Sub Category

Trainee / Graduate Jobs

Administrative Jobs in Nigeria

Advertising Jobs Nigeria

Accounting Jobs in Nigeria

Auditing Jobs Nigeria

Arts Jobs in Nigeria

Android / IOS Developer Jobs

Agriculture Jobs in Nigeria

Architecture Jobs in Nigeria

Aviation Jobs in Nigeria

Automobile Jobs in Nigeria

Banking Jobs in Nigeria

Computer & InfoTech Jobs

Computer / IT Support Jobs

Customer Service Jobs

Civil Engineering Jobs

Cook / Chef Jobs

Database Jobs in Nigeria

Driving / Dispatch Rider Jobs

Education Jobs for Nigerians

Real Estate Jobs

Electrical/Electronics Jobs

Engineering Jobs in Nigeria

Facility Mgt Jobs in Nigeria

Finance Jobs in Nigeria

Front Desk Jobs in Nigeria

Geology Jobs

Government Jobs in Nigeria-

Graphics Design Jobs

Hospitality Jobs in Nigeria

Hotel Jobs in Nigeria

HR Jobs in Nigeria

Industrial Attachment (Internship)

Insurance Jobs in Nigeria

Journalism / Content Writing Jobs

Law Enforcement / Security Jobs

Lecturing Jobs in Nigeria

Law / Legal Jobs in Nigeria

Linux & Unix Jobs Nigeria

Marketing & Sales Jobs

Maritime & Shipping Jobs

Medical & Healthcare Jobs

Military Jobs in Nigeria

Computer Networking Jobs

NGO Jobs in Nigeria

Oil & Gas Jobs in Nigeria

Oracle Jobs in Nigeria

Personal Assistant Jobs

PHP & MySQL Jobs in Nigeria

Physician / Medical Officer Jobs

Public Relation Jobs

Programming / Software Jobs

Pri/Sec Sch Teaching Jobs

Real Estate Jobs in Nigeria

Remote / Work-at-home Jobs

Research Jobs in Nigeria

Safety & Health Jobs

Secretarial Jobs in Nigeria

Security Jobs in Nigeria

Sales Jobs

Shipping & Maritime Jobs

Student Jobs in Nigeria

Software Developer Jobs

System Admin Jobs in Nigeria

Teaching Jobs in Nigeria

Telecommunication Jobs

Semi-skilled / Factory Work

Volunteer Jobs Nigeria

Web Developer Jobs Nigeria

Web Designer / Frontend / UI Jobs


Job Filter

Get Latest Nigerian Jobs Alert!
Enter your email below.










  
          Popular Jobs
Co-creation Hub (CcHUB) Nigeria Job Recruitment (21 Positions)

HNJ Exclusive Job GOODY Bag - July Week Two UPDATE!

Sahei Gender Development Initiative Job Reruitment (14 Positions)

Purelife Health Job Recruitment (5 Positions)

BBC Media Action Job Recruitment (4 Positions)

ABNL Limited Job Recruitment (6 Positions)

DMOT Enterprises Job Recruitment (3 Positions)

The Change Room Job Recruitment (10 Positions)

Felton Energy Services Limited (FESL) Job Recruitment (6 Positions)

International Greembers Limited Job Recruitment (5 Positions)

Recore Limited Job Recruitment (6 Positions)

Chateau Royal Real Estate Limited Graduate & Exp. Job Recruitment (3 Positions)

Universal Human Resource (UHR) Consult Limited Job Recruitment (3 Positions)

Alliance Hospital and Services Job Recruitment (3 Positions)

Venmac Resources Limited Job Recruitment (3 Positions)

Latest Oil & Gas Job Opportunities in Nigeria - HNJ Exclusive

HNJobs (Recap): Federal / State Government Job Opportunities - HNJ Exclusive

Excel and Grace Consulting Job Recruitment (6 Positions)

Latest Entry-level & Internship Job Recruitment in Nigeria - HNJobs (Weekly Recap)

AAVA Brands Sales Graduate Trainee Program 2025

Prestigious Consulting Group Job Recruitment (4 Positions)

Latest Graduate & Management Trainee Job Recruitment in Nigeria - HNJobs (Weekly Recap)

Latest Customer Service / Front Desk Job Recruitment in Nigeria - HNJobs (Weekly Recap)

HNJobs (Recap): International Agency / NGO / Multinational Job Opportunities - HNJ Exclusive

HNJobs (Recap): Remote / Work-At-Home Job Opportunities

Residency Hotels Limited Job Recruitment (6 Positions)

Sun King (Formerly Greenlight Planet) Job Recruitment (3 Positions)

TheHRHive Job Recruitment (5 Positions)

Rubber Estates Nigeria Limited Job Recruitment (3 Positions)

Kuda Bank Job Recruitment (6 Positions)

ICS Outsourcing Limited Job Recruitment (3 Positions)

