Title: Information Security Manager
Company Name: A renowned software development company
Vacancy: 01
Age: Na
Job Location: Dhaka
Salary: Negotiable
Experience:
Strong knowledge of security frameworks and standards (ISO 27001, NIST, CIS, SOC2 etc.)
Experience with security tools such as SIEM (e.g., Splunk, ManageEngine), firewalls, and endpoint security
Hands-on experience in risk assessment and incident management
Knowledge of network security, application security, and cloud security
Familiarity with compliance and audit processes
Preferred Certifications:
CISSP (Certified Information Systems Security Professional)
CISM (Certified Information Security Manager)
CEH (Certified Ethical Hacker)
ISO 27001 Lead Implementer / Lead Auditor
Develop, implement, and maintain information security policies, procedures, and standards
Ensure compliance with international standards such as ISO 27001, ISO 20000, and relevant regulatory requirements
Conduct risk assessments, vulnerability assessments, and penetration testing coordination
Monitor security incidents and lead incident response and investigation activities
Implement and manage security tools such as SIEM, IDS/IPS, firewalls, and endpoint protection/EDR
Oversee access control, identity management, and data protection strategies
Collaborate with IT, DevOps, and application teams to ensure secure system design
Conduct regular security audits and compliance reviews
Lead security awareness training programs for employees
Manage third-party/vendor security assessments
Prepare security reports for senior management and stakeholders