Ongoing Recruitment in a Leading Financial Services Institution, 28th February, 2017
Human Capital Partners (HCP) - Our client, a leading Financial Services
institution with branches throughout the country, offering a full range
of banking products and services in retail, commercial, corporate and
investment banking. The bank prides itself as a major contributor to the
economic
advancement and development of Nigeria.
As part of on going initiatives to strengthen ts operations as it forges
ahead in its passion to provide exceptional banking to the nation, the
bank seeks to recruit exceptional, result-oriented and suitably
qualified professional to fill the position below:
Job Title: Head, Security Engineering and Assets Security Unit (Principal Manager)
Reference Number: ES0116
Location: Nigeria
Department: Security Engineering and Assets Security
Job Description
- Reporting to the Head, Information Security Operations, the
successful candidate will be responsible for managing and coordinating
all activities that serve to provide appropriate access and protect the
confidentiality and integrity of customers, employees, and business
information.
- Inherent in this will be to provide oversight for vulnerability
audits and assessments in collaboration with other relevant
stakeholders,
Key Requirements
- A Bachelor's degree, or its equivalent, from a reputable
tertiary institution. Relevant professional certifications such as
CISSP, CISM. CISA, CEH, GCIH, GCIA, etc.
- A minimum of ten (10) years’ relevant working experience, five(S) of which must have been in a supervisory capacity.
- Good knowledge of banking structure, policies and procedures.
- Proven experience working with network and host intrusion detection systems.
- Knowledge of threat intelligence frameworks, as well as database security and hardening.
- Understanding of IT infrastructure and security regulatory environment (i.e. PCI DSS).
- Proven ability to influence all levels of stakeholders and constituents including business, IT and security.
Job Title: Team Lead, Security Infrastructure Management (Manager)
Reference Number: ES0117
Location: Any City, Nigeria
Department: Security Engineering and Assets Security
Job Description
- The successful candidates for this role will be responsible for
managing the enterprise applications development and acquisition life
cycle that occurs during security implementation and the operational
security activities to ensure that assets (hosts, networks, systems,
applications, and information) are secure during’operations.
Key Requirements
- A Bachelor's degree, or its equivalent, from a reputable tertiary institution.
- Relevant professional certifications such as CISSP, C1SM, CISA, CEH, GCIH, GCIA, etc.
- A minimum of five (5) years’ experience working in a security engineering role.
- Understanding of IT infrastructure and information security principles.
- Proven knowledge of best practices and standards in IT security (ISO27001, ITIL, TOGAF, CISSP. etc.)
- Strong knowledge of network infrastructure and architecture.
Job Title: Security Infrastructure Management Analyst (Senior Banking Officer)
Reference Number: ES0118
Location: Any City, Nigeria
Department: Security Engineering and Assets Security
Job Description
- The successful candidates for this role will be responsible for
managing the enterprise applications development and acquisition life
cycle that occurs during security implementation and the operational
security activities to ensure that assets (hosts, networks, systems,
applications, and information) are secure during’operations.
Key Requirements
- A Bachelor's degree, or its equivalent, from a reputable tertiary institution.
- Relevant professional certifications such as CISSP, C1SM, CISA, CEH, GCIH, GCIA, etc.
- A minimum of five (5) years’ experience working in a security engineering role.
- Understanding of IT infrastructure and information security principles.
- Proven knowledge of best practices and standards in IT security (ISO27001, ITIL, TOGAF, CISSP. etc.)
- Strong knowledge of network infrastructure and architecture.
Job Title: Identity and Access Management Analyst (Assistant Manager)
Reference Number: ES0119
Location: Any City, Nigeria
Department: Security Engineering and Assets Security
Job Description
- The successful candidate will be responsible for managing all identity-related issues, applications and access control.
- A key function will be to protect the confidentiality and
integrity of customers, employees, and business, information in
compliance with organisational policies and standards on all
infrastructure and assets.
