We're a leading financial institution, a key player in the Maltese market and part of a highly diversified multi-national group of companies. Employing a team of over 270 employees, the bank offers a full range of lending and savings solutions to both personal and business customers. We strive to offer a highly personalised service through our network of thirteen retail branches spread across the Maltese Islands.
We are a team of inspired people who believe that opportunities start with a conversation.
Duties & Responsibilities
The Information Security Specialist provides senior technical expertise to strengthen the Bank’s security posture
You will be responsible for:
- Conduct advanced security assessments, threat analysis, and vulnerability testing.
- Provide expert input into security architecture and technical controls under the Manager’s direction.
- Draft and maintain security policies, standards, and procedures in line with established frameworks.
- Respond to complex security incidents, supporting investigation and forensic analysis.
- Monitor emerging threats and perform advanced cyber‑intelligence research.
- Support execution of risk management processes, including assessments, documentation, and reporting.
- Assist in compliance and audit activities to meet regulatory obligations.
- Optimise and tune security tools (SIEM, EDR, SOAR) and contribute to automation enhancements.
- Lead technical aspects of security projects and support awareness initiatives.
- Mentor junior team members and act as a technical escalation point.
- Collaborate with other departments to ensure secure implementation of systems and processes.
- Handle other assigned duties as required by the Information Security Manager.
Competencies & Experience
The potential candidate should be reliable and trustworthy, well-organised with a disposition to learn and have a team-oriented approach. The candidate should demonstrate excellent written and verbal communication skills in English, with the ability to communicate effectively using a high level of business English.
You must:
- Possess strong technical proficiency with security technologies (SIEM, EDR, SOAR, network and endpoint security).
- Have a solid understanding of security frameworks (ISO27001, CIS Controls, OWASP, COBIT).
- Have advanced analytical, troubleshooting, and scripting skills (Python, Bash, PowerShell).
- Have deep knowledge of Linux, Windows, and network security principles.
- Possess strong communication skills for presenting technical findings to technical and non‑technical stakeholders.
- Show high attention to detail and strong problem‑solving capabilities.
- Hold a Bachelor’s degree in Cyber Security, Computer Science, or related technical field.
- Bring at least 6 years’ experience in information security, including at least 2 years in a senior or specialist role.
- Possess one or more of the following preferred Industry certifications: CISSP, CISM, CISA, CRISC, ISO27001 Lead Implementer/Auditor.
- Be familiar with regulated industry environments.
- Demonstrate experience conducting advanced assessments, incident response, and security tool optimisation.
What we Offer
- Ongoing personal development;
- Preferential interest rates on home loans, personal loans and home value loans;
- Comprehensive support for academic advancement through fully subsidized staff study loans;
- Private clinic health insurance coverage, extendable to dependants;
- Life insurance and personal accident cover;
- Free ophthalmic examinations;
- Private counselling sessions in collaboration with Richmond Foundation;
- Additional full-day leave for birthday celebrations;
- Annual performance appraisals and salary reviews;
- €400 annual wellness allowance;
- Complimentary mammogram screenings for female employees aged over 40 and PSA screenings for male employees aged over 40;
- Flexible work arrangements (role permitting); and
- Various corporate discounts.
BNF Bank plc is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.