14 May 2021

We are looking for a Deputy Chief Information Security Officer (CISO) to provide the leadership to enhance, develop and implement IT security strategies.

Mandatory Skill(s)

  • Degree in Computer Science, Information Systems, Engineering;
  • Over 8 years of working experience in designing and implementation of information security, policies and procedures, protection and management framework;
  • Demonstrated working knowledge of technical processes, security policies, standards, controls, and risk measurements;
  • Proven record in identification, investigation and resolution of potential IT security risks, controls and process gaps;
  • Ability to constantly manage controls and processes with strong attention to details;
  • Strong understanding and experience in end to end business system implementation;
  • Excellent communication skills and emotional intelligence to influence key decisions, mediate conflicts and build consensus;
  • Pre-empt any risks and mitigate any threats or problematic areas proactively;
  • Ability to work with a cross-functional team to formulate and monitor security policies and procedures;
  • Strong personality and yet personable to build and enrich relationships within the organization;
  • Excellent communication, presentation, planning and organization skill.

Desirable Skill(s)

  • CISSP or CISM or CISA Certified.

Responsibilities

  • Responsible to design information security, protection and management framework, guidelines and best practices for the organization;
  • Responsible to facilitate in the forum discussion to establish the information security goals and to develop appropriate cybersecurity risk assessment and risk acceptance;
  • Work closely with the various cross-functional teams to establish, formulate, institute and monitor the security policies, standards and procedures in line with the organization\’s cybersecurity directions;
  • Lead implementation of enterprise security improvement programs;
  • Review, endorse, align and ensure information security compliance with proper risk management and migration plans;
  • Involved in compliance and controls, self-assessment processes and documentation related tasks;
  • Provide advisory and technical consultancy on the appropriate cybersecurity solutions and technologies to be deployed;
  • Develop security awareness programmes and conduct security incident response workshops.
Apply to this Job