Will be responsible for developing and implementing the enterprise vision, strategy, and security program to ensure information assets and technologies are adequately protected. Maintaining a current understanding of the cybersecurity landscape to effectively protect the organization.
Key Responsibilities :
- Improve and implement a comprehensive information security strategy aligned with the goals of the organisation and regulatory requirements.
- The governance and management of Information Security Management System along with Business continuity Management System and Data Privacy Management System.
- Lead the information security team in the identification, assessment, and management of security risks.
- Establish security policies, standards, and procedures to protect sensitive information and ensure compliance with applicable regulations, including privacy regulations
- Focus on supply chain and 3rd party security risks
- Collaborate with IT and business leaders to integrate security practices into all aspects of the organization's operations.
- Conduct regular security audits and assessments to identify vulnerabilities and recommend improvements.
- Respond to security incidents and breaches, leading investigations and coordinating remediation efforts.
- Building a security aware organization (Training).
- Stay current with industry trends and emerging threats, and ensure the organization adapts to new security challenges.
- Plan, coordinate with external auditors
- Security reporting of KPIs, Risks, challenges, ongoing & future security programs and change in threat landscape to top management, including Board of Directors.