Senior Security Analyst – GRC Management job at National Pension Scheme Authority
Website :
296 Days Ago
Linkedid Twitter Share on facebook

Vacancy title:
Senior Security Analyst – GRC Management

[ Type: FULL TIME , Industry: Business Management and Administration , Category: Management ]

Jobs at:

National Pension Scheme Authority

Deadline of this Job:
Friday, February 23 2024 

Duty Station:
Within Zambia , Lusaka, South - Central Africa

Summary
Date Posted: Monday, February 12 2024, Base Salary: Not Disclosed

Similar Jobs in Zambia
Learn more about National Pension Scheme Authority
National Pension Scheme Authority jobs in Zambia

JOB DETAILS:
Job Description
The Senior Analyst – ICT GRC assesses and prioritizes information security and cybersecurity risk across the Authority, facilitates compliance with regulatory requirements and information security policies, and develops and reports on information security metrics.

Key Responsibilities
• Address Requests from both internal and external audits to ensure that the Authority’s IT landscape is compliant at all levels of the architecture.
• In liaison with the ICT GRC Manager, develop policies, procedures and standards that meet existing and newly developed policy and regulatory requirements.
• Reducing information security and cybersecurity risk to within the Authority’s appetite by helping to prioritize and drive remediation efforts throughout the organization through the following:
• Conducting risk assessments to identify vulnerabilities internally and within vendor or third-party supplier products.
• Coordinate and track the implementation and closure all audit findings/recommendations, identified control weaknesses from risk and control self-assessment (RCSAs), consultant reports or member complaints and risk events.
• Plan and execute regular recurring and ad-hoc security related reviews, audits and internal process reviews
• Drive innovation to improve compliance effectiveness and efficiency
• Create and deliver training to employees on information security topics
• Maintain in-depth knowledge of certifications and controls such as ISSA, SOC-2, and ISO 27001, ISO 22301
• Track compliance gaps and ensure work to remediate gaps meets deadlines.
• Serves as a security expert in application development, database design, network, and/or platform (operating system) efforts, helping project teams comply with enterprise and IT security policies, industry regulations, and best practices.
• Perform security and compliance assessments on new and existing systems, processes, technology.
• Work with various business units to ensure controls are adequate, appropriate, and effective.
• Perform business impact analysis and assist with development of IT/InfoSec risk register.

Minimum Qualifications
• Grade 12 Certificate with 5 ‘O’ level with credit or better in Mathematics and English
• Degree in B. Eng./BSc. Electronics & Telecommunications Engineering/Computer Science
• The candidate must possess any of the following certifications:
1. 1.Certified Information Systems Security Professional (CISSP)
2. 2.Certified Information Systems Manager (CISM)
3. 3.Certified In Risk and Information System Controls (CRISC)
4. 4.Certified Information Systems Auditor (CISA)
5. 5.ISO 27001 Lead Implementor
6. 6.any other IT/Cyber Security Certification
• Must be a member of the Information and Communication Technology Association of Zambia (ICTAZ) with a valid practicing license.

Minimum Experience Required
• Minimum of four (4) years relevant work experience in a similar role

Work Hours: 8


Experience in Months: 48

Level of Education:
Bachelor Degree

Job application procedure
• Interested and qualified? Click here to apply

All Jobs

QUICK ALERT SUBSCRIPTION

Job Info
Job Category: Management jobs in Zambia
Job Type: Full-time
Deadline of this Job: Friday, February 23 2024
Duty Station: Lusaka
Posted: 12-02-2024
No of Jobs: 1
Start Publishing: 12-02-2024
Stop Publishing (Put date of 2030): 12-02-2066
Apply Now
Notification Board

Join a Focused Community on job search to uncover both advertised and non-advertised jobs that you may not be aware of. A jobs WhatsApp Group Community can ensure that you know the opportunities happening around you and a jobs Facebook Group Community provides an opportunity to discuss with employers who need to fill urgent position. Click the links to join. You can view previously sent Email Alerts here incase you missed them and Subscribe so that you never miss out.

Caution: Never Pay Money in a Recruitment Process.

Some smart scams can trick you into paying for Psychometric Tests.