Define and advise on the design, implementation, and testing processes necessary to protect information system assets.
Perform risk assessments and translate security architecture and high-level policies into security requirements for business and IT projects.
Contribute to architectural design and validate it against security requirements.
Define security testing requirements and penetration test scope, support testing teams, and approve test reports.
Implement and ensure the proper functioning of security services in line with IT security policies.
Recommend and advise on new or improved security services.
Produce documented security services, technical standards, or principles.
Act as a security subject matter expert within a specific domain, serving as the point of contact for business and project teams.
Qualifications:
University degree in Computer Science, Engineering, or a related field.
IT-security professional with experience in infrastructure security or IT application security.
Senior profile: Minimum of 10 years’ cyber security experience across multiple domains.
Entry-level profile: Minimum of 3 years’ experience in cyber security in one domain.
Familiarity with industry best practices in key security domains such as identity and access management, PKI, network security, and data protection.
Application security knowledge with an understanding of software development and testing, OWASP guidelines, and security automation using a CI/CD pipeline.
Experience with security technologies including IDAAS, identity management platforms, secure access management, PKI, web application firewalls, and endpoint security.
Knowledge of security technologies covering virtualization, software-defined networks, cloud services, network infrastructure, and more.
Preferred Certifications:
CISSP, GIAC, SABSA, ISO 27001 LA/LI.
Specific security-related product certifications are considered an asset.
Skills:
Effective organizational, planning, and time management skills.
Strong research, analytical, and critical thinking skills.
Proficiency in documentation and presentation applications including PowerPoint, Visio, Excel, and Word.
Ability to translate business requirements into technical solutions.
Strong communication skills, able to discuss and translate security topics with both senior business people and technical IT experts.
Ability to handle different projects and cope with pressure and stressful situations.
Fluent in English.
Team player with strong interpersonal skills, able to communicate openly and constructively.
Profile:
Independent, service-oriented, and organized.
Able to operate within an international/multi-cultural, networked environment.
Takes ownership and ensures that organizational quality standards are met.