Key Requirements
- A Bachelor's degree, or its equivalent, from a reputable
tertiary institution. Relevant professional certifications such as CISSP
CISM, CISA, CEH, GCIH, GCIA, etc.
- A minimum of five (5) years’ experience working in a security engineering role.
- Understanding of IT infrastructure and information security principles.
- Strong knowledge of network infrastructure and architecture.
- Proven knowledge of contemporary security methods, processes and tools.
Job Title: Team Lead, Applications Security Management (Manager)
Reference Number: ES0120
Location: Any City, Nigeria
Department: Security Engineering and Assets Security
Job Description
- Reporting to the Head, Infrastructure Security Operations, the
successful candidate will manage and coordinate all activities that
serve to provide appropriate access to protect the confidentiality and
integrity of customers, employees, and business information in
compliance with organisational policies and standards.
Key Requirements
- A Bachelor's degree, or its equivalent, from a reputable
tertiary institution. Relevant professional certifications such as
CISSP, CISM, CISA, CEH, GCIH, GCIA, etc., as well as Oracle and
Microsoft database certifications.
- A minimum of five(5) years’ experience working in a security engineering role.
- Demonstrable experience in database design and administration, and sound knowledge of operating systems administration.
- Working experience in programming and scripting, as well as hardware configuration, installation and integration.
Job Title: Applications Security Management Analyst (Assistant Manager)
Reference Number: ES0121
Location: Any City, Nigeria
Department: Security Engineering and Assets Security
Job Description
- The successful candidate will monitor database activities and manage parameters to provide responses for compliance purposes.
- This will require working closely with the systems database
administrators in order to ensure that spurious attempts on system
databases are promptly detected and reported.
Key Requirements
- A Bachelor's degree, or its equivalent, from a reputable tertiary institution.
- Relevant professional certifications, including CISSP, CISM,
CISA, CEH, GCIH, and GCIA. Oracle and Microsoft database certifications
are also required.
- A minimum of three (3) years’ experience building and integrating systems.
- Proven experience in information security.
Job Title: Deputy Security Management Analyst (Deputy Manager)
Reference Number: ES0122
Location: Any City, Nigeria
Department: Security Engineering and Assets Security
Job Description
- Reporting to the Team Lead, Database and Application Security
Management, the successful candidate will be responsible for protecting
the Bank’s databases from internal and external sources of exploits.
- He/she will also manage the Banks’ incidence response, as well
as manage the efforts of the Bank in monitoring database activities.
Key Requirements
- A good first degree in Computer Science/Engineering, or Systems Engineering with strong Information Security component.
- Relevant professional certifications, including CISSP, CISM, CISA, CEH, GCIH, and GCIA.
- A minimum of five(5) years cognate experience
- Proven knowledge and experience in database security covering
such platforms as Oracle (8i, 9i, 10g, 11g), Informix (9, 10, 11); MS
SQL Server (6.5, 7, 2000, 2005, 2008); DB2 (8,9); Sybase (11, 15); and
Teradata.
- Certification in IBM DB2 DBA, version 8.
Job Title: Information Assets Security Management Analyst (Assistant Manager)
Reference Number: ES0123
Location: Any City, Nigeria
Department: Security Engineering and Assets Security
Job Description
- Reporting to the Unit ‘Head, Infrastructure Security, the
successful candidate will be responsible for defining, implementing,
assessing, and maintaining controls necessary to protect information and
vital assets (including media) in accordance with acceptable security
requirements.
Key Requirements
- A Bachelor's degree, or its equivalent, from a reputable
tertiary institution. Relevant professional certifications, such as
CISSP, CISM, CISA, CEH, GCIH, GCIA, etc.
- A minimum of eight (8) years relevant working experience, three (3) of which must have been in a supervisory capacity.
- Competence in information security, including methodology and implementation;
- In-depth understanding of banking operations and the use of banking applications.
