Security Risk Management Specialist

2 days ago


Muscat, Muscat, Oman Canonical Full time

In security risk management, we're looking to harness the power of industry best practice combined with driving new innovation on how we do security risk assessments and modelling. Our security risk management team is the primary owner of the strategy and practices of how we identify, track and reduce our security risk across everything we do.

To support this, we need to use industry best practices paired with emerging threat information to promote risk identification, quantification, impact analysis, and modelling to ultimately drive decision making. In this role, you will help establish and execute a broad strategic vision for the security risk program at Canonical. You will not only work within the team but also cross-functionally with various teams across the organisation. The team contributes ideas and requirements for Canonical product security, improving the resilience and robustness of all Ubuntu customers and users subject to cyber attacks. Additionally, the team collaborates with our Organisational Learning and Development team to develop playbooks and facilitate security training across Canonical.

The security risk management team's mission is not only to secure Canonical, but also to contribute to the security of the wider open source ecosystem. They might share knowledge through public presentations and industry events, and share threat intelligence with the wider community or represent Canonical in sector-specific governance bodies.

What you will do in this role:

  1. Define Canonical's security risk management standards and playbooks
  2. Analyse and improve Canonical's security risk practices
  3. Evaluate, select and implement new security requirements, tools and practices
  4. Grow the presence and thought leadership of Canonical security risk management practice
  5. Develop Canonical security risk learning and development materials
  6. Work with Security leadership to present information and influence change
  7. Participate in developing key risk indicators, provide inputs to the development of key control indicators, and key performance indicators for various programs
  8. Apply statistical models to risk frameworks (such as FAIR, sensitivity analysis, and others)
  9. Participate in risk management, decision-making, and collaborative discussions
  10. Lead quantified risk assessments and understand the value of qualitative data for improvements to quality and engineering processes
  11. Interpret internal or external cyber security risk analyses in business terms and recommend a responsible course of action
  12. Develop templates and materials to help with self-service risk management actions
  13. Monitor and identify opportunities to improve the effectiveness of risk management processes
  14. Launch campaigns to perform security assessments and help mitigate security risks across the company
  15. Build evaluation methods and performance indicators to measure efficiency of security functions and capabilities.

What we are looking for:

  1. An exceptional academic track record
  2. Undergraduate degree in Computer Science or STEM, or a compelling narrative about your alternative path
  3. Drive and a track record of going above-and-beyond expectations
  4. Deep personal motivation to be at the forefront of technology security
  5. Leadership and management ability
  6. Excellent business English writing and presentation skills
  7. Problem-solver with excellent communication skills, a deep technical understanding of security assessments and risk management
  8. Expertise in threat modelling and risk management frameworks
  9. Broad knowledge of how to operationalize the management of security risk
  10. Experience in Secure Development Lifecycle and Security by Design methodology.

What we offer you:

  1. Distributed work environment with twice-yearly team sprints in person
  2. Personal learning and development budget of USD 2,000 per year
  3. Annual compensation review
  4. Recognition rewards
  5. Annual holiday leave
  6. Maternity and paternity leave
  7. Employee Assistance Programme
  8. Opportunity to travel to new locations to meet colleagues
  9. Priority Pass, and travel upgrades for long haul company events.

About Canonical:

Canonical is a pioneering tech firm at the forefront of the global move to open source. As the company that publishes Ubuntu, one of the most important open source projects and the platform for AI, IoT and the cloud, we are changing the world on a daily basis. We recruit on a global basis and set a very high standard for people joining the company. We expect excellence - in order to succeed, we need to be the best at what we do. Canonical has been a remote-first company since its inception in 2004. Working here is a step into the future, and will challenge you to think differently, work smarter, learn new skills, and raise your game.

Canonical is an equal opportunity employer. We are proud to foster a workplace free from discrimination. Diversity of experience, perspectives, and background create a better work environment and better products. Whatever your identity, we will give your application fair consideration.

#J-18808-Ljbffr

  • Muscat, Muscat, Oman ahlibank Full time

    About the RoleWe are seeking a highly skilled Risk Management Specialist to join our team at ahlibank. In this role, you will be responsible for ensuring the protection of bank assets, employees, and customers by implementing and managing comprehensive security and safety policies.The ideal candidate will have 5-10 years of experience in banking security,...


  • Muscat, Muscat, Oman Ahli Bank Full time

    Job SummaryThe Security Risk Manager will be responsible for overseeing the development and implementation of comprehensive security policies to safeguard bank assets, employees, and customers. This role involves conducting regular risk assessments, ensuring compliance with industry regulations, and managing physical security systems.Main...


  • Muscat, Muscat, Oman Canonical Full time

    About Us:Canonical is a pioneering technology firm at the forefront of the global shift to open source. As the company behind Ubuntu, one of the most significant open source projects and the platform for AI, IoT, and the cloud, we are changing the world on a daily basis. We recruit globally and set high standards for people joining the company. Excellence is...


  • Muscat, Muscat, Oman Canonical Full time

    We're seeking a Strategic Security Risk Leader who will define and execute a broad strategic vision for the security risk program at Canonical. The ideal candidate will have an exceptional academic track record, an undergraduate degree in Computer Science or STEM, or a compelling narrative about your alternative path. Drive, leadership and management...


  • Muscat, Muscat, Oman Canonical Full time

    The Threat Modelling and Risk Governance Specialist will develop key risk indicators, provide inputs to the development of key control indicators, and key performance indicators for various programs. They will apply statistical models to risk frameworks, participate in risk management, decision-making, and collaborative discussions, and lead quantified risk...


