Cyber Security Assistant Manager/Manager

Job type: Grant Thornton Malta

Location: Birkirkara

Categories: IT and Technology

Apply for this position

Our team is currently looking for a skilled Cyber Security Assistant Manager/ Manager to join a versatile team delivering cyber security services. As the successful candidate, you will be responsible for providing consultation services regarding cybersecurity, technology, and regulatory compliance needs.

The ideal candidate should have a thorough understanding of cybersecurity, risk management, technology controls, and regulatory requirements. Your primary duties will involve working closely with the internal team and clients to assess their cybersecurity risks, technologies and setup, develop risk management plans, and ensure compliance with applicable regulations.

 

Duties and Responsibilities

  • Develop further and manage the ISMS, the overarching framework through which GT identifies, analyses and addresses its information security risks and opportunities.
  • Establish and maintain strong relationships with both senior and operating level business leaders and clients alike, to ensure alignment to customer and business needs while prioritizing key initiatives.
  • Develop both high-and low-level action plans for implementation of the information security policies and procedures maintaining the proper balance between business priorities, information security risks, and cost of controls implementation for the organization.
  • Coach, advise and drive adoption of developed policies and procedures and implementation of the action plans while providing subject matter expertise in information security for internal and external requests.
  • Articulate and uphold the essence of Security Principles, fostering a culture of utmost vigilance across the organization, while balancing client requirements to operate in a modern workplace.
  • Participate in the client information security compliance process. Identify and analyze customer requirements related to information security.
  • Coordinate with the GRC Analyst to maintain the Information Security Risk Management process, coordinate risk assessment cycle implementation with respective risk and control owner definition, and development of Risk Treatment plans.
  • Establish a schedule and scope with the GRC Analyst for the annual Controls Risk Assessment, including Vulnerability Assessment and Security Assurance (Penetration) testing, scope and schedule for internal and external client environments.
  • Work closely with the IT operations department. Influence key Infrastructure and application architectural decisions in relation to cyber security standard compliance.
  • You have a watchful eye on emerging threats and security events, providing real-time monitoring to identify and respond swiftly.
  • Moreover, you utilise knowledge gained to plan, research and design robust security architectures for technology projects.Assess and further develop the security awareness program and other educational related material.
  • You are responsible for influencing the behaviour of all employees in respect to Cyber Awareness and their responsibility as part of the “First Line of Defence”.
  • As part of the cybersecurity team, you are to conduct deep-dive investigations into cyber incidents, extracting root causes and meticulously tracking them to resolution.
  • Lead the design, execution, and oversight of transformative security projects, contributing to a robust cyber defence.
  • Assist in the formulation, maintenance, and implementation of robust Security Standards, Policies, and Procedures.
  • Collaborate with cross-functional teams, guiding them towards secure design solutions.Deliver engaging Information Security Training sessions to our teams and clients alikeFamiliarity with security-by-design principles and their application in project lifecycles. 
  • Understanding of emerging technologies and their potential security implications.
  • Report metrics for divisional Board of Directors, Risk Committee and global cyber reporting

 

Qualifications and Skills

  • 3+ years’ experience working in Information Security positions.
  • You have been exposed with Cloud and Hosted Infrastructure, including SaaS platforms.
  • You have a degree in Computer Science, Information Security, or similar,
  • Holding an industry-standard qualification such as CEH, CISSP, CISA, CISM or CRISC will be considered an asset.
  • You offer solid experience in Vulnerability assessments and have exposure to penetration testing.
  • Good knowledge of security-related technologies such as firewalls, SIEM, DLP, Firewalls, IPS/IDS and cloud-security.
  • Fluent in security standards, best practices, and internationally recognized frameworks such as ISO and NIST.
  • You have good communication skills in English, enabling you to articulate complex security matters with clarity and impact.
  • Strong understanding of regulatory requirements, industry standards, and best practices related to technology risk management, cybersecurity, and governance.
  • Excellent communication and interpersonal skills, with the ability to influence and educate others on technology risk management and governance matters.
  • Strong analytical and problem-solving skills.
  • Displays a can-do attitude and continuously seeks ways to do things better.

 

What we offer

Competitive Salary, Health Insurance, Employee Assistance Programme (EAP), Continuous Professional and Personal growth through our Learning & Development team and participation in international milestone programmes, Family Friendly Measures – Work-life balance, Flexible working hours, Working in a multi-cultural environment, Recognition and Career Progression, Wellbeing Allowance, which increases on a yearly basis, open door policy, Firmwide social activities, tuition support on courses related to the job, and study leave, Performance Appraisals held twice yearly, Induction Meetings and buddy system, Donate as you earn, career secondments opportunities.

 

Knowing we’re right for you

Embracing uniqueness, the culture at Grant Thornton thrives on the contributions of all our people, we never settle for what is easy, we look beyond to deliver the right thing, for everyone. Building an inclusive culture, where we value difference and respect our colleagues helps our people to perform at the best of their ability and realise their potential.

Our open and accessible culture means you’ll interact with leaders who are interested in you and everything you bring to our firm. The things that set you apart, we value them. That’s why we give you the freedom to bring your whole self to work and pursue your passions inside and outside of work.

Grant Thornton gives you the opportunities, resources and flexibility to create a career that empowers your passion.

 

Beyond the job

Life is more than work. The things you do, and the people you’re with outside of work matter, that’s why we’re happy to look at flexible working options for all our roles, and we’ll always do our best to keep your work and life in balance.

The impact you can make here will go far beyond your day job. It’s that drive to do the right thing that runs through our every move, grounded in our CLEARR values – Collaboration, Leadership, Excellence, Agility, Respect and Responsibility.

We’re looking for people who want to contribute, spark fresh ideas and go beyond expectations. People who want to be able to proudly do what’s right, for the firm, our clients, our people and themselves. It’s how it should be.