15.05.2024
Cyber Security Engineer
4cgroup
South Africa, Cape Town
Professional Services: Cyber Security & IT As a Cyber Security Engineer, you will play a crucial role in safeguarding our organization's digital assets and information systems from cyber threats and attacks. You will work closely with our IT and Cyber Security teams to develop, implement, and maintain security measures that ensure the confidentiality, integrity, and availability of our data.Main Responsibilities1. Threat Detection and Prevention:Utilize advanced monitoring tools and techniques to identify and analyze potential security threats.Design and implement security measures to prevent unauthorized access, malware infections, and other cyber attacks.Stay updated on emerging threats and vulnerabilities, and proactively implement countermeasures to mitigate risks.2. Incident Response and Management:Develop and maintain incident response plans to effectively address security incidents and breaches.Lead or participate in investigations to determine the root cause of security incidents and implement corrective actions.Coordinate with relevant stakeholders to contain and remediate security incidents in a timely manner.3. Security Infrastructure Management:Manage and maintain security infrastructure, including firewalls, intrusion detection/prevention systems, and endpoint protection solutions.Conduct regular security assessments and audits to ensure compliance with industry standards and regulations.Recommend and implement enhancements to security systems and processes to strengthen our overall security posture.Provide operational information technology security and maintenance support to ensure that the organisation’s server infrastructure, i.e. Linux, Microsoft, etc. is not compromised in any way.Conducts vulnerability scans and risk assessments.Performs day to day operations, management and administration to protect the organisations cyber information integrity, confidentiality and availability of information assets and technology infrastructures.4. Security Awareness and Training:Develop and deliver security awareness training programs for employees to promote best practices and mitigate human error risks.Provide guidance and support to staff on security-related inquiries and incidents, fostering a culture of security awareness and vigilance.Manages cyber security audits and third party penetration tests.KPI’SSystem & network administration (Windows, Linux & hypervisors such as VMware, Hyper-V, etc.)Network securityInformation security policiesFirewall administrationNetwork protocolsProcess improvementQualifications and ExperienceBachelor's degree in Computer Science, Information Security, or a related field.3 – 5 years relevant cyber security experienceCertifications such as SANS GIAC/GCIA/GCIH, CISSP or CASP and/or SIEM-specific training and certification would be advantagesUnderstanding of ISO27001 frameworkAdvanced understanding of TCP/IP, common networking ports and protocols, traffic flow, system administration,OSI model, defense-in-depth and common security elements.Experienced in analyzing high volumes of logs, network data and other attack artifacts in support of incident investigationsExperience with vulnerability scanning solutionsExposure to, or understanding of architecture, engineering, and operations of at least one enterprise SIEM platform (e.g. Nitro/McAfee Enterprise Security Manager, ArcSight, QRadar, LogLogic, Splunk)Experience with EDR technologiesUnderstanding of mobile technology and OS (i.e. Android, iOS, Windows)Key competencies and skillsRouters, hubs, and switchesStrong IT skills and knowledge including hardware, software and networksAbility to use logic and reasoning to identify the strengths and weaknesses of IT systemsA forensic approach to challengesA deep understanding of how hackers work and ability to keep up with the changing security landscapeAbility to seek out vulnerabilities in IT infrastructuresExcellent problem-solving skills and the ability to analyze complex security issues.Effective communication skills with the ability to convey technical information to non-technical stakeholders.Personal attributesSelf-motivated and self-managedAble to communicate effectively, both written and verbalBe able to work with and in various teams within the organizationAbility to work well under pressureWillingness to learnHave the ability to write clear and concise documentsReport on progress and raise issues / problems if and when necessaryProfessionalismAnalytical and problem solving capabilities#J-18808-Ljbffr
Attention! You will be redirected to another site