- Understanding of the Security regulatory environment (i.e. PCIDSS).
Job Title: Team Lead, Infrastructure Monitoring (Manager)
Reference Number: ES0124
Location: Any City, Nigeria
Department: Security Operations Centre
Job Description
- The successful candidate will contribute to the overall
reduction of information security-related incidents in the Bank through
continuous monitoring and identification of threats which can impact the
Bank.
- Inherent in this will be to manage incidences within the
Security Operations Centre by monitoring customer behaviours and system
events so that actions can be taken to stop all forms of fraud
perpetrated against customers and the Bank.
Key Requirements
- A Bachelor's degree, or its equivalent, from a reputable
tertiary institution. Relevant professional certifications, such as
CISSP, CISM, CISA, CEH, GCIH, GCIA, etc.
- A minimum of five (5) years’ experience working in a security operations role.
- Good knowledge of banking structure, policies and procedures.
- Knowledge of system security vulnerabilities and remediation techniques. -
- Experience in network device management and security, fraud analysis and control.
- Demonstrable experience in IT Operations and Infrastructure Management.
Job Title: Security Logging and Retention Management Analyst (Assistant Manager)
Reference Number: ES0125
Location: Any City, Nigeria
Department: Security Operations Centre
Job Description
- Reporting to the Head, Security Operation Centre’ Management,
the successful candidate will be responsible for the availability and
usability of system and resource logs across the enterprise.
- A key component will be to ensure that logs are retained and
‘maintained in line with stipulated legal, compliance and operational
requirements.
Key Requirements
- A Bachelor’s degree, or its equivalent, from a reputable
tertiary institution. Relevant professional ce rt if i cation s, such as
CISSP, CISM, CISA, CEH, GCIH, GCIA, etc.
- Relevant professional certifications such as CISSR CISM, CISA, CEH, GCIH, GCIA, etc.
- A minimum of three (3) years’ experience working in a security operations role.
- Strong understanding of security event types, structured and unstructured data.
- Good knowledge of banking structure, policies and procedures.
- Knowledge of logical access control philosophies.
Job Title: Fraud Desk Analyst (Banking Officer)
Reference Number: ES0126
Location: Any City, Nigeria
Department: Security Operations Centre
Job Description
- The successful candidate will be responsible for ensuring the
complete detection and analysis,of all fraud-related incidents and
ensure escalation for effective action.
Key Requirements
- A Bachelor’s degree, or its equivalent, from a reputable
tertiary institution. Relevant professional certifications, such as
CISSP, CISM, CISA, CEH, GCIH, GCIA, etc.
- A minimum of three (3) years’ experience working in a security operations role.
- Good knowledge of banking structure, policies and procedures.
- Strong experience in data gathering and analysis. Sound knowledge of IT Governance and IT Quality Management.
Job Title: Team Lead, Virus and Malicious Code Management (Deputy Manager)
Reference Number: ES0126
Location: Any City, Nigeria
Department: Security Operations Centre
Job Description
- The successful candidates for this role will be responsible for managing the enterprise malware and antivirus strategy.
- An intrinsic part of this will be to ensure that the Bank’s
information assets are protected through prompt detection, analysis and
elimination of all malicious codes.
Key Requirements
- A Bachelor’s degree, or its equivalent, from a reputable
tertiary institution. Relevant professional certifications, such as
CISSP, CISM, CISA, CEH, GCIH, GCIA, etc.
- Appropriate experience in Information Technology/Information Security (a minimum of 5 years’.)
- Knowledge of banking structure, policies and procedures.
- Proficiency in PL/SQL scripting/programming.
- Strong experience in data gathering and analysis.
- Sound knowledge of IT Governance and IT Quality Management
Job Title: Virus and Malicious Code Management Analyst (Banking Officer)
Reference Number: ES0128
Location: Any City, Nigeria
Department: Security Operations Centre
Job Description
- The successful candidates for this role will be responsible for managing the enterprise malware and antivirus strategy.
