Responsibilities:
- Continuously monitor security alerts and logs from various security tools (e.g., SIEM, IDS/IPS).
- Identify, investigate, and respond to security incidents and potential threats in real time.
- Assist in the development and implementation of incident response plans.
- Conduct forensic analysis and post-incident reviews to understand the nature and impact of security breaches.
- Perform regular vulnerability assessments and penetration testing.
- Identify vulnerabilities in systems and applications, and work with IT teams to remediate them.
- Assist in security audits to ensure compliance with organizational policies and regulatory requirements (GDPR, ISO27002, PCI-DSS).
- Prepare documentation and reports on compliance status and security metrics
- Stay updated on emerging cyber threats and vulnerabilities by researching security trends and threats.
- Use threat intelligence feeds to proactively identify and mitigate risks.
- Collaborate with the security team to develop and maintain security policies, procedures, and guidelines.
- Educate staff on security best practices and the importance of adhering to security policies.
- Work closely with the network team to ensure secure configuration and management of systems.
- Communicate security issues and incidents effectively to stakeholders at all levels.
- Assisting the Network team with Level 1 and 2 support where necessary.
- Carry out any other related duties as assigned by the Management, from time to time.
- An MQF Level 6 qualification in Computer Science and at least 4 years relevant work experience OR an MQF Level 5 qualification in Computer Science and at least 5 years relevant work experience.
- Relevant certifications such as CISSP, CISM, CEH, CompTIA Security+, or equivalent will be considered an asset.
- Strong understanding of networking concepts, protocols, and security technologies (e.g., firewalls, VPNs, antivirus).
- Familiarity with security frameworks (e.g., NIST2, ISO 27002) and compliance regulations.
- Proficiency with security tools (e.g., SIEM, endpoint protection).
- Knowledge of scripting or programming languages (e.g., Python, PowerShell) is a plus.
- Excellent analytical, problem-solving, and communication skills.