Пожалуйста подождите ...

Бангладеш

59833

Просмотр

121

История вакансий

Индустрия:

Информационные технологии

Количество сотрудников:

500-1500

Тип компании:

Холдинг

Дата основания:

2011

Information/Cyber Security Expert

Временный контракт

Dhaka

Условия контракта Контракт

Категория ИТ-безопасность/Сети

Описание работы

The Information / Cyber Security Expert will be responsible for assessing the organization’s information security posture and preparing comprehensive recommendations to strengthen the security of critical ICT infrastructure, systems, applications, and data assets for a duration of two months. The consultant will develop and recommend industry-standard cybersecurity strategies, policies, controls, and governance mechanisms to ensure the confidentiality, integrity, and availability of information assets. The role will also support the development of a robust cybersecurity framework aligned with international standards and best practices.

Обязанности
  • Conduct a comprehensive ICT security needs assessment covering critical ICT infrastructure, applications, networks, systems, and information assets.
  • Prepare detailed technical reports and recommendations relating to information security, cybersecurity, and critical ICT infrastructure protection.
  • Assess the current security architecture, controls, policies, procedures, and governance practices.
  • Identify cybersecurity risks, vulnerabilities, threats, and control gaps across the ICT environment.
  • Develop and recommend industry-standard information security and cybersecurity strategies, frameworks, policies, standards, and procedures.
  • Support the design and implementation of security controls to protect information assets, systems, networks, applications, and critical infrastructure.
  • Develop recommendations for securing critical ICT infrastructure in accordance with international security standards and regulatory requirements.
  • Review and assess security monitoring, incident response, threat management, and security operations capabilities.
  • Evaluate existing security technologies and recommend enhancements to improve the organization’s cybersecurity posture.
  • Ensure appropriate security controls are established to safeguard the confidentiality, integrity, and availability of organizational information and assets.
  • Support the development of cybersecurity governance, risk management, compliance, and resilience frameworks.
  • Provide recommendations for business continuity, disaster recovery, cyber resilience, and incident management.
  • Prepare security assessment reports, risk analyses, implementation roadmaps, and policy documents.
  • Present findings and recommendations to senior management and relevant stakeholders.
  • Perform any other relevant tasks required for the successful completion of the assignment.
Требования
  • Bachelor’s or Master’s Degree in Computer Science, Computer Engineering, Information and Communication Technology (ICT), or a related discipline from an internationally renowned academic institution.
  • The candidate must possess one or more internationally recognized cybersecurity and information security certifications, including Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), ISO 27001 Lead Implementer and/or Lead Auditor, Certified Information Systems Auditor (CISA), GIAC Certifications, Certified Risk Management Specialist (CRMS) or equivalent or other relevant industry-recognized cybersecurity certifications.
  • Minimum 15 years of proven professional experience in information security and cybersecurity, preferably gained in advanced countries.
  • Demonstrated experience in designing, implementing, and managing information security and cybersecurity programs for large and complex organizations.
  • Proven experience in formulating and implementing information security and cybersecurity strategies, frameworks, and policies within large financial institutions.
  • Extensive experience in securing critical ICT infrastructure, enterprise systems, networks, and information assets.
  • Hands-on experience with security technologies.
  • Strong experience conducting security assessments, risk analyses, vulnerability assessments, and security audits.
  • Experience implementing security controls aligned with international standards such as ISO 27001, NIST Cybersecurity Framework, COBIT, CIS Controls, and related best practices.
  • Experience working within highly regulated sectors, particularly banking, financial services, government, or critical infrastructure environments.
  • Demonstrated ability to develop cybersecurity governance frameworks, security policies, standards, procedures, and implementation roadmaps.