جاري التحميل
يكتب...
بحث
 
+

Incident Response & Forensics Specialist

بواسطة Emirates NBD
دبي دبي >
وظائف شاغرة وظائف شاغرة >
تكنولوجيا المعلومات تكنولوجيا المعلومات >
التفاصيل
https://dbzstatic-a.akamaihd.net/.dist_34b96953daa72831e376972502dc2678f67f8adb/ 9520400

التفاصيل: نُشِر بتاريخ: 25 ديسمبر 2017

  • اسم الشركة: Emirates NBD
  • نوع التوظيف: دوام كامل
  • الراتب الشهري: غير محدد درهم
  • الحد الأدنى من خبرة العمل: 0 - 1 سنة
  • الحد الأدنى من مستوى التعليم: غير محدد
  • صاحب الإعلان: صاحب العمل
  • المستوى المهني: متوسظ الخبرة

الوصف:

Department Description:
The formation of the Group Information Security function is to ensure EmiratesNBD information and data is resilient against external and internal security threats embed information security mindset as a core element of organization business strategy and provide an independent objective view of EmiratesNBD Security posture to the management committees The unit exists to provide secure banking environment for our customer and employees
Brief Description:
Execute the Digital Forensics and Incident Response efforts of CyberSecurity team within EmiratesNBD effectively ensuring threats are appropriately analyzed and efforts for remediation of threats are well coordinated Learnings from incidents are fed into SOC to help ensure similar threats are proactively mitigated
Manage the incident processes to ensure they are well drilled and effective Maintain acceptable cyber hygiene levels and ensure the goals of the unit are met

Detailed Description:
Execute the Digital Forensics and Incident Response efforts of CyberSecurity team within EmiratesNBD effectively ensuring threats are appropriately analyzed and efforts for remediation of threats are well coordinated Learnings from incidents are fed into SOC to help ensure similar threats are proactively mitigated
Manage the incident processes to ensure they are well drilled and effective Maintain acceptable cyber hygiene levels and ensure the goals of the unit are met

Job Requirements:
Execute and conduct the analysis of computernetwork traffic for the purposes of information gathering legal evidence and intrusion detection
Conduct network forensics for proactive investigation
Conduct the collection identification and validation of digital information for the purpose of reconstructing past events
Maintain chain of custody for computer evidence
Ensure superior documentation and record keeping for regulatory audit purposes
Link investigative reports and findings to financial crime and provide estimates on potential impactfinancial reputation strategic or others
Perform actions within the boundaries of the legal framework of the country and liaise with 3rd partiesGovernment Entities and Vendors on guidance and actions
Help in the investigation andor containment teams during an incident
Present technical findingsinvestigative or otherwise to CyberSecurity Management
Meet SLAs defined for Incident Management
Prepare and provide relevant reports for identified incidents
Prepare and maintain relevant documentation for Incident Management
Ensure the relevant documentation is kept upto date at all times
Proactively identify gaps and remediate them to keep observations from Auditors and Regulators to a minimum
Help the CSIRT during security incidents
Assist in the CyberSecurity Monitoring Operations of the Bank
Keep upto date on the latest security threats and feed them into the Monitoring Operations to help ensure those are proactively detected and mitigated in the Bank
Assist in the timely reporting of Security incidents to relevant stakeholders
Assist in ensuring Monitoring should be continuous covering 247 operations
Assist in the preparation and maintenance of relevant documentation for CyberSecurity team
Highlight gaps and recommend sound security practices to improve the monitoring

Additional Details:
Strong communication and interpersonal skills geared to getting things done while continuously developing themselves and the talent within their charge
Indepth understanding of threat management and security incident response protocols to go along with excellent reasoning and problemsolving skills
A high level of familiarity with malicious code threats as well as common attack and penetration techniques used by adversaries
Demonstrable experience with forensic techniques and toolsets most major host operating systems and file system types analysis of many different types of security logs
Expert understanding of Netwoking Concepts and Security Technologies
Deep knowledge of Incident Management Processes
Expert understanding of a companys business processes technology and information systems
Must have knowledge on application and infrastructure security threats and mitigating measures
Deep knowledge on all aspects of Information Security concepts from broad range of technical and non technical areas
Good negotiation skills will be desirable
Ability to understand regulatory requirements and process efficiency frameworks
Ability to understand the details of ground level security issues and its management
Ability to monitor and enforce improvements when necessary in line with regulatory requirements or best practices
Good knowledge of risk management frameworks and how to identify manage and mitigate risk
Ability to create and review security policies standards procedures and hardening baselines




Qualifications :

AS Mentioned in the JD

انشره مع الأصدقاء

 
الموقع غير محدد