- An intrinsic part of this will be to ensure that the Bank’s
information assets are protected through prompt detection, analysis and
elimination of all malicious codes.
Key Requirements
- A Bachelor’s degree, or its equivalent, from a reputable
tertiary institution. Relevant professional certifications, such as
CISSP, CISM, CISA, CEH, GCIH, GCIA, etc.
- Appropriate experience in Information Technology/Information Security (a minimum of 3 years’.)
- Knowledge of banking structure, policies and procedures.
- Proficiency in PL/SQL scripting/programming.
- Strong experience in data gathering and analysis.
- Sound knowledge of IT Governance and IT Quality Management.
Job Title: Team Lead, Information Security Help Desk (Manager)
Reference Number: ES0129
Location: Any City, Nigeria
Department: Security Operations Centre
Job Description
- The successful candidates will be responsible for complete identification of all security-related for Incident Case Management.
- A key function of this role will be to build and implement
incident handling procedures to identify, contain and remediate actual
or potential security-related compromises.
Key Requirements
- A Bachelor’s degree, or its equivalent, from a reputable
tertiary institution. Relevant professional certifications, such as
CISSP, CISM, CISA, CEH, GCIH, GCA, etc.
- Appropriate experience in Information Technology/Information Security (a minimum of five (5) years’ experience).
- Knowledge of banking structure, policies and procedures.
- Proven experience in Security Information and Event Management, creating dashboards, as well as in advanced query.
- Proficiency in PL/SQL scripting/programming.
- Sound knowledge of IT Governance and IT Quality Management.
Job Title: Information Security Help Desk Analyst (Senior Banking Officer)
Reference Number: ES0130
Location: Any City, Nigeria
Department: Security Operations Centre
Job Description
- The successful candidates will be responsible for complete identification of all security-related for Incident Case Management.
- A key function of this role will be to build and implement
incident handling procedures to identify, contain and remediate actual
or potential security-related compromises.
Key Requirements
- A Bachelor’s degree, or its equivalent, from a reputable
tertiary institution. Relevant professional certifications, such as
CISSP, CISM, CISA, CEH, GCIH, GCA, etc.
- Appropriate experience in Information Technology/Information Security (a minimum of 3 years’ experience).
- Knowledge of banking structure, policies and procedures.
- Proven experience in Security Information and Event Management, creating dashboards, as well as in advanced query.
- Proficiency in PL/SQL scripting/programming.
- Sound knowledge of IT Governance and IT Quality Management.
Job Title: Team Lead, Forensic (Deputy Manager)
Reference Number: ES0131
Location: Any City, Nigeria
Department: Threat Intelligence Incident Management
Job Description
- The successful candidates will be responsible for conducting
forensic investigations on information security incidents within the
Bank’s network.
- A critical task will be to manage data breach, as well as information security incident investigations.
Key Requirements
- A good first degree, or its equivalent, in Computer Science/Engineering from a reputable tertiary institution.
- Relevant technical certifications including GIAC Certified
Incident Handler (GCIH), GIAC Certified Forensic Analyst (GCFA), GIAC
Reverse Engineering Malware (GREM), and EnCase Certified Examiner(EnCE).
- A minimum of five (5) years’ relevant experience, Excellent
forensic experience and good understanding of best practices security
architecture.
- Sound understanding of Cryptography and its application in electronic channels.
- Working knowledge of the ISO 27001 and PCIDSS Frameworks.
Job Title: Forensic Analyst (Senior Banking Officer)
Reference Number: ES0132
Location: Any City, Nigeria
Department: Threat Intelligence Incident Management
Job Description
- The successful candidates will be responsible for conducting
forensic investigations on information security incidents within the
Bank’s network.
- A critical task will be to manage data breach, as well as information security incident investigations.
Key Requirements
- A good first degree, or its equivalent, in Computer Science/Engineering from a reputable tertiary institution.
