Track This Job
Add this job to your tracking list to:
- Monitor application status and updates
- Change status (Applied, Interview, Offer, etc.)
- Add personal notes and comments
- Set reminders for follow-ups
- Track your entire application journey
Save This Job
Add this job to your saved collection to:
- Access easily from your saved jobs dashboard
- Review job details later without searching again
- Compare with other saved opportunities
- Keep a collection of interesting positions
- Receive notifications about saved jobs before they expire
AI-Powered Job Summary
Get a concise overview of key job requirements, responsibilities, and qualifications in seconds.
Pro Tip: Use this feature to quickly decide if a job matches your skills before reading the full description.
Essential Functions
- Develop and maintain the GRC Framework, ensuring IT Operations align with internal policies, regulatory requirements, and industry standards with ensuring compliance.
- Lead the establishment and ongoing development of a Security Operations Center (SOC). Oversee regular security assessments and vulnerability management, and patch management Manage real time security threats & incidents to identify and quarantine threats.
- Lead and develop the information security strategy, ensuring alignment with business objectives and a proactive approach to securing the organization's assets.
- lead the process, assessment and implementation of annual PCI DSS certification, and oversee compliance with other relevant standards.
- Coordinate and Conduct periodic Vulnerability and Penetration Testing exercises.
- Co-ordinate with other departments and address their requirements regarding security compliance.
- Provide security awareness & secure code training.
- Recommend and ensure the implementation of defensive functions (e.g., encryption, access control, and identity management) to reduce systems exploitation opportunities.
- Provide recommendations for security gaps mitigation.
- Productively evaluate and recommend new security technologies that can enhance company information security.
- Manage incident response (IT / Information Security) and support systems.
- Conduct IT Risk assessments (infrastructure, applications, cloud, and endpoints) and maintain the IT risk Register, ensuring timely mitigation and reporting.
- Define and monitor IT Key Risk Indicators (KRIs) and report trends to management.
- Monitor & review firewall rules and configuration.
- Respond to security breaches and network emergencies as necessary.
- Document all support and maintenance activities in accordance with internal policies.
- Assist in the development, testing, and maintenance of the organization’s business continuity and disaster recovery plans from a security perspective
- Conduct security due diligence on third-party vendors and partners; evaluate contractual terms and SLAs to ensure security requirements are met.
Preferred Education and Experience
- Bachelor’s degree in computer science or equivalent.
- At least +7 years of experience in information security / security engineering or similar roles.
- Security Certificate in security field such as (CISSP, CISM, OSCP, CEH - Security+, CCNA) is a plus.
- Previous experience working in a payment gateway of banking facility is a plus.
Competencies
- Strong knowledge in penetration testing & Vulnerability assessment, using industry-standard tools and methodologies.
- Have good experience in programming / scripting language at least in of the following: PHP, JAVA, or Go.
- Have good experience in bash scripting.
- Have good experience in code review with ability to identify and remediate code-level vulnerabilities.
- Implementation experience with security solutions such as: WAF, IPS, SIEM, LDP.
- Good knowledge of the top 10 OWASP application security risks and mitigation techniques.
- Good knowledge of PCI DSS standard and experience participating in audits and remediation processes.
- Have knowledge of mobile applications security assessment.
- Strong knowledge of internet standards and protocols including TCP/IP.
- Strong skills in information security governance, including policy development, procedure writing, and risk documentation.
Roles and Key KPI’s
- Mean Teim to Detect (MTTD) and Mean Time to Respond (MTTR) to security incidents.
- Number of critical/high vulnerabilities identified and remediated.
- Compliance score with PCI DSS and internal audits.
- Completion rate for security awareness training
- Frequency and impact rating of information security incidents.
Key Skills
Ranked by relevanceReady to apply?
Join PayTabs Global and take your career to the next level!
Application takes less than 5 minutes

