Get more replies from employers
Send a job-specific resume in minutes.
Client of 6 Pence is seeking a security professional to support day-to-day operation, monitoring and optimization of the DLP solution across data-in-motion, data-at-rest and data-in-use in Bahrain.
You will perform data discovery scans, investigate policy violations, manage exceptions, and coordinate remediation with AD, M365, Azure/AWS, and compliance standards such as NIST CSF and ISO 27001. English and Arabic report writing and stakeholder communication required.
Support the day-to-day operation monitoring and optimization of the Group Data Loss Prevention DLP solution across data-in-motion data-at-rest and data-in-use Perform data discovery scans analyse results and coordinate the classification and remediation of sensitive data e g CPR passport IBAN and cardholder data Review and investigate DLP policy violations and blocked outbound emails manage exceptions and escape confirmed incidents in accordance with SOC and DLP procedures Support the implementation configuration maintenance and tuning of DLP policies and data classification labelling rules to improve detection accuracy and reduce false positives Prepare periodic DLP and Data-at-Rest reports for management and business units and track remediation activities through to completion Perform continuous validation and assurance reviews to assess the design and effectiveness of security controls across endpoints email security network cloud Active Directory SIEM and endpoint protection platforms Conduct configuration and access reviews against secure baselines and industry standards e g CBB PCI DSS SWIFT CSP ISO 27001 and NIST CSF Support Breach amp Attack Simulation BAS exercises and other control effectiveness assessments documenting findings and monitoring remediation activities Record track and follow up on cyber control assurance issues with control owners until closure Assess security risks associated with projects system changes and new initiatives and recommend corrective actions prior to implementation Coordinate and perform scheduled vulnerability assessments security scans compliance reviews and control validation activities Support vulnerability management by analysing scan results tracking remediation efforts and ensuring timely resolution of identified weaknesses Participate in cyber risk assessments to evaluate risks arising from vulnerabilities threats and ineffective security controls Support internal and external audits regulatory assessments and security inspections in accordance with applicable regulatory and industry requirements e g CBB PCI DSS SWIFT CSP RBI Provide audit evidence documentation and technical support to auditors and assist in the timely closure of audit findings and regulatory observations Coordinate with IT business units and external stakeholders to support cyber assurance and data protection initiatives Provide technical guidance on information security policies DLP controls and cyber assurance requirements Support the development maintenance and continuous improvement of information security policies standards procedures and guidelines Deliver and support security awareness and data protection initiatives based on emerging threats standards and assurance findings Maintain current knowledge of cyber security data protection and assurance best practices through continuous learning and professional development Perform additional duties assigned by the Line Manager and or Chief Information Security Officer CISO in line with business requirements