Cybersecurity Expert
الوصف الوظيفي
About the Role
We are seeking a seasoned and visionary Cybersecurity Expert to spearhead our organization’s cybersecurity initiatives, fortify our security infrastructure, and safeguard critical information assets, systems, and digital services. In this pivotal leadership role, you will be responsible for developing and executing comprehensive cybersecurity strategies, policies, and frameworks while ensuring alignment with industry best practices and regulatory requirements. Your expertise will be instrumental in enhancing our security posture, mitigating risks, and fostering a culture of cyber resilience across the enterprise.
Key Responsibilities
- Strategic Leadership: Develop, implement, and maintain robust cybersecurity strategies, policies, standards, and frameworks to ensure the protection of organizational assets and data integrity.
- Governance, Risk, and Compliance (GRC): Lead cybersecurity programs encompassing governance, risk management, compliance, and security operations to meet ISO 27001, NIST, CIS Controls, NCA ECC, and other regulatory requirements.
- Risk Assessment and Mitigation: Conduct comprehensive risk assessments and implement tailored security controls to address vulnerabilities and emerging threats effectively.
- Incident Response and Resilience: Monitor security events, manage incident response activities, and support cyber resilience initiatives to minimize the impact of security breaches and ensure rapid recovery.
- Vulnerability and Threat Management: Oversee vulnerability management processes, security assessments, and penetration testing to identify and remediate potential security gaps.
- Security Operations and Monitoring: Manage SIEM (Security Information and Event Management), SOC (Security Operations Center), threat detection, and security monitoring capabilities to ensure real-time visibility and proactive threat mitigation.
- Awareness and Training: Develop and deliver cybersecurity awareness programs to educate employees on best practices, security policies, and emerging threats, fostering a security-conscious organizational culture.
- Reporting and Metrics: Prepare executive-level reports, dashboards, and performance metrics to communicate cybersecurity risks, trends, and strategic recommendations to stakeholders and senior leadership.
- Expert Guidance: Provide strategic and technical guidance on cybersecurity matters, ensuring alignment with business objectives and regulatory obligations.
Qualifications and Experience
- Education: Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related field with a minimum of 20 years of progressive experience; OR a Master’s degree with 15+ years of experience; OR a PhD with 5+ years of experience.
- Technical Expertise: Proven expertise in Cybersecurity Governance, Risk Management, and Compliance (GRC), with hands-on experience in Security Operations, Incident Response, Threat Management, and Cyber Defense.
- Regulatory Knowledge: In-depth understanding of ISO 27001, NIST, CIS Controls, and NCA cybersecurity requirements, ensuring adherence to industry standards and regulatory frameworks.
- Security Tools and Solutions: Extensive experience with SIEM, EDR (Endpoint Detection and Response), SOC, and security monitoring solutions to detect, analyze, and respond to security incidents.
- Security Domains: Strong foundational knowledge in network security, cloud security, application security, Identity and Access Management (IAM), and data protection strategies.
- Soft Skills: Exceptional analytical abilities, leadership acumen, stakeholder management skills, and the capacity to communicate complex cybersecurity concepts to diverse audiences.
Preferred Certifications
Candidates with the following certifications will be highly regarded:
- Certified Information Systems Security Professional (CISSP)
- Certified Cloud Security Professional (CCSP)
- Certified Information Security Manager (CISM)
- Certified Ethical Hacker (CEH)
- GIAC Certifications
- ISO 27001 Lead Implementer / Lead Auditor
- CompTIA Security+, CySA+, or equivalent cybersecurity certifications
If you are a seasoned cybersecurity professional with a passion for safeguarding digital assets and driving strategic security initiatives, we invite you to apply and join our dynamic team.
يمكن أن يرتكب الذكاء الاصطناعي أخطاءً.