MIG-2815
Consultant- Cyber security
Remote/ Thailand/ Malaysia · May 25, 2023
Hiring Status Unconfirmed
Key responsibilities
Key Responsibilities:
Develop and Implement Cybersecurity Strategy: Define and execute the organization's cybersecurity strategy, ensuring alignment with business goals and objectives. Identify potential risks and vulnerabilities, and develop proactive measures to safeguard critical information systems and assets.
Security Policy Development: Develop, implement, and enforce information security policies, standards, and procedures to comply with industry best practices and regulatory requirements. Continuously review and update policies to address emerging threats and technology advancements.
Risk Assessment and Management: Conduct regular risk assessments to identify potential security gaps and vulnerabilities. Develop and maintain a risk management framework to prioritize and mitigate risks effectively. Collaborate with stakeholders to implement risk management strategies and controls.
Security Operations: Oversee the day-to-day operations of the cybersecurity team. Monitor and analyze security incidents and events, and provide guidance on incident response and mitigation. Ensure timely detection, response, and resolution of security breaches or unauthorized access.
Security Architecture: Collaborate with IT teams and architects to design and implement secure network, systems, and applications. Evaluate new technologies, products, and services for potential security risks and make recommendations for their adoption or mitigation.
Security Awareness and Training: Develop and deliver comprehensive cybersecurity awareness and training programs to educate employees and contractors about security risks, policies, and best practices. Foster a security-conscious culture throughout the organization.
Compliance and Audit: Ensure compliance with applicable laws, regulations, and industry standards related to information security, such as GDPR, HIPAA, or ISO 27001. Coordinate and support internal and external audits, penetration testing, and vulnerability assessments.
Incident Response and Recovery: Develop and maintain an incident response plan and lead the organization's response to security incidents. Coordinate with internal and external stakeholders, including legal, law enforcement, and public relations, to minimize the impact of incidents and facilitate recovery.
Vendor and Third-Party Management: Assess the security practices of third-party vendors and service providers. Establish and enforce security requirements in vendor contracts and oversee ongoing monitoring and compliance with those requirements.
Security Governance and Reporting: Establish a governance framework to ensure effective oversight and accountability for information security. Provide regular reports and updates to executive leadership and the board of directors on the organization's security posture, incidents, and compliance status.
Qualifications and Skills:
Project delivery experience
Bachelor's or Master's degree in computer science, information technology, cybersecurity, or a related field. Relevant certifications such as CISSP, CISM, or CISA are highly desirable.
Proven experience (X+ years) in a leadership role in cybersecurity, preferably as a CISO or similar position.
Strong knowledge of cybersecurity principles, best practices, frameworks (such as NIST, ISO 27001), and relevant laws and regulations.
Extensive experience in developing and implementing cybersecurity strategies, policies, and procedures in complex environments.
Deep understanding of network security, cloud security, application security, encryption technologies, identity and access management, and security operations.
Experience with incident response, threat intelligence, vulnerability management, and security assessment tools and methodologies.
Excellent leadership and communication skills, with the ability to collaborate effectively with cross-functional teams and present complex security concepts to non-technical stakeholders.
Strong analytical and problem-solving abilities, with the capacity to think strategically and make
Desired candidate profile
Position Overview: We are seeking a highly skilled and experienced Chief Information Security Officer (CISO) to join our organization and lead our cybersecurity efforts. As the CISO, you will be responsible for developing and implementing comprehensive information security strategies, policies, and programs to protect our organization's critical assets from cyber threats. You will oversee the day-to-day operations of our cybersecurity team and collaborate with other departments to ensure the organization's information systems and data are secure.
Apply for this role
Takes a few minutes — basic information, employment details, and resume.
Apply for this role
- 1. Identity
- 2. Basic Information
- 3. Employment
- 4. Resume
- 5. Review & Submit
Application Submitted Successfully
Thank you for applying for this position.
Your application has been successfully submitted and received by our recruitment team.
Our recruitment team will review your profile. If your qualifications are a good match for this opportunity, we will contact you regarding the next steps.
Your profile may also be considered for other suitable opportunities in the future.
Didn't find the right opportunity?
Receive new matching opportunities directly in your inbox.