• Tirane, ofroj vend pune Head of Information Security

Primary objectives
He/she is responsible for maintaining a consistent and proportional level of security of the information systems in SGAL

  • The security of information (including in banking projects),
  • The security of applications,
  • The security of systems,
  • The security of networks,
  • The security of telecommunication systems,
  • The physical security of computer systems,
  • The setup of operating means in degraded mode (recovery from error, etc.),
  • The data back-up strategy,
  • The organization and maintenance of security governance,
  • The monitoring of audit recommendations relating to IS security,
  • The involvement in the setup of the business continuity plan “BCP, disaster recovery” (particularly advice and support for IS security aspects).
  • Raising user awareness on security issues.

Key roles & responsibilities

  • He/she deals with problems relating to information system security.
  • His/her scope of action extends to the entire subsidiary and also to third parties with which the latter cooperates.
  • He/she customizes locally the security policy, makes sure that it is applied and contributes to its evolutions.
  • He/she provides advice, support, information, does awareness-raising and issues alerts and recommendations.
  • He/she supports the definition, implementation and control of IS security aspects within projects.
  • He/she carries out a technology and regulatory watch in line with the subsidiary’s needs.
  • He/she must be able to suggest the changes considered necessary to ensure the physical and logical security of the information system as a whole.
  • He/she works particularly in collaboration with the legal department, the operational risk department, system administrators, project leaders, experts and external third parties on matters relating to the security of all or part of the IS.
  • He/she also works in collaboration with the business lines as part of banking projects.
Required skills

  • Advanced technical and functional experience in information system security,
  • Good knowledge of the banking business and experience in terms of IS project management,
  • Experience in team management and good communication skills (written and oral expression, listening, etc.).
  • Good knowledge of normative documents (IBFS and Société Générale internal policies, ISO 2700x, Basel II, PCI DSS, etc.) .
  • Good command of ethical conduct: segregation of functions, duty to preserve secrecy, management of authorizations…
  • Ideally, the CISSP certification.

Deadline 03 March 2017.
To apply please access the link: http://societegenerale.al/al/jobs/
 


Apply
Back
Top