
Global Cybersecurity
4 days ago
The Global Cybersecurity/SOC Manager will play a key role in maintaining and continuously improving FINCA's cybersecurity, monitoring and control framework, ensuring that effective security risk, threat, vulnerability and incident management practices are incorporated into IT and business practices within their FIF and subsidiaries.
Developing and facilitating security logs and incident management, analytics and reporting capacities is a primary focus of the position. Working closely with global, regional and local Information Security and IT resources to design, test, implement effective security controls is another key responsibility of the position.
Accountabilities- Communicate and collaborate with internal clients to contribute to security direction, and provide influence and technical guidance on current and future technical security directions.
- Act as a cybersecurity subject matter expert throughout projects lifecycle, including functional requirements, design specifications, testing and quality assurance, implementation and support.
- Provide input to the annual Information Security budget cycle.
- Ensure that security requirements are identified early on and are being incorporated into all projects/applications:
- Investigate, recommend, evaluate, deploy and integrate security tools and techniques to improve our ability to protect corporate assets and infrastructure.
- Develop and maintain documentation of relevant IT systems and security controls.
- Assess and capture security requirements within context of enterprise application architecture.
- Ensure that application development and deployment meet FINCA security standards.
- Provide security input to design and application architectural reviews.
- Report on risks, risk mitigations, and residual business risks.
- Develop comprehensive and accurate reports and presentations for both technical and executive audiences.
- Develop recommendations for improvements.
- Monitor appropriate sources for newly identified threats and vulnerabilities.
- Effectively communicate findings and strategy to client stakeholders including technical staff, executive leadership, and legal counsel.
- Recognize and safely utilize attacker tools, tactics, and procedures.
- Develop methodologies to enhance red teaming processes.
- Assist with scoping prospective engagements, leading engagements from kickoff through remediation, and mentoring less experienced staff.
- Execute and/or lead (when required) red team assessments to highlight gaps impacting organization security posture.
- Research new/emerging security threats, vulnerabilities and exploit techniques.
- Respond to new attack surfaces and help implement new requirements as needed.
- Develop, manage, and maintain security testing industry frameworks and best practices: Cloud Security Alliance (CSA), NIST, SANS, CIS.
- Partner with Global Information Security and Business Continuity team members across the network to drive secure outcomes based on industry best practices.
- Play a key role in Global Cybersecurity Team on developing threat modeling and new detection techniques, based on trending attack surfaces.
- Provide support to business digital projects through entire project lifecycle (threat modeling, requirements definition, verification and validation).
Qualifications
- Bachelor's Degree in a technical discipline or equivalent work experience.
- Certifications are not required, but will be considered in the evaluation process. Applicable certifications include: SANS, Splunk, CISSP.
- Knowledge of security and control frameworks (such as ISO 27001, CobiT, NIST).
- Security certifications (CISSP, GIAC, CEH, CISM, OSCP) will be an asset.
Experience
- Minimum 4-6 years of experience in a Security Manager/Analyst Role.
- Experience in a financial institution will be considered as a plus.
- Experience working in a large international organization or network will be considered as a plus.
- Experience with IT security assessments.
- Experience with common assessment tools (examples Qualys, Tenable, Rapid7).
- Experience communicating assessment results to audiences with diverse technical proficiency.
- Experience constructively articulating business impact of vulnerabilities to various stakeholders.
- Experience with correlating and analyzing logs and events from various sources (e.g. Vulnerability Scanning, Virus Protection, SIEM).
- Experience with producing and customizing security queries, reports and dashboards from various sources (e.g. Vulnerability Scanning, SIEM, Virus Protection).
- Experience conducting application security reviews preferred.
- Experience with scripting languages desired.
Knowledge and Skills
- Able to explain and deliver technical solutions in a practical way.
- Able to manage simultaneously multiple projects involving various stakeholders and to deliver results within deadlines.
- Work well in a team environment including cross-functional and cross-organizational teams maintaining composure in difficult situations with a professional attitude and ownership mindset.
- Excellent communication (oral and written) and interpersonal skills.
- Proven ability to delegate and to empower teams.
- Ability to be a strongly credible ambassador for the FIF brand, including making presentations, and able to establish respect and credibility with media outlets.
- Strong skills in analysis, problem-solving, and resolving disputes.
- Strong technical reporting skills.
- High degree of initiative and ability to work with little supervision.
- Knowledge of Windows, Linux, and Unix operating systems. Hands-on experience a plus.
- High level of personal integrity, and the ability to professionally handle confidential matters with appropriate judgment and maturity.
- Penetration testing skills are considered a plus.
- Eager to learn and expand cybersecurity knowledge.
