Lesha Bank

Vice President - Technology Risk

Lesha Bank

Doha, Doha Municipality, Qatar · Full Time

Be the first to apply

Experience
10+ yrs
Salary
—
Openings
1
Posted
2 weeks ago
Work mode
In office
Education
Bachelor or Master degree in Computer Science, IT, or related fields
Resume
Required to apply

Where you'll work

Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.

Job description

About Lesha Bank and the Role

Lesha Bank is in rapid growth and seeking highly talented and motivated individuals ready to contribute value from the start. The Vice President - Technology Risk will play a pivotal role in enhancing the bank's cybersecurity risk management frameworks across diverse business units and technology platforms.

Key Responsibilities

  • Conduct comprehensive security evaluations of enterprise technology components including infrastructure, applications, cloud environments (Azure, GCP, Oracle Cloud), networks, databases, middleware, and security tools.
  • Review and influence the design of technology architectures to embed security by design principles.
  • Execute threat modeling and cybersecurity risk assessments for new technology projects and initiatives.
  • Define and validate security baselines and configuration standards for enterprise systems.
  • Provide strategic security recommendations for digital transformation efforts.
  • Assess and reinforce security controls for cloud platforms and emerging technologies such as AI, Generative AI, and machine learning, including third-party AI services.
  • Lead application security assessments throughout the software development lifecycle and promote secure DevSecOps practices including integration into CI/CD pipelines, security testing (SAST, DAST, SCA), and penetration testing.
  • Manage enterprise vulnerability programs, oversee penetration testing for various systems, and chair remediation governance forums to improve overall security.
  • Govern security operations activities by collaborating with SOC teams to enhance monitoring, detection, incident response, and post-incident review processes.
  • Support cybersecurity governance by assisting the Information Security Officer, preparing reports and presentations for risk committees, and facilitating regulatory audit responses.
  • Maintain and track cybersecurity metrics, dashboards, KPIs, and risk reports to aid governance activities and enhance cybersecurity maturity assessments.

Preferred Certifications

  • Offensive Security Certified Professional (OSCP)
  • Certified Ethical Hacker (CEH)
  • Computer Hacking Forensic Investigator (CHFI)
  • Certified Information Systems Security Professional (CISSP)
  • Certified Information Security Manager (CISM)

Educational Background

Candidate should hold a Bachelor’s or Master’s degree in Computer Science, Information Technology, or related fields.

Experience Requirements

  • Over 10 years of professional experience in cybersecurity, technology risk assessment, and assurance functions.
  • Experience supporting compliance with standards like ISO 27001, NIST, NIA, QCSF, PCI DSS, GDPR, PDPL, or equivalent regulatory frameworks.
  • Demonstrated expertise in conducting cybersecurity risk assessments, control evaluations, and assurance reviews.
  • Proficient in enterprise security architecture, cloud security, AI security, application security, DevSecOps, vulnerability management, penetration testing, and incident response.

Technical and Professional Skills

  • Enterprise security architecture design and review
  • Cybersecurity risk assessment methodologies
  • Cloud platform security (Azure, GCP, Oracle Cloud)
  • Security of AI and emerging technologies
  • Application security and DevSecOps integration
  • Vulnerability management and penetration testing coordination
  • Threat modeling and security control assessments
  • Security operations center processes and incident management
  • Security information and event management (SIEM)
  • Executive-level reporting and stakeholder engagement

Key Competencies

  • Strong analytical skills and risk-oriented decision making
  • Ability to clearly translate technical cybersecurity matters into business risks
  • Comprehensive understanding of cybersecurity regulations and compliance
  • Leadership in driving cybersecurity initiatives across diverse business and technical teams
  • Excellent communication skills with stakeholders and executives
  • Capacity to align governance with technology and business needs pragmatically
  • Effective leadership, influencing, and problem-solving abilities

Minimum education

Master's Degree

Industry

Banking

How they work

Organisation required

Leave it if you'd like a reply — we won't use it for anything else.

Click to browse, drag & drop, or paste a screenshot

PNG, JPG, GIF, MP4, WebM, MOV · Max 20MB each · Up to 5 files

🤖
Online · instant AI help
Broxer