Publication date: 23-Jun-2023
The objective of the assignment will be to review the people, processes and technology in the cybersecurity context and undertake a bank-wide assessment of the cybersecurity controls in place as well as compliance to regulations standards and best practices in the context of the bank. Regulatory Standards should include, GDPR, PCI, DSS PII, and other emerging regulations such as DORA (Digital Operational Resilience Act), etc. The consultant shall be required to assess, identify, report, and recommend remedial actions for all identified weaknesses in controls and non-compliant areas using a set of cybersecurity standards as a benchmark (such as NIST, CIS, Cobit 5.0, ISO 27k, etc.) and emerging technology, including putting in perspective the Bank IT Digital Transformation plans.