بهسا (تابعه هلدینگ همراه اول)
بهسا (تابعه هلدینگ همراه اول)

Security Engineer (ISMS)

Tehran/ Vanak
Full Time
Saturday to Wednesday from 7:30 AM to 4:30 PM with two hours of flexibility
-
Flexible working hours
501 - 1000 employees
Telecom
Iranian company dealing with Iranian and foreign customers
1396
Privately held
توضیحات بیشتر

key Requirements

2 years experience in similar position
language English-Intermediate

Job Description

About the Company:
Behparaz Hamrah Samaneh Aval, a subsidiary of Hamrah Aval, is a leader in the field of IT and digital solutions. We are looking to hire motivated, creative, and skilled individuals to join our team and contribute to innovative projects that shape the digital future.

Job Description:
As a Cyber Security Engineer, you will be responsible for:

  • Lead the implementation, maintenance, and continual improvement of the ISMS.
  • Contribute to the implementation and development of the AI Management System based on ISO/IEC 42001.
  • Develop, review, and maintain information security and AI governance policies, procedures, processes, and records.
  • Identify, classify, and evaluate information assets and AI systems.
  • Conduct information security and AI-related risk assessments.
  • Develop and maintain the Risk Register, Risk Treatment Plan, and Statement of Applicability (SoA).
  • Monitor the implementation and effectiveness of controls and collect relevant audit and compliance evidence.
  • Plan and conduct internal audits.
  • Track nonconformities, corrective actions, and improvement opportunities through completion.
  • Monitor applicable legal, regulatory, contractual, and information security requirements, including relevant AI governance obligations.
  • Define, monitor, and report information security and AI governance objectives, KPIs, and KRIs.
  • Prepare periodic management reports and support management review activities.
  • Plan and coordinate information security and responsible AI awareness programs.
  • Collaborate with security, infrastructure, software development, data, AI, HR, legal, and other relevant teams.
  • Support security and risk assessments for projects, systems, suppliers, outsourced services, and significant changes.

Qualifications:

  • Bachelor’s degree or higher in Information Technology, Computer Engineering, Information Security, IT Management, or a related field.
  • At least two years of relevant experience in ISMS, GRC, information security, or risk management.
  • Practical experience in implementing, maintaining, or auditing an ISMS based on ISO/IEC 27001.
  • Strong knowledge of ISO/IEC 27001:2022, ISO/IEC 27002:2022, and information security risk management.
  • Familiarity with the structure and requirements of ISO/IEC 42001:2023.
  • Familiarity with AI-related risks, including data security, privacy, transparency, bias, accountability, and human oversight.
  • Strong documentation, internal auditing, nonconformity management, and management reporting skills.
  • Good understanding of IT infrastructure, networking, access control, business continuity, and information asset management.
  • Ability to collaborate effectively with technical teams, business stakeholders, and senior management.
  • Strong follow-up, analytical, problem-solving, and organizational skills.
  • Ability to read and understand professional and technical documentation in English.

What We Offer:

  • A dynamic and professional work environment
  • Competitive salary and benefits
  • Flexible working hours
  • Opportunities for growth and learning

Job Requirements

Gender
Men / Women
Education
Bachelor| Computer and IT
Language
English| Intermediate - 50%

ثبت مشکل و تخلف آگهی

ارسال رزومه برای بهسا (تابعه هلدینگ همراه اول)