Information Security & Digital Risk Management
Requirements:
- Bachelor degree in Information Technology/ Cybersecurity, and related fields.
- Experience in IT Application development, Audit IT, assessment security testing, analytics.
- Proficiency in DevSecOps, SDLC, security testing - penetration testing, data analysis and reporting tools/dashboard ( e.g Microsoft Excel, Power BI, SQL),
- Experience in application programming language (Python, Java)
- Knowledge in Virtual Machine, cloud environment, open source.
- Knowlledge in open source security tools.
- Experience on compiling data/logs with SQL, power BI, QlikView, R, excel formula for reporting.
- Experience as business analyst, application developer.
- Good communication skill
Roles and responsibility :
- Conduct thematic assessment and review end to end application, identify potential security vulnerabilities and threats to application, network in Bank’s system,
- Communication and propose point of improvement, risk mitigation strategies/control. based on findings.
- Collaborate with other departments (Business team and Technology team) to assess and address technology-related risks across the Bank.
- Tracking and monitoring continuous findings
- Established thematic theme continuously.
- Supply data for management, develop visualize trends, matrix for management reporting.
- Investigate/asses incident to discover root cause.