- Relevant technical certifications including GIAC Certified
Incident Handler (GCIH), GIAC Certified Forensic Analyst (GCFA), GIAC
Reverse Engineering Malware (GREM), and EnCase Certified Examiner(EnCE).
- A minimum of 3 years’ relevant experience, Excellent forensic
experience and good understanding of best practices security
architecture.
- Sound understanding of Cryptography and its application in electronic channels.
- Working knowledge of the ISO 27001 and PCIDSS Frameworks.
Job Title: Team Lead, Vulnerability Management (Deputy Manager)
Reference Number: ES0135
Location: Any City, Nigeria
Department: Threat Intelligence Incident Management
Job Description
- The successful candidates will be responsible for designing,
overseeing, and regulating the vulnerability management process in the
Bank to ensure that security issues are identified and evaluated using a
risk management approach, and dealt with in a cost effective and
efficient manner.
Key Requirements
- A good first degree, or its equivalent, in Computer Science/Engineering from a reputable tertiary institution.
- Relevant technical certifications including GIAC Certified
Incident Handler (GCIH), GIAC Certified Forensic Analyst (GCFA), GIAC
Reverse Engineering Malware (GREM), and EnCase Certified Examiner
(EnCE),
- A minimum of eight (8) years’ relevant experience
- Working knowledge of the ISO 27001 and PCIDSS Frameworks.
- Good knowledge of network/application security and encryption models.
- Good knowledge of network protocols including UDP/TCP/lP.
- Professional level knowledge of Access control lists, NAT, routing and switching
Job Title: Thread Intelligence and Incident Management Analyst (Senior Banking Officer)
Reference Number: ES0134
Location: Any City, Nigeria
Department: Threat Intelligence Incident Management
Job Description
- The successful candidates will be responsible for strengthening
the Bank’s security posture against attacks and ensuring the mitigation
of threats within products, applications, databases and physical
information systems.
- Inherent in this will be to develop and implement a threat
intelligence strategy and security plan for the mitigation of security
risks and the protection of data.
Key Requirements
- A good first degree, or its equivalent, in Computer Science/Engineering from a reputable tertiary institution.
- Relevant technical certifications including GIAC Certified
- Incident Handler (GCIH), GIAC Certified Forensic Analyst (GCFA),
GIAC Reverse Engineering Malware (GREM), and EnCase Certified Examiner
(EnCE).
- A minimum of 3 years’ relevant experience
- Working knowledge of the ISO 27001 and PCIDSS Frameworks.
- Knowledge of physical security, as well as risk assessment and risk treatment procedures.
- Sound understanding of Cryptography and its application in electronic channels.
Job Title: Team Lead, Thread Intelligence and Incident Management (Manager)
Reference Number: ES0133
Location: Any City, Nigeria
Department: Threat Intelligence Incident Management
Job Description
- The successful candidates will be responsible for strengthening
the Bank’s security posture against attacks and ensuring the mitigation
of threats within products, applications, databases and physical
information systems.
- Inherent in this will be to develop and implement a threat
intelligence strategy and security plan for the mitigation of security
risks and the protection of data.
Key Requirements
- A good first degree, or its equivalent, in Computer Science/Engineering from a reputable tertiary institution.
- Relevant technical certifications including GIAC Certified
- Incident Handler (GCIH), GIAC Certified Forensic Analyst (GCFA),
GIAC Reverse Engineering Malware (GREM), and EnCase Certified Examiner
(EnCE).
- A minimum of eight (8) years’ relevant experience
- Working knowledge of the ISO 27001 and PCIDSS Frameworks.
- Knowledge of physical security, as well as risk assessment and risk treatment procedures.
- Sound understanding of Cryptography and its application in electronic channels.
