24/7 SOC activities (monitoring and operations), Incident Handling and Response, Report writing, Daily Security Operations & Controls of the Firewalls (Network Appliances, Software Solutions etc.), Enterprise & IP Networks (LAN, WAN, WLAN), Vulnerability Assessment, Cloud based Anti-Virus Services and Traffic Analysis. Monitor multiple security technologies, such as IDS / IPS, syslog, file integrity, firewall, proxy, mail gateway, and vulnerability scanners.
Supervise Computer Emergency Response Team (CERT) of South Region for handles information security incidents, report on vulnerabilities and promote effective IT security practices throughout the region, monitoring multiple security technologies using Event Management (SIEM) tool, AD Audit and log analyzer to detect IT security incidents.
Manage and maintain up-to-date configurations on all ERP Servers, Interface Systems, Network Switches, Gateway Firewall, Wireless Controller, End Point Security appliances and ensure that baseline for all technologies are maintained and updated.
Develop and maintain Information Security Policies & Process to provide an efficient, effective & up-to-date risk management environment in support of company strategic goals.
Ensure that information security is adequately addressed in the development stage of any new products / portals.
Collect and analyze event information and perform threat or target analysis duties. Interprets, analyzes, and reports all events and anomalies including initiating, responding, and reporting discovered events.
Implement and maintain the IT Audit & Risk Management standards for operations, backup and security policy of server, communication, network infrastructure, maintenance procedures, disaster recovery and data protection.
Work with IT team to design and develop systems that monitor system security and provide management reports to protect and ensure the safety of the company information assets.
Verify that information security controls around user access, change management, systems access and utilization are working as intended through the use of daily monitoring tools and provide reports to management.
Develop and manage the company Information Security Awareness Program and conduct training in support of same.
Perform periodic reviews of Information security policies compliance and prepare reports for management.
Liaise with local/international vendors during security products evaluation, review & finalization of technical proposals/solutions.
Interact and liaison with internal and external auditors as per company audit requirements and tracked, followed up & closed audit observations raised relating to IT Security.
- مجال الشركة:
- الضيافة والسكن
- الدور الوظيفي:
-
تكنولوجيا المعلومات