وصف الوظيفة
Role Overview
Assistant Analyst – Data Security at ADIB, Abu Dhabi. This position is open to UAE Nationals only.
Role Purpose
Support Access Governance and Data Security Governance functions under the Group Information Security Department. This role is key in performing timely access reviews and data security assessments to improve the bank's security posture.
Key Responsibilities
Access Reviews and Governance
- Perform access reviews on Business application access, infrastructure application access, and other special access provided to users.
- Ensure access governance policies are applied across all access provided to staff across the organization, including business applications and infrastructure applications.
- Perform ad-hoc access reviews on applications based on identified risk escalations.
- Review the application matrix for business departments and highlight any unauthorized or risky access based on access management principles such as Least Privilege and Segregation of Duties.
- Conduct access reviews for privileged accounts.
Access Management and Remediation
- Coordinate with business units, HR department, and ICD for identifying unauthorized access and taking necessary remediation actions.
- Perform assessment on exceptions to the approved access matrix and highlight any identified risks.
- Govern the IDAM solution and ensure access governance policies on IDAM workflows.
Data Security and DLP
- Support and contribute to bank-wide data classification exercise for the entire bank.
- Develop and maintain DLP policies, rules, and exceptions.
- Conduct periodic review of DLP policies.
Reporting and Compliance
- Deliver timely KPI and KRI reporting related to data security and access governance.
- Support information security compliance assessments, audits, gap analyses, and remediation related to data security and access governance.
Projects and Programs
- Participate in Information Security programs and projects.
Qualifications & Experience
- Bachelor's degree in Computer Science or Information Security from an accredited 4-year university.
- At least one Security, Risk, or IT certification held or in process (Security+, ISO 27001, or any Information Security certification).
Skills & Competencies
- Knowledge of Identity and Access Management Solutions and methodologies (IAM, PAM).
- Knowledge of privileged management solutions and DLP solutions, preferably Forcepoint or Microsoft Purview.
- Knowledge of Information Security and control frameworks, regulations, international standards, and best practices.
- Experience managing policy exceptions, including working directly with teams to document exceptions, identify compensating controls, and develop remediation action plans.
- Ability to work independently without detailed guidance.
الراتبغير مُفصح عنه من صاحب العمل
آخر موعد—