Language Skills
- Fluency in English.
- Fluency in other FINCA working languages, such as Spanish, French, or Russian is a plus.
- Availability to travel up to 50% of the time.
If you are interested, please apply now.
#J-18808-Ljbffr-
Industrial Cybersecurity Expert
7 hours ago
Lahore, Punjab, Pakistan beBeeCybersecurity Full time $150,000 - $200,000Cybersecurity Professional WantedWe are seeking an experienced Cybersecurity Consultant to join our OT Cybersecurity Product Team. This role is pivotal in delivering and implementing OT Cybersecurity Solutions to ensure the protection of critical industrial infrastructure across industries such as Oil & Gas, Petrochemicals, Utilities, and Manufacturing.Main...
-
Cybersecurity Specialist
3 days ago
Lahore, Punjab, Pakistan beBeeCybersecurity Full time $1,000,000 - $1,200,000Job OpportunityThe Cybersecurity Manager will play a pivotal role in maintaining and continuously enhancing the organization's cybersecurity framework.Developing and facilitating security logs and incident management, analytics and reporting capacities is a primary focus of the position. Working closely with global, regional and local Information Security...
-
IT Cybersecurity Professional
6 hours ago
Lahore, Punjab, Pakistan beBeeSecurity Full time 12,000,000 - 15,000,000Job Title: IT Security SpecialistAs a leading global enterprise software conglomerate, we are proud to be part of a successful business that has grown to become one of the top 10 in the world. With employees and customers across 100+ countries, our team is expanding rapidly.The role of an IT Security Specialist is to proactively maintain our information...
-
Global Information Systems Auditor
4 days ago
Lahore, Punjab, Pakistan FINCA Impact Finance Full timeGlobal Information Systems Auditor FINCA Impact Finance, Pakistan FINCA Impact Finance (FIF) believes in the power of Inclusive Finance.FINCA Impact Finance is a global leader of responsible financial services. We are comprised of 17 full-service banks and microfinance institutions and a holding/shared service company and we serve more than 2.8 million...
-
Secure Cyber Solutions Specialist
9 hours ago
Lahore, Punjab, Pakistan beBeeCybersecurity Full time 15,000,000 - 25,000,000Transforming Cybersecurity with ExcellenceAbout the Role:The Cyber Security Solutions Architect plays a pivotal role in designing customized cybersecurity services and solutions for clients. This position involves creating technical proposals, presenting solutions, conducting demos, and working closely with sales and technical teams to ensure seamless...
-
System Administrator
1 week ago
Lahore, Punjab, Pakistan IT Global 360 Full timeGet AI-powered advice on this job and more exclusive features.Direct message the job poster from IT Global 360System Administration| IT Support Specialist | Cybersecurity Operations | IT Asset Management | Microsoft 365 | Cloud ComputingCompany DescriptionWith over 20 years of experience in the IT industry and more than 4 years as a dedicated Managed Service...
-
Cybersecurity Expert
8 hours ago
Lahore, Punjab, Pakistan beBeeNetwork Full time 4,500,000 - 8,500,000Network Security SpecialistWe are seeking a skilled Network Security Specialist to join our team. As a key member of our security team, you will be responsible for monitoring our clients' networks for potential security threats and taking proactive measures to mitigate them.Key Responsibilities:Monitoring and Incident Response: Monitor global client networks...
-
Compliance and Business Relationship Manager
3 weeks ago
Lahore, Punjab, Pakistan ABM Global Compliance Full timeWe are looking for a proactive and well-organized Compliance Manager to join our Lahore-based team. This role requires regular liaison with UK-based clients and internal teams, support in regulatory reporting, and day-to-day coordination between our UK and Pakistan offices. The ideal candidate will be client-facing, detail-oriented, and capable of managing...
-
Head of Infrastructure
4 weeks ago
Lahore, Punjab, Pakistan Programmers Force Full timeWe are seeking a visionary and technically proficient Head of Infrastructure & Cybersecurity to lead and scale our global SaaS infrastructure operations. This role combines high-level strategy with hands-on expertise in managing large-scale, secure, and resilient IT systems — including network infrastructure, cloud, data center, and cybersecurity.Key...
-
Senior Tech Risk Expert
3 days ago
Lahore, Punjab, Pakistan beBeeCybersecurity Full time 8,000,000 - 12,000,000Job DescriptionWe are seeking a highly skilled professional to fill the role of Senior Tech Risk Consultant. This position will be responsible for executing and leading IT and cybersecurity projects, working across multiple industries.This individual will listen to clients, ask better questions, and support them in areas where there are no off-the-shelf...