  • Muscat, Muscat, Oman Fleet Management Systems International (FMSi) Full time

    At Fleet Management Systems International (FMSi), we seek a skilled Database Security and Performance Specialist to join our team. Key Responsibilities include:Installing, configuring, and maintaining database systems (SQL, MySQL, PostgreSQL, or others).Ensuring database security by implementing access controls and protecting against cyber threats.Monitoring...


  • Muscat, Muscat, Oman Petroleum Development Oman Full time

    About the Role: We are seeking a highly skilled Risk Management Specialist to join our team at Petroleum Development Oman. As the Chief Insurance Strategist, you will play a critical role in leading all insurance activities for PDO, ensuring the effective management of market conditions, underwriting capacities, and upcoming risks. Your expertise will be...


  • Muscat, Muscat, Oman Canonical Full time

    Our Cybersecurity Risk Analyst Manager will lead quantified risk assessments, interpret internal or external cybersecurity risk analyses in business terms, and recommend a responsible course of action. They will also develop templates and materials to help with self-service risk management actions, monitor and identify opportunities to improve the...


  • Muscat, Muscat, Oman ahlibank Full time

    Role StatementThe Security & Safety Manager is responsible for ensuring the protection of bank assets, employees, and customers by implementing and managing comprehensive security and safety policies. This role oversees risk assessments, physical security systems, emergency response planning, and access management while ensuring compliance with industry...


  • Muscat, Muscat, Oman ahlibank Full time

    Job DescriptionAs a Bank Security Operations Manager at ahlibank, you will oversee the implementation and management of comprehensive security and safety policies to safeguard bank assets, employees, and customers.You will conduct regular risk assessments to identify potential threats and vulnerabilities, develop and implement security policies to ensure...


  • Muscat, Muscat, Oman TAT IT Technolgies Full time

    **Job Overview**TAT IT Technologies seeks an experienced Network and Security Infrastructure Specialist to join our dynamic team.The ideal candidate will have a strong background in network design, implementation, and management, with expertise in multi-data center environments and Fortinet technologies.We are looking for a highly skilled professional who...


  • Muscat, Muscat, Oman Ahli Bank Full time

    Job DescriptionWe are seeking a highly skilled Credit Risk Assessment Professional to join our team at Ahli Bank. In this role, you will be responsible for assessing and monitoring credit risk through pre-sanction and periodic review of credit applications.Key ResponsibilitiesFacilitate the review process of credit proposals by effectively assessing and...


  • Muscat, Muscat, Oman Ahli Bank Full time

    Role StatementResponsible for the effective and efficient assessment and monitoring of Credit Risk through pre-sanction and periodic review of Credit Applications.Principal ResponsibilitiesTo facilitate review process of credit proposal submitted to the credit risk unit by effective and efficient assessment and monitoring of Credit Risk through pre-sanction...


  • Muscat, Muscat, Oman Petroluem Development Oman Full time

    Senior Third Party Risk Management Specialist PositionPetroleum Development Oman seeks a Senior Third Party Risk Management Specialist to lead its third-party risk management program. This role involves overseeing the evaluation and mitigation of risks associated with third-party engagements, ensuring compliance with regulatory requirements, and protecting...


  • Muscat, Muscat, Oman Prysmian Group Full time

    Job DescriptionThis role involves overseeing and managing all aspects of credit risk within the organization. The Credit Risk Manager will be responsible for supervising and providing support to the CFO in managing receivables, credit risk, collections, insurance, and enterprise risk management.The ideal candidate should have a strong background in finance,...


  • Muscat, Muscat, Oman TAT IT Technolgies Full time

    We have an urgent requirement for a Network and Security Infrastructure Specialist with strong experience in multi-data center environments for our banking client in Oman.Experience: 6+ yearsLocation: OmanCertifications: CCNA, CCNP, Fortinet NSE, CISSP, or similar are highly preferred.Requirements:Strong network and security infrastructure management in...


  • Muscat, Muscat, Oman Diyar United Company Full time

    About UsDiyar United Company is committed to delivering exceptional results through our talented team of professionals. We are seeking an experienced Network Security Specialist to join our team.Job SummaryThe successful candidate will be responsible for designing, implementing, and maintaining secure network infrastructure for the Ministry, including the...


  • Muscat, Muscat, Oman Ahli Bank Full time

    About this OpportunityWe are seeking a highly experienced Head of Security Operations to join our team. The successful candidate will be responsible for overseeing the overall security function within the bank, ensuring that all security policies and procedures are in place and effectively implemented.Main ResponsibilitiesSecurity Policy Development and...


  • Muscat, Muscat, Oman ahlibank Full time

    Enterprise Risk ManagementAs the Head of Enterprise Risk at ahlibank, you will be responsible for providing essential Security & Safety support during project execution.You will supervise project visitors as needed to ensure compliance with Security & Safety standards, provide necessary support to the Guest Relations team to ensure adherence to Security &...


  • Muscat, Muscat, Oman Ahli Bank Full time

    About the RoleThe Bank Safety and Security Executive is responsible for leading the bank's security efforts to protect its assets, employees, and customers. This includes developing and implementing comprehensive security policies, conducting regular risk assessments, and ensuring compliance with industry regulations.Key ResponsibilitiesSecurity Policy...