IT Security engineer
Summary
An IT Security Engineer performs vulnerability assessments, monitors security risks, and coordinates remediation with teams to strengthen enterprise IT security, compliance, and operational security using tools like security dashboards and audits.
We're looking for an IT Security Engineer to strengthen the security posture of our enterprise IT environment. You'll work closely with infrastructure, application, and operations teams to identify security risks, perform vulnerability assessments, monitor compliance, and drive remediation activities.
This role is ideal for someone who enjoys both hands-on technical work and security governance, with a strong focus on reporting, continuous improvement, and operational security.
Key Responsibilities
- Perform vulnerability assessments and security reviews across infrastructure and applications.
- Monitor security posture and identify security risks, gaps, and compliance deviations.
- Coordinate remediation activities with infrastructure, application, and operations teams.
- Produce security dashboards, KPI reports, and management updates on vulnerabilities and remediation progress.
- Support security audits and ensure compliance with internal security standards and regulatory requirements.
- Develop and maintain security documentation, procedures, and operational guidelines.
- Recommend improvements to strengthen the organization's overall security posture.
- Stay current with emerging cyber threats, vulnerabilities, and industry best practices.
What We're Looking For
- Diploma or Degree in Computer Science, Cybersecurity, Information Security, or a related discipline.
- 2–5 years of experience in cybersecurity, vulnerability management, or IT security operations.
- Experience conducting vulnerability assessments and coordinating remediation activities.
- Familiarity with security monitoring, reporting, and security compliance processes.
- Good understanding of infrastructure, operating systems, networking, and application security.
- Experience preparing security reports and presenting findings to technical and business stakeholders.
- Strong analytical, troubleshooting, and communication skills.
- Security certifications (e.g., Security+, CEH, CISA, CISSP, or equivalent) are an advantage.