Position Summary

The Chief Information Security Officer (CISO) is responsible for establishing and enhancing the bank's information security and technology risk management capabilities, ensuring that client’s information assets are effectively protected against existing cybersecurity threats. This role is crucial for safeguarding the bank’s data, technology infrastructure, and customer information. Given the high regulatory standards and the increasing focus of cyber threats on financial institutions, the expectations for a CISO in this sector are extensive, requiring a blend of strategic leadership and technical expertise. The CISO plays a pivotal role in maintaining trust, protecting the bank’s assets, and ensuring the resilience of its operations amid rising cyber risks. We seek a candidate with the right skill set, expertise, and experience to meet these critical responsibilities.

Skill set and/or Expertise/Experience

  • Develop and Implement a Robust Security Strategy
  • Ensure Regulatory Compliance
  • Risk Management and Mitigation
  • Incident Response and Crisis Management
  • Cybersecurity Awareness and Training
  • Collaborate with Senior Management and Board
  • Implement Security Technologies
  • Third-Party Risk Management
  • Data Privacy and Protection
  • Foster a Culture of Security
  • Continuous Monitoring and Threat Intelligence
  • Budgeting and Resource Allocation
  • Security Governance
  • Collaboration with Law Enforcement and Industry Peers
  • Cloud and Digital Transformation Security

 Key Responsibilities

  • Provide leadership, vision, and direction on information security to the information security staff. Prepare and launch for various platforms (e.g. Android, iOS, web etc.)
  • Oversee and coordinate all aspects of alignment of the Bank’s information security policies and procedures aligned with Industry’s best practices and regulatory requirements including directing and approving the design of security systems and services.
  • Oversee and ensure the delivery of effective information security awareness trainings to bank’s staff.
  • Analyze and ensure that information security programs are in compliance with applicable laws, regulations, and policies.
  • Manage and maintain key information security functions, including information security risks, security operations and other activities related to ISMD across the bank.
  • Alignment of Bank's risk management strategy and build out information security specific elements, collaborating with appropriate management teams and committees to obtain buy-in and build momentum.
  • Collaborate with systems/application owners to understand and address the risk position around key business applications and data.
  • Develop and obtain management approval for short and long term strategies, roadmaps, and business cases to appropriately mitigate, detect, and deter information security threats and IT Risk.
  • Facilitate the development of processes to respond in a timely and proactive manner to significant information security breaches.
  • Develop appropriate baseline security controls to enhance security architecture while minimizing risk to an accepted level with the consent of management.
  • Ensure that processes are in place and that staff is appropriately skilled to respond to security incidents.
  • Lead the effort to maintain an effective and timely program to manage identity and access privileges.

Experience, Skills (Necessary to perform the job completely)

  • Masters in Computer Science/Computer Engineering or Equivalent degree
  • Must have relevant Industry related Information Security certifications like CISM, CISSP etc.
  • Good knowledge of information security best practices/international standards and local banking regulations/ practices
  • Minimum 10 -15 years’ experience in Financial Services Sector with preferably 8 years in the Banking sector in the field of Information Security Management.
  • Well acquainted with security management tools and techniques for security/risk management

Internal - Most Frequent Contacts  

  • All relevant departments/units wherever necessary                            

 External - Most Frequent Contacts

  • Technology vendors, SBP Auditors/Inspection Team, Regulatory Authorities, External Auditors

工作详细内容

全部职位:
1 发布
工作时间:
早班
工作类型:
部门:
IT
工作地址:
性别:
没有偏好
最低学历:
硕士
学位头衔:
Masters in Computer Science/Computer Engineering or Equivalent degree
职位等级:
资深专业人员
经验:
10年 - 15年 (Minimum 10 -15 years’ experience in Financial Services Sector with preferably 8 years in the Banking sector in the field of Information Security Management.)
在之前申请:
Mar 12, 2025
发布日期:
Feb 11, 2025

你最大的竞争优势

快速得到有竞争力的分析和专业的对你的评定
联系我们团队的专业顾问来提升你的简历
尝试罗资 专业版

相同职位头衔

Security Officer

HRSI, 伊斯兰堡, 巴基斯坦
发布 Feb 07, 2025

Chief Technology Officer

Ennovate IT, 多个城市, 巴基斯坦
发布 Feb 08, 2025

General Manager – Information / Technology

Ennovate IT, 多个城市, 巴基斯坦
发布 Jan 19, 2025
我在ROZEE上找到工作啦!