Roles and Responsibilities:
- SOC lead
- Incident response
- Review security measures and software configuration to protect systems and information infrastructure, including firewalls and data encryption programs.
- Cyber Security Threat hunting, Intelligence, response
- Document security breaches and assess the damage they cause.
- Work with security team to perform tests and uncover network vulnerabilities.
- Coordinate with IT and Fix detected vulnerabilities to maintain a high-security standard.
- Stay current on IT security trends and news.
- Develop company-wide best practices for IT security.
- Help colleagues install security software and understand information security management.
- Research security enhancements and make recommendations to management.
- Stay up-to-date on information technology trends and security standards.
- Handle security Audits and customer reviews
- Analyse and recommend improvement in security posture
- Support for RFP response
- Monitor computer networks for security issues.
- Investigate security breaches and other cyber security incidents.
- Identify Data leak
- Discuss and present security findings to senior management.
- Security compliance
- Providing guidance, procedural advice and general information expertise in Cybersecurity and basic expertise in cyber security
- Permanently establish, maintain and ensure adherence of Information security policies, guidelines, programs and standards
- Single point of contact all security related requests
- Define, maintain and review the Infosec controls
- Enhancement of existing and development of new local Information Security standards, guidelines and processes
- Communication management on Cybersecurity topics
Required Experience and Skills:
- Bachelor’s degree
- Experience in cyber security field.
- Experience with computer network penetration testing and techniques.
- Understanding of firewalls, proxies, SIEM, antivirus, Active Directory, and IDPS concepts.
- Handon experience with PA Traps and Antimalware products.
- Ability to identify and mitigate network vulnerabilities and explain how to avoid them.
- Understanding of patch management with the ability to deploy patches in a timely manner while understanding business impact.
- Scripting knowledge is a plus
- Security Standard awareness – NIST, ISO 27001 and 270002
- Knowledge of data privacy regulations like GDPR
- Certification – CEH & CISSP.
- Cyber Security Threat hunting, Intelligence, response experience
- MITRE framework, DLP, Encryption knowledge, TTP
- Malware analysis
- Must have handled global cyber security operations