Senior Manager; Security Operations & Red Team Job Opportunity at NMB Bank PLC
Job Overview
Senior Manager; Security Operations & Red Team
Dar es Salaam
NMB Bank PLC
Job Location :
Head Office, Hq
Job Purpose:To plan, organize, and effectively lead cybersecurity operations to detect and respond to any internal and external cybersecurity threats while conducting regular and targeted security tests on NMB systems.
Main Responsibilities:
- Review and implement security testing, monitoring, and incidents response strategy and roadmap for the bank.
- Plan, oversee, and implement all security testing engagements on all systems within the bank.
- Establish and review the security testing governance framework and processes used in all security tests carried out within the bank.
- Manage all third-party security test engagements conducted at the bank.
- Drive cybersecurity monitoring and incident response initiatives within the bank to improve security monitoring capabilities.
- Establish real-time proactive monitoring and detection of security incidents and provide relevant notifications.
- Implement automated response to cybersecurity incidents by integrating various security tools as well as building necessary security tools.
- Oversee investigation of reported security breaches in collaboration with the bank’s fraud management unit.
- Oversee and execute emergency security tests including proof of concept on all discovered vulnerabilities.
- Provide “ownership” of security incidents and problems to the final resolution for all the servers, workstations, Virtual environments, Databases, Middleware, and Applications.
- Provide “ownership” and follow-up to the closure of all the findings and gaps identified following security tests.
- Implement security governance by defining, developing, implementing, and maintaining required security policies, procedures, standards, and guidelines.
- Conduct research, evaluate, and make recommendations on security monitoring, incident response, services, protocols, standards, and associated best practices.
- Develop comprehensive and accurate reports for both technical and executive audiences.
- Prepare and maintain security monitoring documentation including architectures, designs, and governance documents.
- Work with system vendors as well as internal teams in verifying the security of the applications/systems implemented within the bank.
- Research, create, and maintain a repository of the security testing tactics, techniques, and tools to be used by the bank.
- Responsible for team & vendor management for the Security Operations Center.
Knowledge and Skills:
- Excellent knowledge of security monitoring and testing technology landscape.
- In-depth knowledge of security of various operating system flavors such as Windows, Linux, and Unix.
- Knowledge of security of applications, databases, and middleware technologies.
- Knowledge of common information security monitoring and testing frameworks and methodologies.
- Demonstrated leadership and personnel management skills.
- Good interpersonal, written, and oral communication skills in English and Swahili.
- Ability to communicate complex security concepts in an easy-to-understand business language.
Qualifications and Experience:
- Bachelor’s degree in computer science or a related academic field.
- Preferred professional certifications such as OSCP, CISSP, GIAC GPEN, CEH, CISM, or any other relevant security certifications.
- At least 5 years of relevant work experience in Cybersecurity.
- Solid hands-on experience in enterprise security tools including security monitoring technologies.
- Solid hands-on experience in managing Penetration Testing engagements.
- Experience in developing custom exploit code, scripts, and tools to be used for various stages of Penetration testing engagement.
- Demonstrated hands-on experience in troubleshooting, offensive cyber tactics, techniques, and procedures.
- NMB Bank Plc is committed to creating a diverse environment and is proud to be an equal opportunity employer
Job opening date : 08-Jul-2022
Job closing date : 22-Jul-2022