Introduction

Information Security Program is to ensure that the information security governance and controls are implemented effectively, in line with COMPANY strategic business objectives, regulatory compliance requirements and the region threat landscape context.

COMPANY is seeking to contract a mature experienced organization to perform information protection enterprise-wide rollout.

What are you going to do

The CONTRACTOR shall ensure that as a minimum the following is captured:

  • Information Asset criticality (CIA);
  • Sensitivity Data Classification;
  • Identity Access Management requirements (Access Model, Segregation of Duty, Application/Data ownership, Privilege Access Management);
  • Information/data privacy requirements;
  • Integrity requirements.

Based on the information asset classification the CONTRACTOR shall ensure that as a minimum the following requirements are captured:

  • The confidentiality, integrity, and availability requirements;
  • The identity access management requirements;
  • The data sensitivity classification and information protection requirements;
  • The data privacy requirements of the information.
  • The CONTRACTOR will use the existing Business Impact analysis conducted by COMPANY Business Continuity team and conduct information classification exercise for 05 departments.

CONTRACTOR shall conduct interviews and workshops with the business to perform Information Classification (CIA) considering the following:

  • COMPANY risk matrix and Information Classification Standard;
  • Business Impact analysis conducted by COMPANY Business Continuity function for those departments;
  • Where possible CONTRACTOR shall leverage outputs from other initiatives conducted by the COMPANY.

CONTRACTOR shall use the already developed templates and information available and provided by the COMPANY and ensure that as part of the Information Classification Matrix the following information is captured:

  • Identification of Information Assets’ Owners;
  • Identification of Information with Privacy Data;
  • Group of Information Assets into Information Types.

Essential skills and knowledge 

  • Relevant experience in Information Security with at least five (5) years in an Information Protection and privacy role;
  • Confirmed experience in implementing end-to-end Information Protection enterprise-wide in well-established organizations;
  • Hands-on experience in Information Protection and Privacy built by design controls definition and implementation;
  • Confirmed experience in Microsoft Information Protection enterprise-wide implementation in well-established organizations;
  • Confirmed experience in assessing, defining, and implementing DLP rules;
  • Confirmed experience in local and international privacy laws. Hand-on experience in establishing GDPR or other privacy laws;
  • Expertise in implementing information protection and privacy security controls from technological and administrative aspect;
  • Experience in implementing information protection, privacy procedures and gap assessments;
  • Experience and knowledge of ISO/IEC 27001:2013, GDPR, NIST CSF, DLP & other Information Protection technologies;
  • The following certification in good standing is mandatory for the personnel assigned to providing the SERVICES as per this document:
  • Certified Information Privacy Manager (CIPM); Certified Information Systems Security Professional (CISSP), Project Management certification;
  • Minimum 5-year experience in project management activities;
  • Good understanding of cloud solution (focus on Azure) and digital transformation process;
  • CONTRACTOR PERSONNEL shall demonstrate understanding of the organization culture and clear understanding of overcoming these challenges prior engaging.

What we offer

Salary:

Day Rate in USD Plus Allowance

Work Schedule:

9 Hours / 6 Days

Duration:

12 months with possible extension

Location:

Qatar

Anything else ?

Shape your future

Are you ready for the next step in your career? Join Brunel’s powerful global network, where passionate, results-driven specialists come together with industry-leading clients. By connecting specialists to pioneering projects, we drive change in many industries, enabling growth and delivering great outcomes. Brunel helps you reach your full potential and empowers you to make an impact within a purpose-driven global company.

Explore your career opportunities!

Our Culture and Values

At Brunel, we are proud of our unique corporate culture, which is shaped and nurtured by the collective efforts of our employees. Our work environment is characterised by an authentic, communicative and inclusive approach to teamwork that fosters an atmosphere of collaboration and creativity. Our values are at the center of everything we do – for our clients, our colleagues and ourselves.

Learn more about our global network of specialists!

Our ESG Commitment

Since 1975, our mission has always been to connect specialists to exciting career opportunities, to support the development of these careers, and to offer fair and equal employment. This has enabled us to create a truly sustainable and durable business model. Having a passion for people and caring deeply for the environment is not only part of Brunel’s DNA but is also reflected in our culture and values. As a global company, we take our social responsibility very seriously.

Join us on our mission!

Are you the perfect match for this vacancy? Apply in 1 minute and let's get in touch!

Are you in perfect match ?