We are looking for an IT Security Specialist to define security configuration and operations standards, develop and validate baseline security configurations, and perform technical security audits among other tasks.
Requirements
- Minimum 4 years of relevant education (master or equivalent) after the secondary school
- Minimum 6 years of relevant professional experience in IT Security
- Advanced knowledge of security best practice guidelines (ISO 27001, NIST, SANS Top 20 OWASP, etc.)
- Good practice in the secure configuration of servers, network devices and applications
- Networking protocols and application communications
- Network analysis tools
- Securing Unix and Windows operating systems
- Securing middleware and applications
- Network penetration testing
- Web application penetration testing
- Vulnerability assessments
- Forensic image collection and analysis
- Managing/deploying security technologies such as Firewalls, IDS/IPS, SIEM, IAM, APT, DLP, VA, PKI, Virtual environments, Endpoint security, Mobile security, Communications and data encryption, Remote access methods, Backup and disaster recovery methodologies, Patch management technologies and processes, Wireless protocols and services
- Open Web Application Security Protocol (OWASP) and secure software development standards
- Performing security code reviews
- Security monitoring, threat detection and incident response
- Proactively and iteratively searching through networks and applications to detect and isolate advanced threats that evade existing security solutions (Cyber threat hunting)
- Security operations engineering (e.g. implementation of defensive measures, threat intelligence production)
- Linux administration, TCP/IP, Network Security
- Security configuration reviews of IT Infrastructure and security devices, OS, Databases etc.