Security GRC Consultant

Accenture
Cairo, القاهرة
دوام كامل
منذ يوم

Title: Security GRC Consultant

Location: Cairo, Egypt

About Accenture

Accenture is a leading global professional services company that helps the world’s leading businesses, governments and other organizations build their digital core, optimize their operations, accelerate revenue growth and enhance citizen services—creating tangible value at speed and scale. We are a talent and innovation led company with 738,000 people serving clients in more than 120 countries. Technology is at the core of change today, and we are one of the world’s leaders in helping drive that change, with strong ecosystem relationships. We combine our strength in technology with unmatched industry experience, functional expertise and global delivery capability. We are uniquely able to deliver tangible outcomes because of our broad range of services, solutions and assets across Strategy & Consulting, Technology, Operations, Industry X and Accenture Song. These capabilities, together with our culture of shared success and commitment to creating 360° value, enable us to help our clients succeed and build trusted, lasting relationships. We measure our success by the 360° value we create for our clients, each other, our shareholders, partners and communities. Visit us at www.accenture.com.

Accenture Security

Join Accenture Security to pioneer security solutions that blend risk strategy, digital identity, cyber defense, application security and managed services. Using the coolest next-gen tech, you’ll have every chance to stay one step ahead of cybercrime and out-hack the hackers.

Accenture Security provides comprehensive security services – from security strategy development to business transformation, to managed security services – on demand and at a global scale to help mitigate risks and take full advantage of advanced technologies and proven risk management models. Our experienced team of global security professionals helps businesses understand their risks and build resilience from the inside out, giving them the confidence to focus on what matters most: innovation and business growth.

Responsibilities

Governance:

  • Develop cyber frameworks, policies, processes, procedures, guidelines, and related documentation.
  • Review existing and proposed policies and related documentation with stakeholders.
  • Develop reporting metrics, KPIs, and dashboards.
  • Monitor how effectively cybersecurity policies, principles and practices are implemented in the delivery of planning and management services.
  • Ensure that cybersecurity workforce management policies and processes comply with legal and organizational requirements.
  • Interpret and apply applicable laws, statutes and regulatory documents to ensure they are reflected in the cybersecurity policies.
  • Provide policy guidance to cybersecurity management, staff and users.

Risk Management:

  • Effectively communicate Cybersecurity risks and posture to senior management.
  • Develop risk mitigation strategies to effectively manage risk in accordance with organizational risk appetite.
  • Ensure that decisions relating to Cybersecurity are based on sound risk management principles.
  • Perform risk analysis whenever an application or system undergoes a major change.
  • Provide input to the risk management framework and related documentation.
  • Ensure Cybersecurity risks are identified and managed appropriately through the organization's risk governance process.
  • Carry out a Cybersecurity risk assessments.
  • Work with others to implement and maintain a Cybersecurity risk management program
  • Identify and assign individuals to specific roles associated with the execution of the Risk Management Framework
  • Establish a risk management strategy for the organization that includes a determination of risk tolerance
  • Conduct an initial risk assessment of stakeholder assets and update the risk assessment on an ongoing basis
  • Work with organizational officials to ensure continuous monitoring tool data provides situation awareness of risk levels
  • Use risk management related tools such as eGRC and monitoring tools to assess risks
  • Develop methods to effectively monitor and measure risk, compliance, and assurance efforts.
  • Determine and document supply chain risks for critical system elements, where they exist.

Compliance & Regulation:

  • Analyze the organization's Cybersecurity policies and configurations to evaluate compliance with regulations and organization compliance frameworks
  • Recognize patterns of non-compliance with Cybersecurity policies and related documentation to identify ways to improve the documentation
  • Periodically review Cybersecurity strategy, policies, and related documents to maintain compliance with applicable legislation and regulation
  • Work with stakeholders to resolve Cybersecurity incidents and vulnerability compliance issues
  • Develop methods to effectively monitor and measure risk, compliance, and assurance efforts
  • Develop specifications to ensure that risk, compliance, and assurance efforts conform with Cybersecurity requirements.
  • Monitor and evaluate a system's compliance with Cybersecurity, resilience, and dependability requirements
  • Develop Cybersecurity compliance processes and audits for services provided by third parties
  • Maintain knowledge of applicable legislation, regulation, and accreditation standards and regularly review these to ensure continued organizational compliance
  • Cooperate with relevant regulatory agencies and other legal entities in any compliance reviews or investigations.


