
Information Security Senior Professional In Giz
Há 3 dias
**Descrição:**:About the project
To enable the worldwide protection of all critical information processed by the GIZ, the establishment of an Information Security Management System (ISMS) and therefore Information Security Senior Professionals in the field structure are indispensable.
Through the company-wide international standard ISO/IEC 27001 certification of information security management (ISO27001), the GIZ targets a wide variety of permanent restructuringprocesses, all of them requiring experts to coordinate and maintain these changes.
While the company-wide coordination lies with the Chief Information Security Officer (CISO) and his/her Information Security Management Team (ISMT) located at the headquarters, the extensive local establishment and continuous operation of information security needs the support of a new local role, which works closely together with already existing local roles such as IT-Professionals and Digital Partners (DIPAs).
Area of responsibility
The goal of Information Security Senior Professional is to be a central single point of contact (SPoC) for organizational overview and control as well as professional knowledge concerning information security in the country office.
As information technology (IT) has a big role in information security, IT-specific knowledge and/or close cooperation with technical roles is also an expected area of expertise.
For the implementation of information security and the ISO27001-certification, the professional is expected to work within the existing management organization of local offices while initiating and controlling relevant processes.
Contents and Tasks
- Initial tasks
In the initial phase of implementation, the establishment of a local information security management is focused.
To successfully do this, the Information Security Senior Professional establishes and later manages the security incident process, supports/accompanies the Audit Management process (including the local coordination of "penetration testing") and ensures that a functioning vulnerability management is in place.
As the local representation of the information security organization and thus the Information Security Management System (ISMS), the Information Security Officer acts as Single Point of Contact (SPoC) for information security.
He also is the SPoC for projects of the portfolio and contact for all topics concerning information security.
The professional ensures through a structural analysis (asset recording) an up-to-date and complete asset inventory (in cooperation with asset owners).
Towards Headquarters, specifically towards the CISO, he/she provides structured reporting to the CISO.
He/she is also responsible for recording the current status of information security, which includes the mentioned assets.
The Information Security Officer establishes the local InfoSec Risk Management (IRM) and accompanying risk register which is implemented through identification of risks with asset owners, risk assessment with risk owner involvement, risk treatment management and further connected tasks.
- Continuous Operation and Updates
After the initial establishment, the Information Security Senior Professional is responsible for elaborating, reviewing, and updating the local security concept, the coordination and implementation of measures, guidelines/concepts as well as the adaptation of guidelines/concepts to local conditions.
Concerning the information security awareness among employees, the Information Security Officer coordinates existing awareness measures and is to a limited extend personally responsible for the awareness/training efforts.
He/She is further responsible for the control of the effectiveness of security measures, for revisions and audits and for ensuring the investigation of security-related incidents & coordination of their reporting (reporting system).
As representative of the Information Security Management System Team (ISMS Team) the Information Security Officer (ISO) also has the permanent task of reporting to the CISO and supply necessary information for the management report of the CISO.
For the local offices, the professional provides continuous consulting on information security topics and the constant operation of risk management and level estimation of information protection requirements.
Requisitos desejados: The Information Security Senior Professional is responsible for all information security issues in the country office.
To carry out this work the following competencies and capabilities are expected or should be acquired within a reasonable period of time:
- 5 years work experience in an international organization, familiar with organizational structures and processes.
Desirable experience in organizations with a minimum of 1000 employees;
- Experienced in conducting audits;
- Knowledge and experience in information security;
- Knowledge and experience in ISO/IEC 27001;
- Basic knowledge of actual Microsoft Software and Se
-
Brasília, Distrito Federal, Brasil Giz Brazil Tempo inteiro**Descrição**:Sobre a GIZA Deutsche Gesellschaft für Internationale Zusammenarbeit (GIZ) GmbH é uma empresa do governo alemão atuante no domínio da cooperação internacional para o desenvolvimento sustentável, com cerca de funcionários.A GIZ tem mais de 50 anos de experiência em uma ampla variedade de áreas, como o desenvolvimento e emprego, a...
