Cyber Assurance Analyst

Client of 6 Pence

Bahrain

On-site

BHD 12,000 - 24,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Client of 6 Pence is seeking a security professional to support day-to-day operation, monitoring and optimization of the DLP solution across data-in-motion, data-at-rest and data-in-use in Bahrain.

You will perform data discovery scans, investigate policy violations, manage exceptions, and coordinate remediation with AD, M365, Azure/AWS, and compliance standards such as NIST CSF and ISO 27001. English and Arabic report writing and stakeholder communication required.

Qualifications

  • Diploma or Bachelor's degree in Cyber Security, Computer Science, IT or related discipline.
  • 2–4 years of experience in Information Security, Cyber Security, or GRC.
  • Hands-on exposure to DLP technologies and data protection solutions.
  • Experience with vulnerability management and control validation.
  • Working knowledge of Windows environments, AD, Microsoft 365, and cloud platforms (Azure/AWS).
  • Familiarity with NIST CSF, ISO/IEC 27001, PCI DSS, SWIFT CSP, MITRE ATT&CK.
  • Security+ or equivalent DoD 8570 Level II is required; professional certifications preferred.
  • English and Arabic strong written and spoken communication.

Responsibilities

  • Support day-to-day operation monitoring and optimization of the DLP solution across data in motion, at rest and in use.
  • Perform data discovery scans, analyse results and coordinate data classification and remediation.
  • Review and investigate DLP policy violations and blocked emails; manage exceptions and incidents.
  • Assist in configuration, maintenance and tuning of DLP policies and labelling rules.
  • Prepare periodic DLP and data protection reports for management and business units.
  • Conduct configuration and access reviews against secure baselines and industry standards.

Skills

Information security
Cyber security
GRC
Analytical skills
Bilingual English Arabic

Education

Diploma/Bachelor in Cyber Security

Tools

DLP technologies
Active Directory
Microsoft 365
Azure
AWS

Job description

Support the day-to-day operation monitoring and optimization of the Group Data Loss Prevention DLP solution across data-in-motion data-at-rest and data-in-use Perform data discovery scans analyse results and coordinate the classification and remediation of sensitive data e g CPR passport IBAN and cardholder data Review and investigate DLP policy violations and blocked outbound emails manage exceptions and escape confirmed incidents in accordance with SOC and DLP procedures Support the implementation configuration maintenance and tuning of DLP policies and data classification labelling rules to improve detection accuracy and reduce false positives Prepare periodic DLP and Data-at-Rest reports for management and business units and track remediation activities through to completion Perform continuous validation and assurance reviews to assess the design and effectiveness of security controls across endpoints email security network cloud Active Directory SIEM and endpoint protection platforms Conduct configuration and access reviews against secure baselines and industry standards e g CBB PCI DSS SWIFT CSP ISO 27001 and NIST CSF Support Breach amp Attack Simulation BAS exercises and other control effectiveness assessments documenting findings and monitoring remediation activities Record track and follow up on cyber control assurance issues with control owners until closure Assess security risks associated with projects system changes and new initiatives and recommend corrective actions prior to implementation Coordinate and perform scheduled vulnerability assessments security scans compliance reviews and control validation activities Support vulnerability management by analysing scan results tracking remediation efforts and ensuring timely resolution of identified weaknesses Participate in cyber risk assessments to evaluate risks arising from vulnerabilities threats and ineffective security controls Support internal and external audits regulatory assessments and security inspections in accordance with applicable regulatory and industry requirements e g CBB PCI DSS SWIFT CSP RBI Provide audit evidence documentation and technical support to auditors and assist in the timely closure of audit findings and regulatory observations Coordinate with IT business units and external stakeholders to support cyber assurance and data protection initiatives Provide technical guidance on information security policies DLP controls and cyber assurance requirements Support the development maintenance and continuous improvement of information security policies standards procedures and guidelines Deliver and support security awareness and data protection initiatives based on emerging threats standards and assurance findings Maintain current knowledge of cyber security data protection and assurance best practices through continuous learning and professional development Perform additional duties assigned by the Line Manager and or Chief Information Security Officer CISO in line with business requirements

  • Diploma or Bachelor's degree in Cyber Security, Computer Science, Information Technology, or a related discipline.
  • 2 – 4 years of experience in Information Security, Cyber Security, Cyber Assurance, or IT Governance, Risk & Compliance (GRC).
  • Hands-on exposure to Data Loss Prevention (DLP) technologies and data classification/protection solutions.
  • Experience with vulnerability management, security control validation, and compliance assessments.
  • Working knowledge of Windows environments, Active Directory (AD), Microsoft 365, and cloud platforms (Azure and/or AWS).
  • Familiarity with recognised security frameworks and standards such as NIST CSF, ISO/IEC 27001, PCI DSS, SWIFT CSP, and MITRE ATT&CK.
  • Security+ (or equivalent DoD 8570 Level II certification) is required.
  • Professional certifications such as ISO/IEC 27001 Lead Implementer/Lead Auditor, Certified Ethical Hacker (CEH), PCIP, or equivalent are preferred.
  • Strong written and verbal communication skills in English and Arabic.
  • Ability to prepare professional reports, technical documentation, and audit evidence.
  • Strong analytical and problem-solving skills with the ability to make objective, risk-based decisions.
  • Ability to communicate security policy violations and recommendations effectively while maintaining positive stakeholder relationships.
  • Good understanding of organizational policies, regulatory requirements, and legal considerations related to information security and data protection.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Assurance Analyst: DLP, Compliance & Risk
Cyber Assurance Analyst: DLP, Compliance & Risk

Client of 6 Pence • Bahrain

On-site
BHD 12,000 - 24,000
Analyst Cyber Security
Analyst Cyber Security

Gulf Air • Bahrain

On-site
BHD 13,000 - 27,000
Security Operations Center (SOC) Manager
Security Operations Center (SOC) Manager

Aventus • Capital Governorate

On-site
BHD 34,000 - 45,000
Security Architect
Security Architect

Vamsystems • Manama

On-site
Senior | Internal Audit | Bahrain
Senior | Internal Audit | Bahrain

ACCA Careers • Bahrain

On-site
BHD 18,000 - 24,000
Systems Specialist - Fircosoft
Systems Specialist - Fircosoft

Capitex • Manama

On-site
BHD 33,000 - 46,000
Risk Analyst
Risk Analyst

International Turnkey Systems - ITS • Manama

On-site
BHD 8,000 - 12,000
IT COMPLIANCE & RISK
IT COMPLIANCE & RISK

Minds United • Manama

On-site
BHD 50,000 - 80,000
Senior Associate, External Audit – Insurance
Senior Associate, External Audit – Insurance

Jobtailor • Manama

On-site
BHD 14,000 - 22,000
OT Cyber Security Architect & Lead Engineer
OT Cyber Security Architect & Lead Engineer

Yokogawa • Muharraq

On-site
BHD 18,000 - 36,000