senior information security analyst - Doha, دولة قطر - Qatar Petroleum

    Qatar Petroleum
    Qatar Petroleum background
    وصف
    • 10+ years of relevant professionalexperience.
    • Experience with large ICS &ICT environments in the Energy sector, preferably in Oil &Gas.
    • Experience with and understanding ofcustomized information security managementsystems.
    • Experience in information securityawareness initiatives and communitybuilding.
    • Knowledge of information securitycapabilities and requirementsanalysis.
    • Knowledge of relevant state laws,industry regulations, and securitystandards.
    • Excellent written, verbal andpresentation communication skills.
    • Maintain andimprove the Information Security Management System (ISMS) andimplement and maintain ISMS-related standards, documentation andpractices.
    • identify, document and validateevolving governance requirements in support of ISMS improvementsand align and integrate information security standards andpractices with standards and practices of otherDirectorates.
    • Periodically assess complianceand maturity and report status against adopted standards, nationalinformation security-related regulations and maturitymodel.
    • Maintain updated mappings of compliancechecklists to national laws andregulations.
    • Participate in the informationsecurity incident management process where necessary to ensure theoperational availability, integrity and confidentiality ofenvironments.
    • Represent the InformationSecurity Department internally (e.g., Change Advisory Panel,Projects, etc.) and externally with government bodies asdirected.
    • Actively engage directorates in orderto build a collaborative information security environment andcommunity, championing "grass roots" efforts toimprove information security throughout theorganization.
    • Coordinate and align activitiesbetween Information Security and Business Continuity and liaisewithin IT to ensure business continuity and disaster recovery plansare in place, tested, and reportregularly
    • Drive, implement and manage securityprojects for the department.