"The Nation's Bank", National Bank of Pakistan aims to support the financial well-being of the Nation along with enabling sustainable growth and inclusive development through its wide local and international network of branches. Being one of the leading and largest banks of Pakistan, National Bank of Pakistan is contributing significantly towards socioeconomic growth in the country with an objective to transform the institution into a future-fit, agile and sustainable Bank.
In line with our strategy, the Bank is looking for talented, dedicated and experienced professional(s) for the following position inthe area of in the area of Audit and Inspection.
The individuals who fulfill the below basic-eligibility criteria may apply for the following position:
Position / Job Title:
Audit Team Member - Information & Cyber Security Audits (AVP)
Reporting to:
Wing Head - Audit Entity Owner/Lead Reviewer Information & Cyber Security Audits
Educational /Professional Qualification:
Minimum Graduation or equivalent from a local or international university / college / institute recognized by the HEC of Pakistan
Candidates having Master's Degree and / or relevant certifications such as CISM / CISA / CCSP / CISSP / ISACA would be preferred
Experience:
Minimum 06 years of professional experience in Information Systems Security and / or Cyber Security and / or Information Technology Audits in Financial institutions and / or Fintech sectors
Candidates having experience in the areas of Application Security and / or Network Security, etc. will be an added advantage
Other Skills / Expertise / Knowledge Required:
Good understanding of system architecture, networks and their designs, virtualization, expertise in intrusion testing / vulnerability assessments of IT infrastructures and networks
Knowledge / understanding of IS / Cyber security tools and techniques of Kali Linux Suite, SIEM, Security Operations Centre, Info. Sec. Tools, etc.
Knowledge of technology infrastructure architecture and systems configurations, network designs, etc.
Good Communication and interpersonal skills
Ability to work in a fast-paced, deadline-driven environment that demands high quality, creative and consistent work
Knowledge of hacking techniques and their remedies / controls to be in place
Understanding cyber and information security related laws and regulations, best practices, etc.
Understanding of vulnerability assessment and penetration testing reports based on automated auditing and security tools
Outline of Main Duties / Responsibilities:
To conduct audits related to Technology Infrastructure, security, other IT assignments and reviews of systems, applications, etc.
To conduct IS audit assignments as per approved IS Audit plans, perform independently or under Supervisor
To prepare / issue draft reports, discuss with related management for conclusion of draft and issuance of final audit reports
To analyze document / report and validate the implementations of security recommendations identified during Cyber / IS / IT security audits
To follow up the open audit issues, Management Action Plans (MAPs), etc.
To prepare and keep updated the related audit documents such as Risks Controls Matrices (RCMs) / checklists / Audit Programs, Engagement Plans, IS / IT Manual, Guides for auditors and other pre- / post-audit tasks
To prepare audit related periodical reports, MIS, etc.
To prepare a summary of significant issues for review, compliance and reporting to senior management / BAC / etc.
To provide assurance on the internal controls environment in the Bank for IS / IT assets and to provide assurance on integration of compliance with security best practices, frameworks, and regulations in the IT / IS projects
To identify the vulnerabilities and flaws in related controls (design and implementation) in networks, operating systems, data centers, etc.
To prepare information / data for SBP inspection team, external auditors and law enforcementagencies through nominated coordinator / focal person.
To perform any other assignment as assigned by the supervisor(s)
Place of Posting:
Karachi
Assessment Interview(s)
Only shortlisted candidates strictly meeting the above-mentioned basic eligibility criteriawill be invited for panel interview(s).
Employment Type:
The employment will be on contractual basis for three years which may be renewed ondiscretion of the Management. Selected candidates will be offered compensationpackage and other benefits as per Banks Policy / rules.
Apply within 10 working days from the date of this job posting.
Applications received after due date will not be considered in any case. No TA / DA will be admissible for interview.
National Bank of Pakistan is an equal opportunity employer and welcomes applications from all qualified individuals, regardless of gender, religion, or disability.
,