Senior Specialist – Cyber Security Assurance
NewBe an early applicantSummary
A senior security specialist at an IT services provider who runs Security & Privacy by Design assurance, performs penetration testing and vulnerability assessments across infrastructure, web apps, APIs, cloud, and mobile, and does threat modelling and risk assessments to keep projects compliant with security standards.
Reverside is an established IT services provider delivering
Software Development, IT Resourcing, Digital Transformation, and Systems
Support solutions. We are seeking a Senior Specialist – Cyber Security
Assurance to take responsibility for Security & Privacy by Design
Assurance, penetration testing, security assessments, threat modelling, and
security governance. The successful candidate will ensure that technology
projects and solutions comply with required security standards, policies,
frameworks, and controls, while proactively identifying and mitigating security
and privacy risks throughout the project lifecycle.
Key Responsibilities
- Manage Security & Privacy by Design
Assurance (SPDA) processes.
- Conduct internal and external penetration
testing across infrastructure, networks, web applications, APIs, and systems.
- Perform vulnerability assessments and safely
validate security weaknesses.
- Conduct
automated and manual security testing.
- Perform threat modelling and security risk
assessments.
- Review technology projects and ensure security
baselines and requirements are met.
- Provide security architecture and secure
integration guidance.
- Identify and mitigate security risks from design
through implementation.
- Stay updated on emerging threats, attack
techniques, and security technologies.
- Support Cybersecurity knowledge sharing,
training, and mentoring.
Qualifications & Experience
- 5+ years’ experience in penetration testing or
ethical hacking.
- Strong experience in network, web application,
cloud, and mobile security.
- Relevant Cybersecurity
qualification/certification.
Technical Skills
- Kali Linux
- Burp Suite
- Metasploit
- Nessus
- Network & Web Application Security
- Cloud & Mobile Security
- Python
- Bash
- Ruby
- PowerShell
- JavaScript
- TCP/IP
- DNS
- HTTP/S
- SSL/TLS
- OWASP and common vulnerabilities including SQL
Injection
- XSS
- CSRF
- Threat Modelling & Risk Assessment
- Security Architecture & Security by Design
Preferred Certifications
- OSCP
- CEH
- CISSP
- CISA
Core Skills
- Penetration Testing
- Ethical Hacking
- Security Assurance
- Security by Design
- Threat Modelling
- Vulnerability Management
- Web & API Security
- Network Security
- Cloud Security
- Security Architecture