Estrada International Staffing Solutions Plc Entry Level & Exp. Job Recruitment (9 Positions)

Lagoon Hospitals Job Recruitment (3 Positions)

Bincike International Job Recruitment (3 Positions)

Skyline University Nigeria (SUN) Job Recruitment (108 Positions)

Lifted Horizon Nigeria Limited Job Recruitment (5 Positions)

Transsion Holdings Job Recruitment (3 Positions)

Equity Specialist Hospital and Diagnostic Center Job Recruitment (3 Positions)

Rotawn Energy & Logistics Services Limited Job Recruitment (3 Positions)

Castville Solutions Job Reruitment (8 Positions)

Coca-Cola Hellenic Bottling Company Job Recruitment (5 Positions)

Hatlab Ice Cream Delite Limited Job Recruitment (3 Positions)

Mshel Homes Limited Job Recruitment (4 Positions)

Bonzee Consulting Job Recruitment (3 Positions)

Nestoil Plc Job Recruitment

SPIE Oil & Gas Services Job Recruitment (3 Positions)

Danish Refugee Council (DRC) Job Recruitment (5 Positions)

Viju Industries Nigeria Limited Job Recruitment

Unified Payments Job Recruitment (27 Positions)

MTN Nigeria Job Recruitment (9 Positions)


Information Security Risk Officer at Standard Chartered Bank Nigeria

Posted on Thu 30th Jun, 2022 - hotnigerianjobs.com --- (0 comments)


Standard Chartered Bank Nigeria - We attract talented individuals. Not only can they give you the benefit of their experience, they also reveal a closer, more personal look at the wide range of global opportunities we offer. At the core of the Group's people strategy is our focus on employee engagement. Engagement is a key driver of productivity and performance, which creates the foundation of our performance culture. We encourage and focus on the behaviours that bring out the very best from every employee, assessing their performance not just on results but on how those results were achieved. To further embed these behaviours we have a remuneration programme in place, carefully designed to incentivise our employees to live our values every day.

We are recruiting to fill the position below:

Job Title: Information Security Risk Officer 

Job ID: 2200014728 
Location: Nigeria
Job: Risk
Schedule: Full-time
Employee Status: Permanent

Job Description

  • Review and alignment of country Information security program with the Group security strategy  
  • Effectively and collaboratively identify, escalate, mitigate and resolve risks associated with the bank's information assets.
  • Periodically inform the Board on latest developments in the cyber security universe
  • Assure that process owners are escalating risks and control gaps when decommissioning of systems and data sanitization activities. 
  • Assure measurement of effective management of cyber threat intelligence by 1st Line ICS team.
  • Assure process owners are creating awareness among staff on cyber threats and their controls.
  • Assure that business process owners are managing data centers as per standards.
  • Assure that the process owners are escalating compliance matters to mitigate security aspects of networking devices (servers, routers, firewalls, etc.) under applicable policies, standards, and procedures.

Responsibilities

  • The Group Chief Information Security Officer (CISRO) organisation is instrumental in protecting and ensuring the resilience of Standard Chartered Bank’s data and IT systems by managing information and cyber security (ICS) risk across the enterprise. 
  • As a critical function reporting into the Group Chief Risk Officer (CRO), the Office of the Group CISRO serves as the second line of defence for assuring ICS controls are implemented effectively and in accordance with the ICS Risk Framework and for instilling a culture of cyber security within the Bank. 
  • The Group CISRO is responsible for ICS governance, strategy, policy, awareness, training, risk assessments, red teaming, third party security risk, industry partnerships, and regulatory engagement. 
  • In addition, a team of Information Security Officers (ISRO) reports to the Group CISRO and performs a pivotal role as an extension of the Group CISRO in supporting the ICS risk management strategy, governance, advisory and assurance roles that face off to the Client Services, Regions, and Functions. 
  • The Office of the Group CISRO is central to ensuring the Bank’s ability to meet its ICS commitments to internal and external stakeholders, including regulators, as well as maintaining an acceptable ICS risk profile that is regularly reported to the Board.

Strategy:

  • The ISRO position is a permanent role that requires strong business acumen and deep knowledge and experience in the ICS field. 
  • The successful candidate will have a strong understanding of operating in a second line capacity within an ICS or risk management organisation, and can respond flexibly and collaboratively to evolving business, regulatory and threat requirements. The role reports into Head ISRO for AME. 
  • The ISRO will work closely with the CCRO, HICS & Group Chief Information Security Risk Officer and others to address ICS as a principal risk type for the Bank and support its integration into the Bank's overall Enterprise Risk Management strategy. 
  • The role will provide oversight and challenge of ICS risk management and control effectiveness as a risk partner to country leadership as defined in the Bank’s ICS Risk Type Framework and under delegation from the Group CISRO.

