Vulnerability Management SME

0 years

0 Lacs

Posted:2 days ago| Platform: Foundit logo

Apply

Work Mode

On-site

Job Type

Full Time

Job Description

Main Purpose of the Role :

To support Vulnerability Management activities and Policy Compliance activities by

providing guidance to technology owners on remedial actions.

Reduce the vulnerability footprint by working wih the technology owner or product owner.

Provide comprehensive solutions to complex problems, lead major iniatives in risk

reduction surrounding vulnerabilities.

Ensure that processes are documented in accordance with CLIENT requirements and standards

Influence the strategic direction on risk reduction that impact the organisation by prioritising remediation activities.

To ensure effective management and control of information security, IT and information risk for MUSI by ensuring all appropriate Security, IT and common sense controls are in place, that these controls are being followed and that this is evidenced across the whole business and IT department.

The role will involve liaising with the other information security functions within the MUS international business and CLIENT group to ensure a consistent approach to all controls, standards and policies is adopted across the organisation.

To ensure all necessary Information Security controls are in place and that an appropriate strategy to protect the firm from related Cyber, external and internal threats is defined and being implemented.

To develop, implement and manage compliance with appropriate IS and IT Security policies, standards and procedures.

To support the relationship and associated reporting requirements between Technology and internal and external bodies e.g. auditors, management committees, Tokyo head office, regulators (via Compliance), Operational Risk.

Key Responsibilities:

In this role, you will be responsible for Information Security across CLIENT's banking arm and securities business under a dual-hat arrangement. Under this arrangement, you will act and make decisions on behalf of both the bank and the securities business, subject to the same remit and level of authority, and irrespective of the entity which employs you.

Develop and manage processes for assessing disclosed vulnerabilities, threat scenarios, and mitigating controls.

Develop and manage processes for maintaining governance surrounding policy compliance (CIS benchmarks or other asset hardening frameworks or standards).

Evaluate the threats that vulnerabilities present to drive prioritization of remediation actions.

Assist in process development that includes reviewing and validating vulnerabilities using available data sources, tools as analysts assess and risk rate vulnerabilities.

Monitor and report on the security posture of CLIENT's digital presence, i.e. CLIENT web sites.

Liaise with Technology and Business teams as necessary to ensure all MUSI systems meet MUSI security standards and/or agree appropriate measures to mitigate the risk where they don't.

Collaborate with stakeholders across the enterprise on appropriate remediation & mitigation solutions.

Support Audit & Regulatory liaison and ensure consistent and timely answers to information requests.

Support any issues and remedial actions resulting from information security incidents and audits are agreed with appropriate timescales for resolution.

Support Operational Risk management

Support MUSI's information security risk profile and associated operational risk reporting.

Ensure adequate technical safeguards are in place and are being actively managed by the support teams to provide appropriate protection to MUSI's information assets across the following environments: o Windows & Unix operating systems o Databases (Oracle, SQL, Sybase) o Networks

Be seen as the Information Security centre of excellence for MUSI and ensure MUSI adopt an appropriate and professional response on any information security issues raised by the organisation's business activities

Liaise with IT teams to ensure information security alerts, threats and vulnerabilities across the IT estate are highlighted, managed and mitigated within appropriate timescales

Maintain an up to date, working knowledge of current laws, regulations and best practices relating to information security.

Support the annual penetration test

Support Information Security incidents where requested.

Support Operational Security duties where requested.

Mock Interview

Practice Video Interview with JobPe AI

Start Job-Specific Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now

RecommendedJobs for You