Job Description:
Ensure IT Security Operation Center process running as expected.
Ensure penetration tests are performed based on company policy and procedures.
Enforce and maintain system risk management and Information security risk management framework/methodology, policies, standard and procedure.
Establishes, reviews and verifies the IT Security Governance policies, guides, standards and procedures documentation.
Conduct and perform security awareness campaigns, clean desk policy and cyber threats simulation.
Define, maintain, and monitor Tech team KPI and SLA performance
Liaise with the internal audit team to perform self assessment of IT environments.
Follow up and monitor audit findings to ensure all findings can be closed in accordance with agreed deadlines to gain satisfactory audit results. agreed deadline to gain.
Security risk assessment & reassessment for systems, operational (working spaces, secondary cloud DC & DRC) operation center, cloud DC
Conduct and perform vendor integrity.
Review for system hardening, configuration and compliance in database, servers, applications and file.
Conduct and perform security awareness campaigns, clean desk policy and cyber threats simulation.
Perform IT Security Governance delivery service in line with policy & procedure.
Perform IT Security Governance delivery service in line with Service Level Agreement (SLA).
Manage and follow-up security risk acceptance, risk register & SLA for IT Security.
Manage IT Security reporting, tracking and documentation.
Provide IT Security Governance daily, weekly and monthly reporting.
Project and change management support.