We are seeking a highly skilled and experienced Information Security Senior Specialist to join our dynamic team in the real estate sector. This role is crucial in safeguarding our organization's information assets and ensuring compliance with industry standards and regulations. The ideal candidate will possess a deep understanding of information security concepts, risk management, and incident response. As a Senior Specialist, you will be responsible for developing, implementing, and maintaining our information security strategy, as well as collaborating with various departments to enhance our security posture.
Responsibilities:
- Develop and implement comprehensive information security policies and procedures to protect sensitive data.
- Conduct regular security assessments and audits to identify vulnerabilities and ensure compliance with regulatory requirements.
- Lead incident response efforts, including investigation, analysis, and reporting of security breaches.
- Collaborate with IT and other departments to integrate security measures into existing systems and processes.
- Provide training and awareness programs for employees to promote a culture of security within the organization.
- Stay updated on the latest security trends, threats, and technologies to proactively address potential risks.
- Manage security tools and technologies, ensuring they are effectively deployed and monitored.
- Prepare and present reports on security status, incidents, and improvements to senior management.
- Work closely with external auditors and regulatory bodies to ensure compliance with industry standards.
- Participate in security-related projects and initiatives to enhance overall organizational security.
Preferred Candidate:
- Proven experience in information security, with a focus on risk management and incident response.
- Strong analytical skills with the ability to assess complex security issues and develop effective solutions.
- Excellent communication skills, both written and verbal, to effectively convey security concepts to diverse audiences.
- Detail-oriented with a strong commitment to maintaining high standards of confidentiality and integrity.
- Ability to work independently and as part of a team, managing multiple tasks and projects simultaneously.
- Relevant certifications such as CISSP, CISM, or equivalent are highly desirable.
- In-depth knowledge of security frameworks and compliance standards, including ISO 27001, NIST, and GDPR.
- Experience with security tools and technologies, such as firewalls, intrusion detection systems, and encryption methods.
- Proactive mindset with a strong focus on continuous improvement and learning.
- Ability to adapt to a fast-paced environment and respond effectively to changing security needs.
Skills
- Risk Management: The ability to identify, assess, and mitigate risks to information systems and data, ensuring that appropriate controls are in place to protect against potential threats.
- Incident Response: Proficiency in managing security incidents, including detection, containment, eradication, and recovery, as well as conducting post-incident analysis to improve future responses.
- Security Audits: Experience in conducting thorough security audits and assessments to evaluate the effectiveness of security measures and identify areas for improvement.
- Compliance Knowledge: Familiarity with relevant laws, regulations, and industry standards that govern information security practices, ensuring that the organization meets compliance requirements.
- Technical Proficiency: Strong understanding of security technologies, including firewalls, intrusion detection/prevention systems, and encryption technologies, enabling effective deployment and management of security solutions.