Security Engineer
Job Details
- Design, implement and maintain security controls for systems, networks and applications.
- Identify and mitigate security vulnerabilities through vulnerability assessments, patch management and penetration testing.
- Monitor security events and investigate potential threats and incidents.
- Support incident response activities and recommend remediation actions.
- Conduct security assessments and audits against applicable security standards and policies.
- Configure and monitor security technologies including SIEM, firewalls, IDS/IPS, PAM and DAM.
- Collaborate with IT, development and operations teams to integrate security throughout the development lifecycle.
- Support DevSecOps practices and security improvements.
- Maintain security procedures, incident records and technical documentation.
Requirements
- Bachelor's degree in Computer Science, Information Security or a related discipline, or equivalent experience.
- 3–5 years of relevant experience in network, application or system security.
- Strong understanding of security protocols, cryptography and security standards.
- Experience with security tools such as SIEM, PAM, DAM, firewalls and IDS/IPS.
- Experience with vulnerability scanning, penetration testing and threat modelling.
- Knowledge of NIST, ISO 27001, PCI-DSS, IM8 and CSA CCOP.
- Experience with network security, firewall management, VPN and IDS/IPS.
- Familiarity with Linux and Windows operating systems.
- Knowledge of DevSecOps practices and tools.
- Scripting knowledge in Python, Bash or PowerShell is an advantage.
- Strong analytical, problem-solving and communication skills.
- Security certifications such as CISSP, CISM, CEH or CompTIA Security+ are an advantage.
EA Number: 11C4879