IDB3506 - Senior Solution Security Specialist

Islamic Development Bank (IsDB)


Date: 2 weeks ago
City: Jeddah
Contract type: Full time
Job Purpose

The Senior Solution Security Specialist is responsible for the security governance of IsDB’s business applications in line with the defined business and security strategy. Additionally, the Senior Solution Security Specialist works with the respective stakeholders on daily basis to ensure that risks have been mitigated and security regulatory requirements have been met.

Key Accountabilities

  • Establish, operate, and maintain the security solution governance model based on the business requirements and best practices.
  • Ensure adherence to cybersecurity and IT governance policies and guidelines in collaboration with Security Operations.
  • Guide the business and IMDT stakeholders to implement and maintain security controls as per IsDB security policies and regulatory requirements.
  • Ensure that identified risks and audit findings are mitigated on the agreed timelines. Also, follow a risk based approach in day-to-day solution governance activities to ensure that security risks are proactively identified and closed.
  • Ensure that security due-diligence is performed on new initiatives, RFPs, projects and major solution changes and communicate the observations via agreed channels.
  • Participate in application change management process and ensure that risks identified and security requirements are established.
  • Ensure that IsDB’s security compliance requirements are identified on annual basis. Prepare plan for achieving security compliance and communicate it to all stakeholders.
  • Work with internal and external auditors to ensure that required independent assessments have been conducted. Ensure that security attestations are submitted to regulatory institutions as per defined timelines.
  • Work as part of the CSIRT team in case of security events to ensure that incident is identified , contained and solutions/information are recovered in timely manner.
  • Perform application security vulnerability management.
  • Consult with product teams in application security and introduce Application security improvements.
  • Maintain applications patch management security/risk assessments.
  • Ensures that the solutions securities for each product group comply with IsDB’s Enterprise security and governance to meet business requirements and promote reusability.
  • Define and maintains solution-specific security procedures and guidelines for the solution development lifecycle stages in collaboration with the IT Governance team and reviews adherence on a periodic basis.
  • Anticipates security alerts, incidents and disasters and reduce their likelihood by determining the most effective way to protect IsDB’s applications, and data against possible security risks.
  • Contribute to the development of the IT strategy, enterprise architecture, standards, policies, procedures and budgets in relation to IT infrastructure and IT security infrastructure and services for HQ and Regional Hubs.

Academic And Professional Qualifications

  • Bachelor’s degree in Computer Science or Engineering or related field.
  • Minimum 8 years of experience in information and security operations, including 3+ years of experience managing Solution and Application security risk-based.

Skills & Necessary Knowledge

  • Adopt the ability to execute work in an agile, innovative manner (DevOps), while also maintaining traditional project methodologies (such as waterfall when needed).
  • Experience in implementing security standards, network engineering/administration, operating system security and vulnerability assessment tools.
  • CISSP or CISM or other relevant information security industry recognized certification.
  • Good understanding of server & application systems, networks, firewalls, and load balancers.
  • Prefer to have CEH (certificate of Ethical hacking).

Languages

  • English - Mandatory
  • Arabic - Preferred
  • French - Preferred

About Application Process

If you meet the criteria and you are enthusiastic about the role, we would welcome your application. To complete the application you would need the following document(s):

  • Resume/CV
  • Copy of passport
  • Academic certificate

How to apply

To apply for this job you need to authorize on our website. If you don't have an account yet, please register.

Post a resume

Similar jobs

Service Technician

RH Aero Systems, Jeddah
3 days ago
About RH Aero Systems:RH Aero Systems is setting the standard for aviation support equipment and services. Through our industry-leading businesses – Rhinestahl and HYDRO Systems – we deliver capability across custom-designed Ground Support Equipment, OEM-licensed engine, and airframe tooling, twenty-six global service centers and innovative engineered solutions for OEMs, MROs, and Operators worldwide. RH Aero Systems’ global headquarters are in...

Account Executive

Abbott, Jeddah
4 days ago
About AbbottAbbott is a global healthcare leader that helps people live more fully at all stages of life. Our portfolio of life-changingtechnologies spans the spectrum of healthcare, with leading businesses and products in diagnostics, medical devices,nutritional’s, and branded generic medicines. Our 109,000 colleagues serve people in more than 160 countries.In This Role , You Will Maintain existing accounts in an...

Contracts Engineer

WSP in the Middle East, Jeddah
5 days ago
Job DescriptionWSP is currently seeking an experienced Contracts Engineer to join our team on a supervision-based infrastructure project in Jeddah. The successful candidate will be responsible for supporting all contract management activities on site, including reviewing contractor claims, assessing variations, ensuring compliance with contract conditions, and liaising with project stakeholders to safeguard client interests throughout the construction phase.ResponsibilitiesReview and interpret...