Overview
We are seeking a highly skilled and experienced Cyber Security Manager to lead and manage the organization’s cybersecurity operations, risk management, and compliance initiatives. This role is critical in safeguarding digital assets, ensuring regulatory compliance, and driving continuous improvement in security posture across the enterprise.
Responsibilities
- Lead the development, implementation, and maintenance of cybersecurity policies, standards, and procedures.
- Oversee security operations including threat detection, incident response, and vulnerability management.
- Manage internal and external audits, ensuring compliance with regulatory and industry standards.
- Collaborate with cross-functional teams to assess and mitigate security risks.
- Monitor and respond to security alerts, advisories, and threat intelligence feeds.
- Conduct regular IT risk assessments and self-assessment exercises (e.g., RCSA, CSA, CSIP).
- Manage security tools and technologies including firewalls, endpoint protection, SIEM, EDR, PAM, and DDoS mitigation.
- Ensure secure configuration and monitoring of cloud environments and virtual infrastructure.
- Lead investigations into security incidents and breaches, and implement corrective actions.
- Engage with external vendors and partners to ensure proper governance and service delivery.
- Provide strategic input into security projects and initiatives aligned with business objectives.
Qualifications & Experience
- Bachelor’s degree in Computer Science, Business, Engineering, or a related field.
- Professional certifications such as CISSP, CISM, CISA, or equivalent are highly desirable.
- Minimum 10 years of experience in cybersecurity or IT risk management, with at least 3 years in a leadership role.
- Strong understanding of regulatory frameworks (e.g., ISO 27001, NIST, GDPR, local financial regulations).
- Hands-on experience with security technologies including SIEM, EDR, WAF, VPNs, IAM/PAM, and cloud security.
- Familiarity with application security testing (SAST/DAST), API security, and email protection.
- Excellent communication, stakeholder management, and presentation skills.
- Strong analytical and problem-solving capabilities.