Sobre este puesto de Information Security Officer - Iraq en Bank of Jordan
Job Summary
We are looking for an Information Security & Cybersecurity Officer to support the implementation and monitoring of information security and cybersecurity policies, controls, and standards across the Bank. The role will focus on identifying and mitigating security risks, monitoring vulnerabilities, supporting security assessments and incident response, and ensuring compliance with internal policies and regulatory requirements.
Requirements
Key Responsibilities
- Implement and monitor information security and cybersecurity policies, standards, and controls.
- Monitor security controls across the Bank’s systems and networks, including firewalls and secure communications.
- Monitor data protection, encryption, and user access controls in line with approved policies.
- Conduct and follow up on security assessments, vulnerability assessments, and security testing.
- Coordinate the remediation of identified vulnerabilities and security findings.
- Support information security and cybersecurity risk assessments for new systems, projects, and services.
- Monitor cybersecurity risk and performance indicators and prepare relevant reports.
- Support cybersecurity incident response, containment, documentation, and investigation activities.
- Monitor cybersecurity requirements related to business continuity, disaster recovery, and emergency plans.
- Support compliance with relevant standards and regulatory requirements, including ISO 27001, PCI DSS, and COBIT.
- Support cybersecurity awareness and training programs for employees.
- Follow up on internal and external audit findings and coordinate corrective actions.
- Coordinate with IT teams, branches, external service providers, and relevant stakeholders on cybersecurity requirements.
- Prepare periodic information security and cybersecurity reports.
Requirements
- Bachelor’s degree in Computer Engineering, Information Technology, Cybersecurity, or a related field.
- Minimum 3 years of experience, preferably within the banking sector.
- Good knowledge of information security and cybersecurity principles and practices.
- Good understanding of ISO 27001, PCI DSS, COBIT, and relevant regulatory requirements.
- Professional certifications such as ISO 27001, CISM, Security+, or COBIT are preferred.
- Good English and computer skills.
- Strong planning, organizational, communication, and teamwork skills.
- Ability to work under pressure and manage multiple priorities.