
Company Overview:
ShellKode is a leading provider of cutting-edge cybersecurity solutions, specializing in protecting businesses from evolving digital threats. We operate across various industries, including finance, healthcare, and technology, safeguarding sensitive data and ensuring business continuity for our clients globally.
Role Overview:
The Risk & Information Security Management System (ISMS) role at ShellKode involves developing, implementing, and maintaining our ISMS framework to ensure the confidentiality, integrity, and availability of information assets. This role collaborates closely with IT, compliance, and audit teams to identify and mitigate risks, conduct internal audits, and ensure adherence to relevant industry standards and regulations. The successful candidate will play a crucial role in strengthening our security posture and protecting our clients' and our own critical data.
Key Responsibilities:
- Develop and maintain the organization's ISMS framework based on ISO 27001 standards, ensuring alignment with business objectives and regulatory requirements.
- Conduct comprehensive risk assessments and vulnerability analyses to identify potential threats and vulnerabilities to information assets.
- Design and implement risk mitigation strategies and controls to reduce identified risks to acceptable levels.
- Perform internal audits to assess the effectiveness of implemented controls and identify areas for improvement.
- Manage IT compliance activities, including documentation, monitoring, and reporting, to ensure adherence to relevant laws, regulations, and industry standards.
- Collaborate with IT teams to implement and maintain security technologies and processes, such as firewalls, intrusion detection systems, and data loss prevention tools.
- Develop and deliver security awareness training programs to educate employees on security best practices and promote a security-conscious culture.
- Investigate and respond to security incidents, including data breaches and malware infections, to minimize damage and prevent recurrence.
- Prepare and present reports on risk management and ISMS activities to senior management, providing insights and recommendations for improvement.
- Stay up-to-date on emerging security threats, vulnerabilities, and technologies to proactively address potential risks.
Required Skillset:
- Demonstrated ability to develop and implement ISMS frameworks based on ISO 27001 standards.
- Proven expertise in conducting risk assessments, vulnerability analyses, and IT audits.
- Strong understanding of IT compliance requirements, including data privacy regulations and industry standards.
- Excellent communication and interpersonal skills to effectively collaborate with cross-functional teams and stakeholders.
- Bachelor's degree in Computer Science, Information Security, or a related field.
- Ability to work effectively in a fast-paced, dynamic environment, adapting to changing priorities and requirements.
Didn’t find the job appropriate? Report this Job