Z5
Job Description
Job description
- Program Development Leadership: Design and implement a comprehensive insider threat and risk management program aligned with business and security objectives.
- Threat Detection Response: Utilize data analytics, behavioral indicators, and security tools (e.g., UEBA, DLP, SIEM) to monitor and investigate potential insider threats.
- Risk Assessment Mitigation: Conduct insider risk assessments, define detection methodologies, and recommend mitigation strategies.
- Collaboration Stakeholder Engagement: Work closely with Legal, HR, IT, Security Operations, and Compliance teams to develop policies, response frameworks, and training initiatives.
- Incident Handling Investigations: Lead investigations into potential insider threats, ensuring timely response and remediation while adhering to privacy and legal considerations.
- Security Awareness Training: Drive awareness programs to educate employees and leaders about insider risks and best practices.
- Regulatory Compliance Alignment: Ensure the program aligns with industry standards (e.g., NIST, ISO 27001, SOC2) and regulatory requirements.
- Continuous Improvement: Regularly assess and refine the program to adapt to evolving threats and business needs.
What Youll Bring:
- Bachelor s degree in information security, Cybersecurity, or related field.
- 6+ years of experience in information security, with a focus on information protection, DLP and data protection.
- Strong understanding of information security frameworks, regulations, and standards (e.g., ISO 27001, NIST, GDPR).
- Familiarity with network security, endpoint protection, and cloud security principles.
- Ability to balance proactive prevention with reactive incident response.
- High ethical standards and discretion when handling sensitive information.
- Demonstrated ability to build and lead teams, with excellent communication and interpersonal skills.
- Experience with security technologies such as data classification, DLP, encryption, SIEM, and access controls.
- Professional certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or equivalent.
- Excellent analytical and problem-solving skills, with the ability to assess risks and recommend effective solutions.
- Strong communication and interpersonal skills to collaborate with various teams and stakeholders.
- Proven track record of successfully implementing and managing information protection programs.
Role: Risk Management & Compliance - Other
Industry Type: Management Consulting
Department: Risk Management & Compliance
Employment Type: Full Time, Permanent
Role Category: Risk Management & Compliance - Other
Education
UG: Any Graduate
PG: Any Postgraduate