-
Professional Services Consultant
Há 5 dias
Brasília, Distrito Federal, Brasil Fortinet Tempo inteiroProfessional Services ArchitectAs customers security infrastructure become more complex, Fortinet Professional Services experts are positioned to help them every step of the way. We've accumulated many years of experience to help our customers with their security design, deployment, operation, and optimization needs. The Professional Services Architect is a...
-
Sr Security Specialist
Há 3 dias
Brasília, Distrito Federal, Brasil Promon Logicalis Tempo inteiroExperiência en el diseño e implementación de políticas de seguridad.- Conocimiento profundo de criptografía, análisis de vulnerabilidades y gestión de incidentes de seguridad.- Competencia en la configuración de firewalls (Fortinet, Cisco, PaloAlto, etc), sistemas de detección de intrusiones y sistemas de prevención de pérdida de datos.-...
-
Brasília, Distrito Federal, Brasil Giz Brazil Tempo inteiro**Descrição**:ABOUT THE PROJECT:Become part of our international teamWork together with political decision-makers and experts to make the opportunities of digitalization available to companies in Germany and Brazil.MAIN TASKS:- Supporting the project's communication with the commissioning body, with partners and stakeholders of the project on strategic,...
-
Professional Services Consultant
Há 3 dias
Brasília, Distrito Federal, Brasil Fortinet Tempo inteiroProfessional Services ArchitectSkills & Qualifications- Solid technical expertise in system architecture and design.- Ability to study and solve complex technical challenges.- Familiarity with cybersecurity hardware, systems and infrastructure.- Detail-oriented with a structured approach to problem solving.- Experience in developing SOWs, LLD HLDs.-...
-
Senior Linux Systems Engineer
Há 4 dias
Brasília, Distrito Federal, Brasil Huge Networks Tempo inteiroSenior Linux Systems Engineer / SREAbout the RoleAre you driven by technology and high-impact challenges?Join us as we seek a seasoned professional to own and enhance our mission-critical infrastructure, ensuring performance, stability, and innovation.Join our team and apply for the role of Senior Linux Systems Engineer / SRE.What You'll DoWe are looking for...
-
Brasília, Distrito Federal, Brasil Hepta Tempo inteiro**Brasília/DF**:- 08:00-18:00ESCOLARIDADE**Pós-graduação (Lato senso) - Completo**- Na área de TICONHECIMENTOS- VIRTUALIZAÇÃO: Virtualização VMware- File Server- Ferramentas: Ansible- ATIVOS DE REDES: Wi-Fi- ATIVOS DE REDES: Firewall- ATIVOS DE REDES: Equipamentos de rede (switch)- Normas internacionais de segurança da informação (série ISO/IEC...
-
Senior Android Developer
3 semanas atrás
Brasília, Distrito Federal, Brasil FullStack Labs Tempo inteiroSenior Android Developer - Remote - Latin AmericaJoin to apply for the Senior Android Developer - Remote - Latin America role at FullStack LabsSenior Android Developer - Remote - Latin America1 day ago Be among the first 25 applicantsJoin to apply for the Senior Android Developer - Remote - Latin America role at FullStack LabsAbout FullStackFullStack is the...
-
Senior Backend Haskell Developer
3 semanas atrás
Brasília, Distrito Federal, Brasil FullStack Labs Tempo inteiroSenior Backend Haskell Developer - Remote - Latin AmericaJoin to apply for the Senior Backend Haskell Developer - Remote - Latin America role at FullStack LabsSenior Backend Haskell Developer - Remote - Latin America3 days ago Be among the first 25 applicantsJoin to apply for the Senior Backend Haskell Developer - Remote - Latin America role at FullStack...
-
Brasília, Distrito Federal, Brasil Relevo Tempo inteiroAdministrador de Sistemas Linux Sênior – Edge Computing (PRESENCIAL - Brasília)Join to apply for the Administrador de Sistemas Linux Sênior – Edge Computing (PRESENCIAL - Brasília) role at Relevo.Relevo Lab is a technology company with over 8 years of experience. We are passionate about technology and strive to be an excellent place to work, where...