TAT IT Technolgies
IT Security Operations – Governance, Risk & Compliance (GRC)
TAT IT TechnolgiesOman17 hours ago
ContractInformation Technology
We have an urgent requirement for IT Security Operations – Governance, Risk & Compliance (GRC) is required for one of our banking clients in Oman

Strong experience in Hands-on IT Security Operations(firewalls, WAF, IDS/IPS, endpoint security, MFA) is THE Must

Strong experience on Security Governance, Compliance & Audit Readiness ISO 27001, PCI-DSS, COBIT is MUST

Strong experience LAN/WAN, TCP/IP, firewalls, VPNs, network monitoring, and OS / DB hardening across Windows, Linux, and databases is MUST

Either of 1 certification is MUST -- CISSP, CISM or CISA

The IT Security Engineer is responsible for administration, operations, monitoring, and support of the Bank’s IT security systems in the Test and Development environment, ensuring 24×7 availability, security compliance, and alignment with IT Governance and regulatory requirements

Key Responsibilities (Mandatory)

  • Install, administer, monitor, and support IT security systems
  • Perform patching, upgrades, backups, and health checks in line with Change Management
  • Support IT security projects and new security implementations
  • Ensure compliance with ISO 27001, PCI-DSS, COBIT and internal governance standards
  • Coordinate with auditors and regulators (CBO) during security audits
  • Supervise DR failover and failback testing
  • Monitor security capacity, internet usage, and generate MIS reports
  • Coordinate with internal teams and vendors for issue resolution
  • Ensure 24×7 availability of security systems and timely incident resolution

Security Technologies (Mandatory Exposure)

Firewalls, WAF, UTM, IDS/IPS, DDoS, Network Monitoring, Endpoint Security (AV, DLP, EDR, Encryption), MFA, DAM, Data Classification, Content Scanning

Mandatory Skills & Qualifications

  • 4–6 years hands-on experience in IT Security Operations (Banking preferred)
  • Strong hands-on skills in firewalls, VPN, IDS/IPS, WAF, endpoint security
  • Knowledge of LAN/WAN, TCP/IP, Windows, Linux
  • Experience with OS & DB hardening
  • Working knowledge of ISO 27001, PCI-DSS, COBIT
  • Strong documentation, reporting, and communication skills

Skills: compliance,governance,it security

Key Skills

Ranked by relevance