Key Responsibilities:
Years of Experience: (8 - 12 Years)
- Risk Architecture: Manage the lifecycle of cyber risks within the IRM tool , ensuring they are visible in the broader Enterprise Risk Management (ERM) framework.
- Security Assessments: Conduct Security Assessment Tests (SATs) for current tech and business processes, ensuring the right controls (firewalls, encryption, etc.) are in place.
- Strategic Advisory: Act as a subject matter expert for non-technical departments (Legal, IDT), guiding them on how to bake security into their daily operations.
- Governance & Reporting: Develop and track Key Risk Indicators (KRIs) . Prepare high-level reports for risk forums and committees to ensure accountability.
- Audit & Compliance: Lead the charge for audit readiness (internal and external) and ensure the company follows global regulatory standards.
- Incident Support: Assist the Cyber Defence Centre during active incidents and lead the "Lessons Learned" evaluations afterward to prevent a repeat.