Skills

  • Business Development
  • Office management
  • Project Management
  • System administration
  • HR
  • ICT
  • QA

Experience

PHILIP AIWEKHOE

Work experience
  • Develop, implement and monitor a strategic, comprehensive enterprise information security and IT risk management program (as approved by the Board)
  • Constantly update the cyber security strategy to leverage new technology and threat information;
  • Review and approve security policies, controls and cyber incident response planning;
  • Develop and enhance an information security management framework
  • Provide leadership to the enterprise's information security organization.
  • Ensure constant communication of the status of the cyber security programme with the Board of Directors.
  • Responsible for the day-to-day cyber security activities and the mitigation of cyber security risks in the Bank
  • Drive the information security program to have realistic policies, standards, procedures and processes that are implementable and auditable and to achieve a balance of performance in relation to security.
  • Direct and approve the design of cyber security systems.
  • Provide training and mentoring to security team members.
  • Review investigations after breaches or incidents, including impact analysis and recommendations for avoiding similar vulnerabilities.
  • Maintain a current understanding the IT threat landscape for the industry and translate that knowledge to identification of risks and actionable plans to protect the business.
  • Ensure effective cyber security awareness.
  • Work directly with the business units to facilitate information risk assessment and risk management processes.
  • Conduct regular vulnerability and risk assessment.
  • Plan and initiate security audits.
  • Keeping abreast of developing security threats, and helping the board understand potential security problems that might arise from acquisitions or other big business moves.
  • Internal & Vendor Communication.
  • Regular profiling of information security risk in the Bank and the industry.
  • Any other duty assigned by the management of the Bank.

Related persons