Security Analyst/Manager
[ad_1]
Voor een directe opdrachtgever in Groningen is Harvey Nash op zoek naar een Security Analyst/Manager.
Responsibilities
Perform risks assessments and provides advice, guidance & support to business application owners, being an acknowledged expert information security;
Operates the logical security access role structure. Provides regular review on the implemented logical access within business applications to ensure compliance;
Coordinates and manages information security events / incidents;
Provides assurance that third parties / outsourcers maintain comply with the minimum standard of AAM Information Systems Security policy;
Maintains current Business Continuity Plan (BCP) of AAM. This includes updating Business Impact Analyses (BIA), working with the departments to update and document the BCP plans annually, facilitating the completion of an annual Business Impact Analysis, analyzing BCP information collected and giving presentations;
– Coordinate action plans from BCP.
– Qualifications and Experience
The candidate we are looking for has at least a Bachelor level (HBO) and six to eight year experience in a related role, preferably in the financial asset management industry.
Master Degree on Information Security or IT (EDP) auditing;
Qualified Information Security Working experience with compliance, Information Systems Security and control frameworks, e.g. ISO 27002;
Knowledge and experience with relevant IT Processes (ITIL);
Certified for Information Systems Security certifications, e.g. CISM, CISSP;
Experience with performing BIA’s, drafting BCP plans.
Experienced in working in a global environment;
Preferably experienced in coordinating global (IT) projects.
Personal competences
Problem solver, has an achievement orientation and is able to take responsibility;
High personal standards;
Has a professional, systematic, disciplined and analytical approach to all work undertaken;
Attention to detail with the ability to multi-task. Awareness of the importance of timing, stakeholder management and group processes in managing change;
[ad_2]
Source link