MAIN TASK
The Information Systems Security Manager will be required to assess the vulnerability of the information system of the WAEMU Regional Mortgage Refinancing Company (CRRH-UEMOA), propose solutions to the line manager to develop and strengthen the security policy and implement solutions to protect the computer network against any external intrusion (viruses, hackers, etc.). The systems security engineer will be the recognized interface for users and external parties on issues relating to the security of all or part of the information system.
DUTIES AND RESPONSIBILITIES
- Risk analysis, research, and web and network security audits ;
- Audit the web, Wi-Fi, and VoIP security system, possibly with the help of service providers (penetration and infusion tests);
- Analyse the risks, malfunctions, gaps in protection, and room for improvement in security systems;
- Define or develop web and email security measures and standards in line with the nature of the company’s business and its IT risks exposure (password policy, choice of antivirus, certificates, etc.);
- Carrying out technical studies, enabling the line manager to choose the most appropriate technical systems for the company’s needs (firewall, authentication, etc.).
Implementation and monitoring of Internet and intranet security measures - Put in place appropriate web security methods and tools and support their implementation with users;
- Drawing up and monitoring dashboards for Internet security incidents (particularly viral attacks);
- Repair damage caused to the IT system in the event of a system penetration or virus/ransomware infection, analyze the causes, and consolidate security measures;
Regularly test or have tested the correct operation of the security measures to detect weaknesses and shortcomings (penetration tests in particular).
Communication and training on safety standards
- Participate in the development of the network security policy (password policy, authentication, use of certificates, level of antivirus security on workstations, definition (censorship) of trusted sites, etc.), update it regularly, share it with users and ensure that it is applied;
- Produce training materials and distribute them mainly to staff in the IT department and other departments;
- Set up communication actions with company users in case of a significant risk (information on types of infected email, for example) or damage to information systems caused by an attack.
Technological and regulatory watch
- Keep a technology watch, particularly on protocols, new intrusion systems, and the latest attack techniques on the web, as well as developments in protection to guarantee system security;
- Identify new risks to the security of the information system: the appearance of unknown viruses, the launch of computer attacks on the global network, etc.;
- Monitor legal developments regarding Internet security to ensure that web security measures are consistent with individual and collective rights.
Manage Applications
- Administer and manage access to CARTHAGO, SWIFT, IBIS Comptabilité and other applications;
- Monitor the maintenance and updating of the various applications.
PROFILE
Qualification
The candidate must possess the following qualifications and have professional experience as described below:
- Bac +5 (Master 2) in information technology; IT security, telecoms, IT systems and network security, information coding, or other equivalent qualifications;
- At least five (5) years of professional experience as an Information Systems Security Technician;
- Professional certification in security management would be an added advantage (CISSP, etc.).
Skills and aptitudes required
- Mastery of ISO 2700X standards, knowledge of various security systems, and a good command of technical English;
- Compliance with procedures;
- Good listening and communication skills;
- Rigorous, inquisitive, independent, methodical, dynamic and organized.
Applications are open to all nationals of WAEMU member countries.
Please send your application, including a cover letter and detailed curriculum vitae, to the following address:
recrutement@conseils-reunis-togo.com
Latest by 17h00 GMT 29 April 2023
For further information, please get in touch with (+228) 70 02 02 20