
Search by job, company or skills
IT Governance
Support the development, implementation, and maintenance of IT & OT governance frameworks, policies, and standards.
Apply cybersecurity standards and frameworks (e.g., ISO 27001, NIST, CIS) in governance activities.
Prepare and maintain governance documentation, including policies and procedures.
Work with IT and business stakeholders to support secure digital transformation initiatives.
Understand and evaluate emerging technologies and the cybersecurity risk to the technologies.
Compliance Management
Ensure alignment with internal security policies and applicable regulatory requirements. (e.g., Cybersecurity Act 2018)
Support internal/external audits and regulatory reviews.
Maintain compliance-related documentation and evidence.
Coordination with external (regulatory) agencies on cybersecurity and audit matters.
Risk Management
Conduct cybersecurity and IT risk assessments for new and existing technology initiatives.
Identify, evaluate, and document IT and cyber risks.
Recommend and track implementation of risk mitigation controls.
Monitor and manage risk exceptions and deviations.
Develop, implement, maintain, and improve the risk management framework for IT & OT, make sure it is based on industry best practices and international standards.
Track and report cybersecurity risks and key metrics to management.
Cyber Security Oversight and Collaboration
Collaborate with IT, security, and business teams to ensure effective implementation of cybersecurity controls.
Support evaluation of cybersecurity tools, monitoring practices, and techniques.
Communicate risks, issues, and recommendations to stakeholders.
Provide consultancy to internal teams to adhere to best practices on project management.
Track and report on cybersecurity risks and governance metrics to management.
Requirements
Degree in Information Technology, Cybersecurity, Information Systems, or other relevant field of study.
Professional certification such as CGEIT, CISM, CISA, CISSP, CRISC will be an advantage.
Project Management certification such as PMP, CAPM, PRINCE2 will be an advantage.
2-3 years of relevant working experience inIT governance, risk management, or cybersecurity
Experience supporting audits, compliance reviews, or regulatory engagements will be an advantage.
Highly resourceful individual who possess strong analytical skills
Added advantage: Well verse in Security Standards such ISO27001, IEC62443, NIST, MITRE ATT&CK framework etc.
Understanding of regulatory requirements (e.g., Cybersecurity Act 2018 local regulatory knowledge is a plus).
Exposure to risk assessment methodologies and governance processes.
Working knowledge of cybersecurity tools, monitoring, or analysis techniques is advantageous.
Able to explain technical ideas to non-technical audience such as Senior Management and other Internal Stakeholders
Job ID: 151454399
Skills:
SAP, Power Bi, Internal Controls, J-SOX, Cpa, data analytics tools, Cisa, ERP systems, IFRS, CIA, Ca
Skills:
Iso 27001, cybersecurity tools monitoring, It Governance, project management, cybersecurity risk management, nist, CIS, risk assessment methodologies
Skills:
Networking, Palo Alto, Azure Ad, Siem, Ddos, Azure, AWS, Fortinet NSE4 and above, AD, ZTNA, XDR, Cisco CCNP, Security, Exchange on premise, EDR, Low Level Design, Unified Communications, Cissp, High Level Design, NDR, Microsoft O365, Checkpoint, Aruba ACCP
Skills:
Iso 27001, Saas, data governance principles, Ai, risk management methodologies
Skills:
cloud security, Iso 27001, Siem, Itil, threat intelligence platforms, National Institute of Standards and Technology Cybersecurity Framework, Cissp, DevSecOps practices, vulnerability scanners