Cyber Security Risk & Resilience Management Engineer
- Keep track of and evaluate the state of the cybersecurity risk profile in the financial industry.
- Prepare and manage the comprehensive reports on Inherent Risk.
- Define typical use cases and correlation roles to be taken into consideration as a minimal logging baseline in SOC operations. Identify threat methods and approaches in accordance with MITRE ATT@Ck methodologies.
- Oversee risk management in the course of daily work and ensure that cyber security risks are mapped to international standards like EG CS Framework, NIST, MITRE, and ISO27K.
- Monitor and disseminate changes to risk profiles, actions, plans, objectives, abilities, and other elements in connection with certain cyber operations alert issues.
- Accountable for formulating and monitoring risk reduction strategies, overseeing proof to ensure that possible risks and threats possess a suitable level of protection.
- Provide management reports in a timely, accurate, and regular way that accurately reflect the security posture of the financial institution.
- Monitoring and reporting the alerts status as well as any required remedial actions carried out by the financial industry.
- Following and maintaining up-to-date reports on the long-term mitigation plans.
- Verify if compensating controlslike cybersecurity-enabled controlsallow the financial institution to reduce risk.
- Builds and presents the weekly progress and status report to higher management.
- Provide mentoring and oversight to the alert's response and Day-to-day analysis of security alerts sent by EG-FINCIRT team.
- Measuring and continuously improving the capability through regular exercises.
Required Skills and Experience
:3-5 years experience in cybersecurity related field
- .Bachelor's Degree in Information Technology, Computer Science, Software Engineering or a related qualification, and/or demonstrated capability through past employment experience
- .CISA, CISSP, CISM, ISO 27001 Certified Lead Auditor or equivalent
- .Knowledge of the various industry and government strategies and standards in privacy and security including but not limited to ISO, PCI, CIS, NIST, MITRE
- .Excellent Knowledge of cybersecurity principles
- .Strong Knowledge of cyber threats and vulnerabilities
- .Strong knowledge in architecture standards, security baselines and guidelines for networks, systems, infra
.Strong problem-solving skill
- sExperience in organizing resources, establishing priorities, and leading security initiative
s