Requirements
This role requires UAE Nationals only. A Bachelor's degree in computer science or information security is mandatory. The candidate must have knowledge of Identity and Access Management (IAM), Privileged Access Management (PAM), DLP solutions (Forcepoint or Microsoft Purview), and information security control frameworks. Experience in managing policy exceptions and working independently without detailed guidance is also required. At least one security, risk, or IT certification (e.g., Security+, ISO 27001) is necessary or in progress.
Description
JOB DESCRIPTIONRole: AssistantAnalyst - Data Security(UAE Nationals Only)Location: Abu DhabiRole Purpose:To Support Access Governance and Data Security Governance functions under Group Information Security Department. This role will be key in performing timely access reviews and data security assessments which will help in improving the security posture of the bank.Key accountabilities of the role:Perform access reviews on Business application access, infrastructure application access or any other special access provided to the usersEnsure access governance policies are applied across the all the access provided for staffs across the organization including the business applications or infrastructure applicationsPerform ad-hoc access reviews on applications based on the identified risk escalationsReview the application matrix for business departments and highlight any unauthorized access/risky access provided based on access management principle such as Least privilege principle and segregation of dutiesCoordinate with business units, HR department and ICD for identifying the unauthorized access and taking necessary remediation actionsConduct access reviews for privileged accountsPerform assessment on exceptions to the approved access matrix and highlight any identified risksGovern the IDAM solution and ensure access governance policies on IDAM workflowsSupport and contribute to bank wide data classificationexercise for the entire bankDevelop and maintain DLP policies, rules and exceptionsPeriodic review of DLP PoliciesTimely KPI and KRI reporting related to data security and access governanceParticipate in the Information security programs and projectsSupport information security compliance assessments, audits, gap analyses, and remediation related to data security and access governanceSpecialist skills / technical knowledge required for this role:Knowledge about Identity and Access Management Solutions and methodologies (IAM,PAM)Knowledge of privileged management solutions, DLP solution preferably Forcepoint or Microsoft PurviewKnowledge of Information security & control frameworks, regulations international standards and best practices.Experience in managing policy exceptions, including working directly with the teams to document exceptions, identify compensating controls and remediation action plans.Work independently without detailed guidance.At least one Security, Risk, or IT certification held or in process (i.e., Security+, ISO 27001, Security+, Any Information Security)Bachelor's degree in computer science or information security from an accredited 4-year university