Job Title: Vulnerability Management Analyst (Senior Banking Officer)
Reference Number: ES0136
Location: Any City, Nigeria
Department: Threat Intelligence Incident Management
Job Description
- The successful candidates will be responsible for designing,
overseeing, and regulating the vulnerability management process in the
Bank to ensure that security issues are identified and evaluated using a
risk management approach, and dealt with in a cost effective and
efficient manner.
Key Requirements
- A good first degree, or its equivalent, in Computer Science/Engineering from a reputable tertiary institution.
- Relevant technical certifications including GIAC Certified Incident Handler (GCIH), GIAC Certified Forensic Analyst
- (GCFA), G1AC Reverse Engineering Malware (GREM), and EnCase Certified Examiner (EnCE),
- A minimum of 3 years’ relevant experience
- Working knowledge of the ISO 27001 and PCIDSS Frameworks.
- Good knowledge of network/application security and encryption models.
- Good knowledge of network protocols including
- UDP/TCP/lP.
- Professional level knowledge of Access control lists, NAT, routing and switching.
Job Title: Program Management Analyst (Banking Officer)
Reference Number: ES0137
Location: Any City, Nigeria
Department: Program Management Office
Job Description
- The successful candidate will be responsible for delivering project objectives within time, resource and budget constraints.
- This will include activities necessary to develop, implement, and maintain information security program, plan, and processes.
Key Requirements
- A good first degree, or its equivalent, in Computer
Science/Engineering from a reputable tertiary institution. Relevant
professional certifications, such as CISSP, Prince2, PMP, CISA, and
CISM.
- A minimum of two (2) years’ relevant technical and program management experience.
- Strong project management skills, excellent written and oral communication skills.
- Demonstrable experience in Secure Software Development activities.
- Familiarity with threat modelling, code review, and penetration
testing methods and understanding of security concepts will be an
advantage.
Job Title: Governance Risk and Operational Procedure Analyst (Banking Officer)
Reference Number: ES0138
Location: Any City, Nigeria
Department: Program Management Office
Job Description
- The successful candidate will be responsible for ensuring proper
oversight, risk management, and compliance with legal, regulatory,
policy, and other information-security related requirements with which
the organisation is required to comply.
Key Requirements
- A good first degree, or its equivalent, in Computer
Science/Engineering from a reputable tertiary institution. Relevant
professional certifications, such as CISSP, Prince2, PMP, CISA, and
CISM.
- A minimum of two (2) years’ relevant technical and program management experience.
- Good knowledge of the Banking industry and banking operations.
- Working understanding of the ISO 27001 and PCIDSS Frameworks.
- Proven knowledge of E-business technologies and applications.
Job Title: Situational Awareness / Operational Environment Standardization Personnel (Banking Officer)
Reference Number: ES0139
Location: Any City, Nigeria
Department: Program Management Office
Job Description
- The successful candidate will be responsible for providing timely and complete situational awareness information.
- This encompasses identifying adversaries, estimating the impact
of attacks, and evaluating risks, in order to make sound decisions on
how to protect valued assets swiftly and accurately.
Key Requirements
- A good first degree, or its equivalent, in Computer Science/Engineering from a reputable tertiary institution.
- Relevant professional certifications, such as CISSP, Prince2, PMP,CISA, and CISM.
- A minimum of two (2)years’ relevant technical and program management experience.
- Good knowledge of the Banking industry and banking operations.
- Knowledge in information security standards, security architecture and practices.
- Demonstrable experience in Secure Software Development activities.
Remuneration
Remuneration package is highly competitive and attractive.
Note
- Please include in your application, a statement of how you meet
the advertised criteria, as well as names and contact details (including
telephone and email addresses) of three referees who are knowledgeable
about your professional achievements and abilities.
- All application will be treated in strict confidence. Only shortlisted candidates will be contacted.
How to Apply
Interested and qualified candidates should send their CV's (prepared as a
Microsoft Word Document, and saved with your full name) to:
[email protected] quoting the reference number as the subject of the email.
Application Deadline: 10th March, 2017.