Job Description:
- Perform or coordinate the core operational cyber-security functions such as incident handling, incident response, vulnerability management, penetration testing, application security, data leakage prevention and identity/access management.
- Participate in response planning and remediation actions.
- Review existing and proposed system configurations and designs to ensure compliance with security controls and baselines.
- Participate in or conduct cyber-security assessments, and evaluate proposed changes, and/or execute action plans to enhance cyber-security resilience and risk mitigation.
- Design, implement, operate and maintain security tools, advance detection solutions with minimal supervision and guidance.
- Enhance cyber-security operations functions through process enhancements and stakeholder engagement.
- Lead enhancement of cyber-security functions through vendor/supplier identification, scope of work development, justification, contract review, contract negotiation and procurement engagement.
- Execute and communicate enhancement strategy of cyber-security functions using measured goals, proper tracking and reporting.
- Establish, maintain and enforce procedures, guidelines and baselines related to security for the users and administration of IT systems.
- Collaborate with stake holders from other IT functions for cyber gaps remediations efforts and provide security review consultations if required.
- Assess cloud security and propose improvements or solutions
- Implement security and data protection solutions in the cloud
- Strong understanding of API management and application integration methodologies
- Perform other miscellaneous duties as directed
Requirements:
- Bachelor's degree in the IT field.
- 9 years’ experience in IT and/or cybersecurity field.
- At least 5 years work experience at information security service-company or cybersecurity department.
- Intermediate or Advanced GIAC certifications in any of Cyber Defense, Penetration Testing, and/or Digital Forensics & Incident Response domains preferred (examples: GPEN, GWAPT, GCIH).
- CISSP or equivalent professional certification is preferred.
- Strong knowledge with emerging technologies, such as intelligent automation, artificial intelligence (AI)/ machine learning (ML)
- Strong Knowledge of modern cloud technology components and deployment patterns - Cloud security certification is preferred (CCSP, CCSE, AZ 500, GCSA, CompTIA Cloud+ etc)
- Experience developing software such as Python or scripting language
- Strong knowledge of REST APIs implementation
- Proficient in written and oral English.
- Proficient in SIEM and Log Management Solutions. - SOAR solutions recommended.
- Understanding and familiarity with securing cloud infrastructure.
- Proficient in both Windows and Unix/Linux operating system implementation and administration.