Responsibilities:
- Leading and managing cybersecurity projects end‑to‑end, including architecture design, planning, deployment, and ongoing maintenance.
- Develop, implement, and maintain security strategies, policies, and procedures to protect company systems, data, and infrastructure.
- Ensure compliance with relevant industry standards, regulations, and legal requirements.
- Design and implement security controls to mitigate identified risks across systems, networks, and applications.
- Deliver security awareness and training programs to promote best practices across the organization.
- Manage and optimize security infrastructure, including firewalls, IDS/IPS, encryption technologies, and endpoint protection.
- Perform regular security assessments, penetration tests, and vulnerability scans; provide remediation guidance and follow‑up.
- Monitor and analyze security events and incidents, identifying threats and responding promptly to potential breaches.
- Lead incident response activities, including investigation, root‑cause analysis, containment, and recovery.
- Identify and evaluate vulnerabilities across the IT landscape, recommending improvements and long‑term security enhancements.
- Stay current with cybersecurity trends, threat intelligence, and emerging technologies, ensuring continuous improvement of security posture.
- Collaborate with IT, Infrastructure, and Application Development teams to integrate security into all stages of the system lifecycle.
- Report to the IT Cybersecurity Team Leader and contribute to strategic security initiatives.
Requirements:
- 5+ years of experience in system administration (Windows & Linux).
- 3+ years of experience as an IT Cybersecurity Engineer or in a similar security-focused role.
- Proven experience in managing cybersecurity projects (architecture, planning, deployment, maintenance).
- Strong background in security engineering, computer and network security, authentication, security protocols, and applied cryptography.
- Hands-on experience with security tools and technologies, including firewalls, IDS/IPS, encryption, SIEM platforms, and vulnerability scanners.
- Experience conducting vulnerability assessments, penetration testing, and infrastructure security testing.
- Practical experience in incident detection, monitoring, and response.
- Experience with web application security (HTTPS, PKI, IIS, Apache, WAF).
- Good understanding of network protocols, routing, and switching.
- Experience with cloud security (AWS, GCP, OCI) is a strong advantage.
- Skills in scripting languages for automation and tooling.