Jobs Companies Xenon7 InfoSec Compliance & Assurance Lead - Banking

Über diese InfoSec Compliance & Assurance Lead - Banking Stelle bei Xenon7

Xenon7 · Vor Ort · Cairo, Egypt

Location: Cairo, Egypt (100% On-Premise)

Employment Type: Contract

About us:

Where elite tech talent meets world-class opportunities!

At Xenon7, we work with leading enterprises and innovative startups on exciting, cutting-edge projects that leverage the latest technologies across various domains of IT including Data, Web, Infrastructure, AI, and many others. Our expertise in IT solutions development and on-demand resources allows us to partner with clients on transformative initiatives, driving innovation and business growth. Whether it's empowering global organizations or collaborating with trailblazing startups, we are committed to delivering advanced, impactful solutions that meet today’s most complex challenges.

About the Client:

Join one of Egypt’s premier financial institutions, renowned for its extensive suite of banking services, including Institutional Banking, Personal Banking, and Islamic Banking. With a global presence through over 50 branches and correspondents, we serve a diverse and dynamic clientele. As we embark on a groundbreaking digital transformation journey, we are committed to leveraging the latest technologies to establish a state-of-the-art data architecture that will redefine our performance and service delivery.

Job Summary:

This role exists to accelerate the information security compliance posture across IT and Digital Transformation. The specialist acts as the InfoSec function's technical compliance arm—tracking, evidencing, and reporting on remediation progress against CBE Cybersecurity Framework requirements, PCI DSS obligations, and internal control commitments. The role also leads and executes assurance exercises, either directly or by scoping and managing third-party security assessment engagements.

Key Responsibilities:

A. IT & Digital Transformation Compliance Follow-Up

• Maintain a live compliance tracker across all active CBE Cybersecurity Framework control domains (IAM,

PAM, GRC, Container Security, and others).

• Conduct regular technical walk-throughs with IT and Digital Transformation teams to validate

implementation status and close evidence gaps.

• Escalate risks and blockers to the Head of GRC and CISO with clear risk-quantified language suitable for

Risk Committee reporting.

• Map remediation actions to OKR key results and track delivery against agreed timelines.

• Prepare compliance status reports in a format suitable for senior management and regulatory audiences.

B. PCI DSS Engagement Lead

• Own the end-to-end PCI DSS engagement cycle — scoping, gap assessment, remediation tracking, QSA

coordination, and Report on Compliance (RoC) or Self-Assessment Questionnaire (SAQ) readiness.

• Coordinate across IT, Operations, and Digital to ensure cardholder data environment (CDE) controls are

implemented, evidenced, and maintained.

• Manage the relationship with the appointed Qualified Security Assessor (QSA) and act as the internal

point of contact throughout the assessment cycle.

• Drive closure of PCI DSS findings and build a compensating controls register where technical controls are

not yet feasible.

• Maintain PCI DSS documentation library including network diagrams, data flow diagrams, asset inventory,

and policies relevant to the CDE.

C. InfoSec Assurance Exercises

• Plan and execute assurance activities including control testing, configuration reviews, access reviews,

and policy compliance spot checks.

• Scope, procure, and manage third-party security assessment vendors where specialized assessment

capability is required (e.g., penetration testing, red team exercises, cloud security reviews).

• Produce clear assurance reports with risk-rated findings, business impact statements, and prioritized

remediation recommendations.

• Track finding remediation to closure and validate effectiveness of corrective actions.

• Coordinate with the InfoSec Control Validation Manager to align assurance outputs with

broader control validation programme.

Requirements

• Minimum 7 years of information security experience, with at least 3 years in a banking or financial

institution.

• Hands-on PCI DSS experience — must have participated in or led at least one full RoC or SAQ-D

assessment cycle.

• Deep knowledge of CBE Cybersecurity Framework requirements and Egyptian regulatory context.

• Experience conducting technical compliance gap assessments across IT infrastructure, network, and

application layers.

• Strong written and verbal communication skills in both Arabic and English.

Preferred Certifications

• CISA — Certified Information Systems Auditor

• PCIP or PCI ISA — PCI Internal Security Assessor

• ISO 27001 Lead Auditor

• CISM — Certified Information Security Manager

Preferred Experience

• Prior experience in an Egyptian bank or financial institution operating under CBE oversight.

• Familiarity with GRC tooling (RSA Archer, ServiceNow GRC, or equivalent).

• Experience working with external auditors, QSAs, and regulators.

Benefits

  • Attractive, market-leading salary package
  • Clear career advancement path with professional development opportunities
Bereit, sich bei Xenon7 zu bewerben?
Bei Xenon7 bewerben

Über Xenon7

In a world where business landscapes are in constant motion, Xenon7 embraces change, adaptability and innovation as friends. We are a cooperative practice of AI scientists and business leaders partnering with businesses to harness the power of Artificial Intelligence.

At Xenon7, our purpose is clear: to empower businesses to navigate AI complexity with confidence. Our mission is to revolutionize the way organizations approach AI challenges, leveraging intelligent solutions to unlock new possibilities. Our values of integrity, collaboration, and relentless pursuit of excellence guide every decision we make on our behalf and yours.

Our teams blend expertise from diverse disciplines to tackle complex challenges with creativity and agility and Continuous Improvement.Collaboration is at the heart of how we operate. By embracing cutting-edge technologies and innovative methodologies, we deliver solutions that exceed expectations and drive tangible results for our clients.

Alle Jobs bei Xenon7 ansehen →

Ähnliche Jobs

Registrieren für Vorschläge, die auf die von Ihnen geöffneten Jobs und gespeicherten Suchen zugeschnitten sind.

Mehr Jobs bei Xenon7

Alle Jobs bei Xenon7 ansehen →

Jetzt bewerben
🤖

Moment — langsam

JobsRadar wurde für echte Menschen gebaut, die eine schwere Zeit bei der Jobsuche haben — nicht für automatisierte Anfragen. Sie klicken viel zu schnell und sind jetzt vorübergehend blockiert.

Kommen Sie später wieder. Wenn Sie wirklich auf Jobsuche sind, stehen wir hinter Ihnen — verhalten Sie sich einfach wie ein Mensch.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Verschaffe dir einen Vorsprung bei der Jobsuche.

Tritt unserem Telegram-Kanal bei für das, was dir hilft, die Stelle zu bekommen — Gehaltsbenchmarks, den wöchentlichen Marktpuls und neue Feature-Drops. Kein Spam, nur Signal.

Dem Kanal beitreten — kostenlos