IT Policies Manager
Jordan Ahli Bank
مجموع سنوات الخبرة :23 years, 6 أشهر
• Oversee the Bank's strategic initiative to upgrade and rewrite all of the Bank's policies and procedures into a new format and add additional policies needed to ensure compliance with applicable regulatory requirements.
• Ensure policy and procedure owners include all required elements into the related documents by working directly with and providing training to the owners on how policies and procedures are to be structured and written in compliance with the Bank’s policy and procedure initiative.
• Develop and maintain security policies, procedures, and guidelines that align with industry best practices.
• Work with business line managers to develop new or revisions to existing policies and procedures as new Bank products or services are offered, new lines of business are initiated or new regulatory requirements are published.
• Ensure all policies are aligned with the appropriate approving body and properly scheduled for ongoing submission to and review and approval by the Bank's Board or appropriate risk and strategic committees.
• Subject matter expert for the Bank on policy and procedure standards and the use of the Bank's Policy and Procedures online portal.
• Responsible about accurate content and appropriate usage of the Bank's Policy and Procedures online portal including maintaining archived historical versions of draft and published policies and procedures in compliance with the Bank's record retention requirements.
• Supervise the Policy, Procedure and Forms Coordinator in the discharge of assigned administrative duties. With the assistance of the Policy, Procedure and Forms Coordinator, manage all internal employee and external client facing forms used by the Bank to ensure consistent, current document usage and storage.
• Promote user friendly additions of new applications, and allow easy update of changes to the architecture as a consequence of changes to current applications.
• Knowledge and understanding of concepts and regulatory requirements that are common in the financial services industry.
• Ensure that all data collection methods are reviewed by the Risk Management Info-Sec Department to ensure that collected data continues to be adequate, relevant, and not excessive.
• Develop and manage a seamless change management process.
• Management of user access control to different tech and non-tech resources using defined Single Sign On (SSO) and Role Bases Access Control (RBAC) policies.
• Provide advice and guidance to the business and operations on necessary actions to achieve compliance with internal policies and procedures and external regulatory obligations, addressing any issues arising from monitoring reviews.
• Create, implement, and maintain access matrices for different banking system.
- Firewall Configuration (Cisco, Fortinet, Palo Alto)
- Optimizing IPS Configuration
- SIEM Configuration & Tunning
- FIM deployment & Configuration
- Authentication Server Configuration and Administration
- Complying with International Standards such as PCI DSS & Cobit
• Implementing PCI & ISO 27k regulatory requirements in the bank environment
• Develop and administer information security standards, guidelines and best practices.
• Develop information security programs, policies and procedures, and successfully executing these programs that meet the bank objectives.
• Professionally handle confidential matters, and show an appropriate level of judgment and maturity.
• Implement general security concepts and methods such as vulnerability and risk management, privacy, incident response, policy creation, and enterprise security strategies.
• Create and implement access matrices for different banking system.
• Project manage major security projects in the bank environment
• Have a strong understanding of the PCI regulatory requirements
• Assist the IT Team (Application, System, Database, Network) in building and maintain PCI certified systems and infrastructures
• Conducted assessment for National Bank of Iraq IT infrastructure, and assisted in implementing improvements.
• Worked with management, team members, and external PCI assessors to collect, analyze, categorize, and archive evidence in compliance with regulations and policy.
• Strong ethics and understanding of ethics in business and information security.
• Understand security issues on Microsoft, UNIX, and Linux operating systems.
• Understand security issues on Cisco network devices.
• Participated in providing gap analyses, from a technical perspective, highlighting current state, future state, client needs, best practices and competition (Business).
• Have a deep understanding of security technical architectural and design reviews.
•Program Cisco Routers, and switches for branches, Off-site ATM Locations
•Troubleshoot different router, and switches issues
•Create VLANs, and IP scopes for different LAN & WAN nodes
•Deploy Cisco based DHCP service
•Monitor LAN & WAN links, and solve any connection problems
•Secure routers, and switches with Cisco proprietary encryption
•Install, monitor, report the IBM intrusion detection system
•Apply security updates to the bank’s servers, workstations
•Type, and file network and system incident reports
•Type, and file change requests according to their category
•Assist the I.T. group in different system problems
•Manage user & computer accounts using Microsoft Windows 2008 Active Directory
•Troubleshoot DHCP & DNS server problems on Windows server 2008
•Format and Create Windows Domain Controllers using Windows 2003/2008
•Managing user mailboxes on Microsoft Exchange 2010 Server.
•Troubleshoot & Maintain Microsoft Exchange 2010 server environment
Responsible about the site Domain Controllers, ISA Server, File Servers
Responsible about the site physical network structure (Routers, Switches, Satellite modems, Microwave connection)
Provide software, hardware, and end-user support
Perform daily & monthly backups for the servers
Perform group policies, and internet restrictions on users
Ordering & maintaining supplies for the I.T. Department (tape backups, printer supplies, DVD-R)
Install, configure, maintain local & Multifunction network printers
Install, configure, maintain anti-virus solution for the network
Responsible about maintaining the PBX phone system in the site.
Responsible about the Ministry’s Web Server, Software & Hardware
Build, & maintain XML based websites
Update, maintain, & restructure the Ministry’s website
Provided software, hardware, and end-user support
Provided network support & configuration
Participating in the Ministry’s Geographic Information System (G.I.S.) documentation taskforce.
Create guidelines & policies for backing up the ministry’s Servers
Maintaining & ordering general supplies for the ministry’s I.T. dept
(Backup Tapes, CD-RW, DVD-R, Printer’s ink toners & cartridges)
Maintained software & hardware support for high-end servers
Provided support & maintenance for network & local printers
Provide computer & network support for USAID employees (home use)
Provided software, hardware, and end-user support
Provided network support & configuration
Perform backup duties, utilizing ArcServe software
Building and managing Access databases
Updating mortgage document database & collecting mortgage documents from title companies
Update and document changes to loan policies through utilizing Trackall System, Access, Quest (AS 400 server based system), and Word
Utilizing Quest (AS 400 server based system) to cross reference payments with loan and policy numbers
Inventorying loan documents through utilizing IVault system and spreadsheets
Handling all internal requests for additional information including requesting documents from original files, researching loan type, researching escrow status from loan closing, validating loan setup data, etc.
Confirming insurance coverage on financed residential & commercial properties
Processing incoming and outgoing correspondence for the Loss Draft Department
Installed and supported hardware, software, and network elements
Setup & maintaining user accounts in Microsoft Active Directory on Windows 2000 Server
Assisted students in utilizing computers and lab resources
Computer hardware testing
Network troubleshooting
Inventory management
Products delivery
لقد تم حذف الرابط بسبب انتهاكه لسياسة الموقع. يرجى التواصل مع قسم الدعم لمزيد من المعلومات.