Cybersecurity & Governance Manager at Nigerian Exchange Group (NGX Group)

Posted on Tue 15th Feb, 2022 - www.hotnigerianjobs.com --- (0 comments)

Nigerian Exchange Group (NGX Group) is a leading financial market infrastructure provider in Africa, connecting Nigeria, Africa and the world.

We are recruiting to fill the position below:

Job Title: Cybersecurity & Governance Manager

Location: Lagos (Hybrid)

About The Job

  • The Cybersecurity and Governance Manager is responsible for developing security systems, analysing current systems for vulnerabilities, and handling any and all cyber-attacks in an efficient and effective manner.
  • Candidates should have strong IT skills and a deep understanding of cyber hacking techniques. This position reports to the Team Lead, InfoSec & Business Continuity.

Responsibilities

  • Monitor and advice on information security issues related to the systems and workflow to ensure the internal and external and cyber security controls are appropriate and operating as intended.
  • Monitor for external intrusions, attacks, and hacks and work with relevant teams in response to cyber security incidents.
  • Expected to stay up-to-date on the latest cyber threat intelligence, including hackers’ techniques in order to anticipate security breaches.
  • Collaborate with IT management and other stakeholders to manage security vulnerabilities.
  • Participate in projects from outset, ensuring information security principles are built into the design and implementation from the outset.
  • Evaluate potential risks to NGX Limited’s internal and external-facing applications, network, and operating systems and introduce countermeasures to address those risks.
  • Identifies potential threats to the confidentiality, integrity & availability of the system and applications.
  • Maintain up-to-date detailed knowledge of the IT security industry including awareness of new or revised security solutions, improved security processes, and the development of new attacks and threat vectors.
  • Support IT Architecture Review process and evaluate associated security of the proposed architectures.
  • Prepare reports to upper management, and cooperate with police or other agencies to identify perpetrators.
  • Work with relevant teams in response to information security incidents.
  • Involved in developing and implementing key information security functions across the organization including architecture and design for NGX information security controls, developing and enforcing policies and standards, security awareness training, risk management, assessment and testing, monitoring and metrics, incident management, operational aspects of NGX’s data privacy program, and threat and vulnerability management.
  • Design, develop, or recommend integrated security system solutions that will ensure proprietary/confidential data and systems are protected.
  • Participate in business continuity projects and initiatives, presenting proposals and reports which are routed to the Executive Committee.
  • Conduct risk assessments to evaluate the effectiveness of existing business continuity plans and preparations and determine- the impact of proposed changes to business processes, applications, and systems. Develop recommendations to mitigate risks through the appropriate use of technical, procedural, and administrative controls in accordance with legal and regulatory requirements and established industry best practice.
  • Analyze and recommend possible disaster preparedness solutions using established Disaster Recovery/Business Continuity Planning practices.
  • Prepare, deliver and implement a corporate business continuity awareness programme, including the delivery of appropriate staff training on BCP.
  • Co-ordinate NGX Exchange and market participant’s wide business continuity strategies and response arrangements enabling and facilitating the identification of critical functions, events that could disrupt the delivery of services, recovery priorities, and critical resources required to maintain services.
  • Implement Disaster Recovery and Business Continuity procedures including change control processes.
  • Maintenance of the Disaster Recovery and Business Continuity Plans to include ‘lessons learned’ from mock tests or simulations.
  • Ensure appropriate Incident Response and Crisis Management structures are in place to manage any serious incidents.

Job Specification
To successfully deliver the above goals, the right candidate must have:

  • A minimum of B.Sc / HND in Science, Computer Science, Engineering discipline, Mathematics or Physics or any related discipline.
  • Minimum of 5 years’ relevant post-NYSC experience with desktop, server and/or network administration.
  • Experience within the Financial or Services sector will be a distinct advantage.
  • Experience in managing/working with senior stakeholders will be a distinct advantage.

Personal Qualities:

  • Self-motivation, enthusiasm, and results-focus.
  • Flexible, adaptable, and comfortable with ambiguity.
  • Committed to high standards and continuous improvement.
  • Ability to move between big picture and detail.

Desired Competency and Skill Requirements:

  • The candidate should have knowledge of web application security testing and cloud computing.
  • Skills and abilities to design, configure and monitor routers, firewalls, and perimeter defense systems.
  • Demonstrates the ability to conduct formal incident investigations and manage advanced incident handling scenarios, including internal and external data breach intrusions, advanced persistent threats, anti-forensic techniques used by attackers, and complex digital forensic cases.
  • Knowledge of ethical hacking, penetration testing, network security, threats and vulnerabilities, cryptography, and reverse engineering.
  • Thorough work ethics, attention to details.
  • Ability to deal with ambiguity and translate high-level objectives into detailed tasks.
  • Ability to weigh business risks and enforce appropriate information security measures.
  • Significant project management expertise with excellent written and oral communications skills.
  • Ability to prioritize work with multiple, simultaneous work assignments.
  • Excellent decision-making capabilities with an assertive approach.
  • Ability to work under pressure and to tight timescales.
  • Ability to manage internal and external relationships, within both IT and the Business.
  • Strong experience in IT service, operations, and support.
  • Strong Incident Management skills.
  • Solid understanding of Configuration Management and testing methodologies both manual and automated.

Application Closing Date
Not Specified.

How to Apply
Interested and qualified candidates should:
Click here to apply online