Cybersecurity Engineer
Summary
Lead cybersecurity initiatives including vulnerability management, penetration testing, and DevSecOps integration to secure systems and applications.
Core Responsibilities
•Lead vulnerability management initiatives including tracking and remediation across multiple systems using industry-standard tools.
•Conduct penetration testing, source code reviews with independent assessment and expert remediation guidance.
•Manage security testing projects, coordinating between external pen testers and internal stakeholders to ensure successful delivery.
•Perform security risk assessments and deliver actionable recommendations through technical discussions and presentations to teams and management.
•Integrate security practices into DevSecOps and CI/CD pipelines whilst providing expert guidance to application, system, and infrastructure teams.
•Continuously enhance vulnerability management processes and best practices
Requirements
At least 5 years of relevant experience in cybersecurity. Candidates with relevant certifications such as CISSP, CCSP, CRT, OSCP would be an added advantage.
Technical Competencies Security testing (penetration testing, source code review, vulnerability scanning)
Vulnerability management and risk assessment
Technical experience with security scanning tools such as Tenable Nessus, Prisma Cloud, SonarQube, NexusIQ etc.
Strong understanding of: ▪ Common security vulnerabilities (e.g. OWASP Top 10)
▪ Secure coding practices and vulnerability remediation
▪ DevSecOps concepts and CI/CD pipelines