IDB3506 - Senior Solution Security Specialist
Islamic Development Bank (IsDB)
Date: 13 hours ago
City: Jeddah
Contract type: Full time

Job Purpose
The Senior Solution Security Specialist is responsible for the security governance of IsDB’s business applications in line with the defined business and security strategy. Additionally, the Senior Solution Security Specialist works with the respective stakeholders on daily basis to ensure that risks have been mitigated and security regulatory requirements have been met.
Key Accountabilities
If you meet the criteria and you are enthusiastic about the role, we would welcome your application. To complete the application you would need the following document(s):
The Senior Solution Security Specialist is responsible for the security governance of IsDB’s business applications in line with the defined business and security strategy. Additionally, the Senior Solution Security Specialist works with the respective stakeholders on daily basis to ensure that risks have been mitigated and security regulatory requirements have been met.
Key Accountabilities
- Establish, operate, and maintain the security solution governance model based on the business requirements and best practices.
- Ensure adherence to cybersecurity and IT governance policies and guidelines in collaboration with Security Operations.
- Guide the business and IMDT stakeholders to implement and maintain security controls as per IsDB security policies and regulatory requirements.
- Ensure that identified risks and audit findings are mitigated on the agreed timelines. Also, follow a risk based approach in day-to-day solution governance activities to ensure that security risks are proactively identified and closed.
- Ensure that security due-diligence is performed on new initiatives, RFPs, projects and major solution changes and communicate the observations via agreed channels.
- Participate in application change management process and ensure that risks identified and security requirements are established.
- Ensure that IsDB’s security compliance requirements are identified on annual basis. Prepare plan for achieving security compliance and communicate it to all stakeholders.
- Work with internal and external auditors to ensure that required independent assessments have been conducted. Ensure that security attestations are submitted to regulatory institutions as per defined timelines.
- Work as part of the CSIRT team in case of security events to ensure that incident is identified , contained and solutions/information are recovered in timely manner.
- Perform application security vulnerability management.
- Consult with product teams in application security and introduce Application security improvements.
- Maintain applications patch management security/risk assessments.
- Ensures that the solutions securities for each product group comply with IsDB’s Enterprise security and governance to meet business requirements and promote reusability.
- Define and maintains solution-specific security procedures and guidelines for the solution development lifecycle stages in collaboration with the IT Governance team and reviews adherence on a periodic basis.
- Anticipates security alerts, incidents and disasters and reduce their likelihood by determining the most effective way to protect IsDB’s applications, and data against possible security risks.
- Contribute to the development of the IT strategy, enterprise architecture, standards, policies, procedures and budgets in relation to IT infrastructure and IT security infrastructure and services for HQ and Regional Hubs.
- Bachelor’s degree in Computer Science or Engineering or related field.
- Minimum 8 years of experience in information and security operations, including 3+ years of experience managing Solution and Application security risk-based.
- Adopt the ability to execute work in an agile, innovative manner (DevOps), while also maintaining traditional project methodologies (such as waterfall when needed).
- Experience in implementing security standards, network engineering/administration, operating system security and vulnerability assessment tools.
- CISSP or CISM or other relevant information security industry recognized certification.
- Good understanding of server & application systems, networks, firewalls, and load balancers.
- Prefer to have CEH (certificate of Ethical hacking).
- English - Mandatory
- Arabic - Preferred
- French - Preferred
If you meet the criteria and you are enthusiastic about the role, we would welcome your application. To complete the application you would need the following document(s):
- Resume/CV
- Copy of passport
- Academic certificate
How to apply
To apply for this job you need to authorize on our website. If you don't have an account yet, please register.
Post a resumeSimilar jobs
Business Analyst
Noon Alif Yaa For Information Technology,
Jeddah
3 days ago
Gather, analyze, and interpret market trends, industry developments, and competitor activities. Conduct detailed competitor benchmarking and SWOT analyses. Develop and deliver high-quality presentations and reports for management and stakeholders. Identify opportunities for business growth and operational improvements through data analysis. Collaborate with cross-functional teams to gather business requirements and translate them into actionable insights. Create dashboards and visual reports to...

Director of Photography (DOP)
Hikayat Advertising,
Jeddah
6 days ago
Company Description Hikayat Advertising is a creative agency focused on bringing clients' stories to life through compelling written, visual, and video content. By combining imagination with real-world insights, we transform customer success stories into impactful advertising narratives. Role Description This is a temporary on-site role for a Director of Photography located in Jeddah. The Director of Photography will be responsible...

Homeroom Teacher
Dar Jana International Schools,
Jeddah
1 week ago
Lesson Planning and DeliveryFollows weekly plans prepared by the coordinator.Plans, prepares, and presents lessons that cater to the needs of the various abilities within the class.Prepares unit plans and lesson plans with detailed required skills and standards to be covered, lesson objectives, and procedures for delivering instruction.Uses effective strategies in differentiating instruction.Integrates technology in classroom instruction (Google Apps, Google Online...