Business:

  • The primary purpose of this position to ensure that the management of ICS risk is operating effectively and efficiently and to provide assurance that ICS risk is appropriately managed within the countries.
  • The role will support the Group Chief Information Security Risk Officer in their role as the Bank's executive accountable for ICS risk. 
  • The successful candidate will work closely with the AME Region - ISRO Heads, the Security Technology Services team, and Country CRO, CIO, and Compliance Officers, as well as other key stakeholders to drive requirements and help set priorities for ICS strategy and investment based on acceptable risk tolerance and taking into account the evolving threat and regulatory landscape, policies and standards, and technology infrastructure. 
  • In addition, given the rapidly evolving ICS regulatory environment, successful candidate will have a strong acumen for working with regulators and understanding ICS policy with an ability to articulate new requirements into ICS risk management assessments and processes.

Processes:
The major functional activities that the role will lead and manage are:

  • Delegation of Authority from the Group CISRO for ICS risk management engagement with country
  • Overseeing and challenging 1st line ICS risk proposals and risk-taking activities;
  • Intervening in 1st line activities if they are not in line with existing or adjusted Risk Appetite;
  • Monitoring of ICS risks and associated remediation plans across the country using the Group CISRO Governance Risk Type Framework;
  • Assuring the 1st line implements controls to comply with applicable laws and regulations as defined by the Group CISRO Policy team and escalate significant regulatory non-compliance matters and developments to the Group CISRO;
  • Conduct periodic information security assurance on the ICS risk profiles (including infrastructure) submitted by 1st line and suggest improvements.
  • Promoting a healthy ICS risk culture and good conduct within the country.

People & Talent :

  • Lead through example and operate with the appropriate culture and values.
  • Uphold and reinforce the independence of the second line ICS Risk function.

Risk Management:

  • Deliver the defined aspects of the ISRO role to support the Group's ICS risk management approach and objectives.
  • Ensure that the Country role is managed in accordance with the defined Group CISRO Governance Risk Type Framework and associated Policy and Standards; and those issues are identified, escalated, and addressed as appropriate.

Governance:

  • Establish strong ties into the relevant country leadership, governance, risk, and control committees to ensure adequate monitoring, tracking and governance of ICS risk.
  • Drive integration of ICS Risk Type Framework into the country and utilize for the ongoing governance of country risk.

Regulatory & Business Conduct:

  • Display exemplary conduct and live by the Group’s Values and Code of Conduct.
  • Take personal responsibility for embedding the highest standards of ethics, including regulatory and business conduct, across the countries. This includes understanding and ensuring compliance with, in letter and spirit, all applicable laws, regulations, guidelines and the Group Code of Conduct.
  • Effectively and collaboratively identify, escalate, mitigate and resolve risk, conduct and compliance matters.
  • Exercise authorities delegated by the Board of Directors and act in accordance with Articles of Association.

Key stakeholders:

  • ISROs
  • Country CROs
  • Country HICSs
  • Country CIOs
  • Country Compliance Officers
  • Country CEOs
  • Banking Regulators
  • Global Head, Security Technology Services
  • Head of ICS Governance
  • Head of ICS Policy
  • Group Internal Audit
  • Head of ICS Assurance and Testing
  • Head of ICS Training, Awareness & Exercises.

Other Responsibilities:

  • Establish strong relationships with identified stakeholders across the country and understand their strategic goals, to ensure ICS alignment.
  • Articulate the value of ICS controls and their bottom-line impact to Country’s security and resiliency.
  • Prepare, present and challenge in a 2nd line capacity at relevant risk committees, steering groups and cross-business opportunities.
  • Perform Delegation of Authority (DoA) responsibilities for Group CISRO as defined for the countries.
  • Measure efficient and effective management of ICS risk for the countries.
  • Validate the accuracy of KRI’s and KCI’s and other risk ratings, as well as process designs, to meet policy requirements.
  • Ensure that Process Owners are escalating risk, control, and process deficiencies appropriately in accordance with the relevant risk frameworks.
  • Build trusted working relationships with other security functional heads, risk and compliance counterparts, and country stakeholders.
  • Utilize appropriate risk management tool(s) to manage, track and monitor ICS risks across the countries.
  • Maintain sufficient and appropriate evidence of work performed for review by Group Internal Audit and others.
  • Monitor, assess and advise countries on acceptable risk tolerances based on policy and control environment and the evolving regulatory and threat landscape. (Knowledge of Pakistan regulatory environment will be an added advantage).

Qualifications
Training, licenses, memberships and certifications:

  • Master's Degree in Information Technology / Cybersecurity
  • Information Security certifications and courses
  • Trainings & Courses attended on security audits
  • Familiar with and hands on experience of working on Security best practices and frameworks.

Experience:

  • Minimum 18 years of experience, having worked on similar roles.

Application Closing Date
14th July, 2022.

How to Apply
Interested and qualified candidates should:
Click here to apply online


  

Comments (0)


Post a Comment
Name: *
Email: *
Comment: *