Qualifications:

  • Bachelor’s degree in information security, Cybersecurity or relevant.
  • 5+ years of experience in similar position
  • Should be Certified in CRISC, GRCP, ISO 27001 LI or equal certifications.
  • Excellent communication (written and oral) and interpersonal skills
  • Ability to work creatively and analytically in a problem-solving environment
  • Flexibility to travel
  • Consulting, stakeholder engagement and relationship management skills.
  • Fluent in Arabic and English language
  • Ability to effectively communicate insights relating to an organization’s threat environment to improve its risk management posture.
  • Ability to work with the organization's leadership to provide a comprehensive, organization wide approach to address Cybersecurity risk and compliance.
  • Ability to work with the organization's leadership to develop a risk management strategy to address Cybersecurity related risks.
  • Ability to develop and maintain Cybersecurity policies, standards and related documentations to support business strategy and maintain compliance with legislative, regulatory, and contractual obligations.
  • Ability to communicate technical and planning information at the same level as a stakeholder’s understanding.
  • Knowledge and understanding of risk assessment, mitigation, and treatment methods.
  • Knowledge of relevant Cybersecurity aspects of legislative and regulatory requirements, relating to ethics and privacy.
  • Knowledge of Cybersecurity threats and vulnerabilities posed by new technologies and malicious actors.
  • Knowledge and understanding of risk assessment, mitigation, and management methods.
  • Knowledge of the likely operational impact on an organization of Cybersecurity breaches.
  • Knowledge of national Cybersecurity laws and regulations such as SAMA CSF, NCA ECC, etc.
  • Knowledge of common information security standards, such as: ISO 27001/27002, NIST, PCI DSS, ITIL, etc.
تقديم
توصيات وظائف أخرى:

GRC Consultant

CCDS
Cairo, القاهرة
  • Conduct comprehensive GRC assessments to evaluate clients'...
  • Develop and recommend customized GRC strategies and...
منذ يوم

Senior AVIT & Security Engineer

Egis Group
Cairo, القاهرة
  • Design and implement large-scale AVIT systems that meet...
  • Develop and maintain IT security protocols to protect...
منذ 3 أيام

Information Security Senior Lead

Vodafone
القاهرة
  • Acts as the primary point of contact in designing/enforcing...
  • Designs and implements information security program that...
منذ أسبوع

Cloud Security Engineer with English & French

Concentrix
مصر
  • Hands-on experience with Azure security and governance...
  • Familiarity with Microsoft Security Assessments, such as...
منذ 5 أيام

Cyber Security Business Partner

Bupa
القاهرة
  • Developing and maintaining effective professional...
  • To ensure appropriate Technology frameworks required of...
منذ أسبوعين

Area Security Manager, Global Corporate Security

Amazon.com
مدينة القاهرة الجديدة, القاهرة
The Security Manager is responsible for supporting the implementation of all elements of the Corporate Security program at all...
منذ 6 أيام

Security Officer

Accor
Sharm El Sheikh, جنوب سيناء
  • Fully perform other duties assigned by the Security...
  • Ensure the life and property safety of people is his/her...
منذ أسبوع

Restaurant Manager

Accor
مصر
  • Manage day-to-day restaurant operations, maintaining high...
  • Lead, mentor, and motivate the restaurant team to achieve...
منذ 3 أيام

Project Engineer

Accor
Cairo, القاهرة
  • Conduct regular site visits to monitor project progress and...
  • Collaborate with clients to understand their requirements...
منذ يومين

Second -Commis

Marriott International
مصر
Prepare ingredients for cooking, including portioning, chopping, and storing food Prepare and cook food according to recipes,...
منذ 5 أيام