Information Security Specialist

Bahrain
Full Time
Experienced

The Information Security Specialist supports the Head of Information Security and Business Continuity in safeguarding the bank’s critical information assets and ensuring the resilience of its operations. This role is responsible for implementing and maintaining comprehensive information security measures, business continuity plans, and disaster recovery strategies that protect the bank’s systems, data, and services from cybersecurity threats and operational disruptions.

The Specialist will contribute to the bank's proactive risk management approach by identifying vulnerabilities, responding to incidents, ensuring regulatory compliance, and leading initiatives to enhance business continuity. In addition, this role involves coordinating BCP and DR activities, conducting regular testing, and ensuring the organization’s preparedness for crises or emergencies.

Reporting directly to the Head of Information Security and Business Continuity, the Specialist will collaborate closely with IT and other departments and business units to integrate security and business continuity frameworks into the bank’s operational processes, supporting a secure and resilient environment that enables the bank to achieve its strategic objectives.

Responsibilities of the role:

Information Security:

  • Develop, implement, and maintain information security policies, procedures, and standards in alignment with PCI-DSS and regulatory requirements.
  • Monitor, analyze, and respond to security incidents, vulnerabilities, and threats across the bank’s IT systems and networks
  • Conduct periodic risk assessments and gap analyses to identify security weaknesses and develop mitigation strategies
  • Coordinate internal and external audits related to information security; ensure timely closure of audit findings
  • Provide security awareness training to staff and promote a culture of information security
  • Support secure configuration and change management processes across IT assets and infrastructure
  • Work with IT and other departments to ensure security is embedded into system design and operational processes
  • Stay up to date with current cyber threats and trends, and recommend appropriate risk mitigation measures

Business Continuity:

  • Develop and maintain the bank’s business continuity management frameworks in line with the bank’s and regulatory guidelines
  • Conduct business impact analyses (BIAs) and risk assessments across business units to identify critical functions and recovery priorities
  • Lead the development, testing, and continuous improvement of BCP and DR plans to ensure organizational resilience.
  • Coordinate with IT, facilities, and business teams to ensure recovery strategies are effective and practical.
  • Conduct regular BCP/DR drills and exercises, and report findings with actionable recommendations.
  • Liaise with regulatory bodies, auditors, and stakeholders to ensure compliance and readiness.
  • Maintain documentation and evidence of BCM program activities and test results.

Areas of Knowledge, Qualification and Experience

  • Atleast 5 years of experience working within a Banking Environment
  • Bachelors Degree in Computer Science / Cyber Security background.
  • Relevant certifications from ISC2, ISACA, SANS are highly preferred
  • In-depth understanding of global information security standards (e.g., ISO 27001, NIST Cybersecurity Framework, CIS Controls) and regulatory requirements (e.g., CBB, PCI-DSS). Ability to implement and manage these frameworks within a banking context.
Share

Apply for this position

Required*
Apply with Indeed
We've received your resume. Click here to update it.
Attach resume as .pdf, .doc, .docx, .odt, .txt, or .rtf (limit 5MB) or Paste resume

Paste your resume here or Attach resume file

Human Check*