hiring

CISO for KSA I am hiring 

CISO for KSA: I am hiring

I’m excited to share that we’re expanding our cybersecurity leadership team at Standard Chartered. We’re seeking a highly experienced and motivated Country CISO for KSA who will play a pivotal role in safeguarding our business and customers in the region.

This is a unique chance to make a real impact, reporting directly to me and working closely with senior stakeholders across the Bank. If you’re a visionary cybersecurity leader ready to take on this exciting challenge, or know someone who is, apply today via the LinkedIn link below.

Join us at Standard Chartered and be part of a team that’s committed to Here for good.

https://www.linkedin.com/jobs/view/2397564818/

Standard Chartered Bank
Standard Chartered Bank

The Role- CISO Responsibilities

  • The Country Information Security Officer (CISO), Saudi Arabia is a permanent role that requires strong business acumen and deep knowledge and experience in the ICS (Information and Cyber Security) field.
  • This role will require hands on approach to understand and support Saudi Arabia on the ICS Risk Type Framework to maximize risk reduction and capability improvement, while meeting compliance and legal obligations, and minimising client impact. The role will require to have end-to-end view on all ICS activities with support to regular risk assessment, tracking, follow up and reporting at the relevant forums. The role reports directly to the Regional Chief Information Security Officer.
  • The Saudi Arabia CISO will provide exceptional leadership, maintain highly constructive relationships with key stakeholders, and possess strong security risk framework knowledge to mobilize effort and commitment.

Business:

  • The primary purpose of this position is to ensure that the management of ICS risk is operating effectively and efficiently and to provide assurance that ICS risk is appropriately managed within the country in accordance to regional and global bank standards.
  • Saudi Arabia CISO will execute a robust and efficient plan to rollout ICS RTF by working with key stakeholders including COOs/CIOs direct teams, ICS RTF Implementation Programme teams, Office of the CISO and Security technology teams. The plan will incorporate digital footprint discovery, risk assessment, definition and implementation of controls as guided by the ICS RTF and tailored to the relevant areas.
  1. Supporting the Regional CISO in the implementation of the ICS Risk framework including working with stakeholders to identify, assess and rate the information assets, build out the risk profile per the framework, initiate risk assessments and put together treatment plans.
  2. Use qualitative and quantitative data sources to validate Key Control Domains (KCD) and associated controls, accelerate risk assessment process, validate business risk profile and develop action plans to remediate to bring ICS risk back into appetite.
  3. Follow up on identified thematic cyber issues, develop processes to address issues from re-occurrence and ensure cyber hygiene across the whole portfolio.
  4. Provide regular status updates including progress, top risks and issues to the respective country and regional forums for the relevant domains. Track regulatory status, key milestones, risks, dependencies and issues.
  5. Interface with the Business and Country ICS Leads to assist with sharing of risk profiles, advising on cyber risk issues and addressing areas of concern.
  6. Interface with Technology forums to ensure security technologies are operating with input from countries and be actively involved in the roadmap of these technologies by providing regional/country input.
  7. Development of risk treatment plans for the assigned areas in conjunction with the business and technology teams. Interface with other areas to ensure dependencies are known and prioritised. Negotiate timelines to ensure proper remediation by maintaining support and organizational alignment.
  8. Adapt to emerging and horizon risks and address issues to maximize outcomes. Urgent and timely action for risks and issues which adversely impact cyber risk profiles.
  9. Re-planning and prioritising as required to maximise risk reduction.
  10. Coordinate and plan for cyber crisis management exercises, build response and recovery capabilities, workarounds, ensure up to date playbooks etc.
  11. Assist with other cyber activities underway

People and Talent

  • Lead through example and build the appropriate culture and values
  • Set appropriate tone and expectations from team and work in collaboration with risk and control partners
  • Ensure the provision of ongoing training and development of people, and ensure that holders of all critical functions are suitably skilled and qualified for their roles ensuring that they have effective supervision in place to mitigate any risks
  • Employ, engage and retain high quality people, with succession planning for critical roles.
  • Responsibility to review team structure/capacity plans
  • Manage team of country ISOs that is aligned and scaled to the ICS risk control needs of Standard Chartered Bank Saudi Arabia
  • Set and monitor job descriptions and objectives for direct reports and provide feedback and rewards in line with their performance against those responsibilities and objectives
  • Uphold and reinforce the independence of the second line ICS Risk function
Risk Management
Risk management
Risk management
  • Deliver the defined aspects of the Country ISO, Saudi Arabia role to support the Group ICS risk management approach and objectives
  • Ensure that the Country ISO, Saudi Arabia role is managed in accordance with the defined CISO Governance Risk Type Framework and associated Policy and Standards; and that issues are identified, escalated, and addressed as appropriate

Governance:
Establish strong ties into the relevant regional and country leadership, governance, risk and control committees to ensure adequate monitoring, tracking and governance of ICS risk. Drive integration of ICS Risk Type Framework into all businesses and functions in the country and utilise for the ongoing governance of region and country risk

Regulatory & Business Conduct

  • Display exemplary conduct and live by the Groups Values and Code of Conduct
  • Take personal responsibility for embedding the highest standards of ethics, including regulatory and business conduct, this includes understanding and ensuring compliance with, in letter and spirit, all applicable laws, regulations, guidelines and the Group Code of Conduct
  • Effectively and collaboratively CIO-Country Head Tech & Ops.

Apply now to join the Bank for those with big career ambitions.

To view information on our benefits including our flexible working please visit our career pages. We welcome conversations on flexible working.

https://www.sc.com/en/global-careers/

About Standard Chartered Bank

Standard Chartered PLC is a British multinational bank with operations in consumer, corporate and investment banking, and treasury services. Despite being headquartered in the United Kingdom, it does not conduct retail banking in the UK, and around 90% of its profits come from Asia, Africa, and the Middle East.

I am hiring CISO for KSA Saudi Arabia CISO

Hiring CISO Saudi Arabia

Expert Speaker Dr Erdal Ozkaya
Standard Chartered Regional CISO Erdal Ozkaya

Leave a Comment

Your email address will not be published. Required fields are marked *