Information Security Officer

🏢 Qatar Stock Exchange
📍 Doha, QatarFull-timeOn-site
📅 Posted: Yesterday🔄 Updated: Yesterday
CV%
✨ AI Summary
The Information Security Officer at Qatar Stock Exchange (QSE) is responsible for identifying and assessing information security risks, and for developing policies, procedures, and technical standards to protect QSE's information assets. The role involves establishing and maintaining a corporate-wide information security management program, designing and implementing an enterprise information security strategy, and leading auditing and compliance initiatives. Key responsibilities include conducting risk assessments, designing and implementing internal controls, managing technical security operations such as firewalls and vulnerability assessments, and leading incident response and business continuity planning. The role also includes training staff on information systems and raising awareness of information risk management among stakeholders.
Required Skills
Other
NIA
Information Technology
Active DirectoryWeb ServicesCybersecurity
Finance, Legal & Governance
COBIT
Requirements
Requires a Bachelor's degree in Information Technology or Computer Science, with over 5 years of relevant information security experience. Must have in-depth knowledge of information security standards like ISO 27001, ITIL, COBIT, NIA, and the National Cyber Security Framework, along with strong technical skills in Active Directory, proxy, antivirus, network security, encryption, vulnerability assessment, penetration testing, and web services security. Strong analytical, reasoning, and reporting skills are also essential.
Description
About Qatar Stock ExchangeQatar Stock Exchange (QSE) is the principal securities market of the State of Qatar. QSE gives local and international investors direct access to an advanced, well-regulated capital market covering equities, ETFs, sukuk, bonds, and Treasury bills. QSE serves as an effective platform for listed companies to raise capital, broaden their investor base, and support their growth plans in line with Qatar National Vision 2030 and the Third Financial Sector Strategy.Job SummaryThe Information Security Officer is responsible for identifying and assessing information security risks and for developing the policies, procedures, and technical standards that protect QSE's information assets. Reporting to the Director of Risk Management, the role designs, plans, and implements internal controls with a particular focus on technical security and maintains a corporate-wide information security management program aligned to regulatory and industry standards.Roles And ResponsibilitiesSecurity Strategy, Policy and GovernanceEstablish and maintain a corporate-wide information security management programme ensuring information assets are adequately protected.Design, implement, and monitor a comprehensive enterprise information security strategy and IT risk management programme.Develop and maintain security policies, procedures, and technical standards.Drive security decisions based on government and industry regulations and risk management findings.Lead auditing and compliance initiatives.Risk Assessment and ControlsIdentify and assess IT security risks and technical standards.Carry out information security risk assessments and test data processing systems.Design, plan, and implement internal controls, particularly those related to technical security.Assess systems for security gaps, design effective solutions, and report to management and executive staff.Regulate access to information, ensuring only authorized users can reach restricted data and systems.Technical Security OperationsDesign, maintain, and review IT security architecture and firewalls.Plan and implement security measures across all information systems and networks.Plan regular penetration tests, evaluate results, and oversee closure of identified gaps.Manage and execute regular vulnerability assessments and oversee patch management systems.Conduct real-time analysis of immediate threats and triage incidents as they arise.Incident Response and ContinuityInvestigate and report on security incidents.Plan and test responses to security breaches, including tabletop exercises.Support IT disaster recovery plans and strategies, addressing intrusions quickly and effectively.Test backup and recovery procedures.Awareness and Stakeholder EngagementTrain staff on the proper use of information systems.Partner with business stakeholders across the company to raise awareness of information risk management.Coordinate, supervise, manage, and train others.Stay current with security legislation, regulations, alerts, and emerging threats.RequirementsBachelor's degree, preferably in Information Technology or Computer Science (CISSP or CISM certification desirable).Over 5 years of relevant information security experience.In-depth knowledge of information security standards including ISO 27001, ITIL, COBIT, NIA, and the National Cyber Security Framework.Strong technical skills across Active Directory, proxy, antivirus, network security, encryption, vulnerability assessment and penetration testing, and web services security.Strong analytical, reasoning, and reporting skills.
✨ Premium Match Details
Deep-dive CV analysis, customized Cover Letters, and Interview prep!
📊 Match Analysis
Insights against your active CV
📊
Personalized Match Analysis
Upload your CV to see exact matching percentages, detailed skills mapping, and gap analysis for this role.
🎯 Overalli74%
⚡ Skillsi85%
View Breakdown
Ontology Match: 85.0
Matched:✓ Requirements Matching✓ Ontology Skills Mapping
📜 Eligibilityi49%
View Breakdown
Local: 19600%
🏗️ Career Fiti91%
View Breakdown
Seniority: 91.0
📋 Requirementsi67%
View Breakdown
Domain: 67.0
🔥 Motivationi78%
View Breakdown
Title Fit: 78.00