more and more on advanced Digital and Information solutions to extend its operations in the most cost-effective way while keeping high standard of security to protect the assets against the ever-evolving threats.The Information Security Engineer - Developee has to ensure that all work is carried out in a...