Department Description:
The formation of the Group Information Security function is to ensure EmiratesNBD information and data is resilient against external and internal security threats embed information security mindset as a core element of organization business strategy and provide an independent objective view of EmiratesNBD Security posture to the management committees The unit exists to provide secure banking environment for our customer and employees
Brief Description: Manage the Digital Forensics and Incident Response efforts of Cyber Security team within EmiratesNBD effectively ensuring threats are appropriately analyzed and efforts for remediation of threats are well coordinated Learnings from incidents are fed into SOC to help ensure similar threats are proactively mitigated
Manage the incident processes to ensure they are well drilled and effective Maintain acceptable cyber hygiene levels and ensure the goals of the unit are met
Detailed Description: Manage the Digital Forensics and Incident Response efforts of Cyber Security team within EmiratesNBD effectively ensuring threats are appropriately analyzed and efforts for remediation of threats are well coordinated Learnings from incidents are fed into SOC to help ensure similar threats are proactively mitigated
Manage the incident processes to ensure they are well drilled and effective Maintain acceptable cyber hygiene levels and ensure the goals of the unit are met
Job Requirements: Manage and conduct the network forensics analysis of end points servers and network traffic for the purposes of information gathering legal evidence and intrusion detection
Manage and conduct the collection identification and validation of digital information for the purpose of reconstructing events to identify root cause and maintain chain of custody for computer evidence
Ensure superior documentation and record keeping for regulatory audit purposes
Link investigative reports and findings to financial crime and provide estimates on potential impactfinancial reputation strategic or others Perform actions within the boundaries of the legal framework of the country and liaise with 3rd partiesGovernment Entities and Vendors on guidance and actions
Proactively and iteratively search through networks and datasets to detect advanced threats that evade automated tools
Additional Details: Minimum 5 years of demonstrable experience leading technical security incident response and digital investigations in largescale hightraffic environment 710 years of technology experience overall
Strong communication and interpersonal skills and Indepth understanding of threat management and security incident response protocols to go along with excellent reasoning and problemsolving skills
A high level of familiarity with malicious code threats as well as common attack and penetration techniques used by adversaries
Demonstrable experience with forensic techniques and toolsets most major host operating systems and file system types analysis of many different types of security logs
Expert understanding of Networking Concepts and Security Technologies
Deep knowledge of Incident Management Processes
Expert understanding of a companys business processes technology and information systems
Must have knowledge on application and infrastructure security threats and mitigating measures
Deep knowledge on all aspects of Information Security concepts from broad range of technical and non technical areas
Good negotiation skills will be desirable
Ability to understand regulatory requirements and process efficiency frameworks
Ability to understand the details of ground level security issues and its management
Ability to monitor and enforce improvements when necessary in line with regulatory requirements or best practices
Good knowledge of risk management frameworks and how to identify manage and mitigate risk
Ability to create and review security policies standards procedures and hardening baselines
Qualifications AS Mentioned in the JD