Security Specialist (Senior)
Discovery Limited · Johannesburg, Gauteng
Stop applying one at a time.
JobAlertsZA auto-applies to South African jobs like this one for you, overnight. Upload your CV once — we do the applying.
Start free — we apply for you →Key Purpose
- The role is pivotal in detecting and responding to cyber events which includes reviewing and continuously improving the management of the Cyber threats. The position requires strong technical and analytical expertise with sound leadership attributes. The primary focus is to ensure that all malicious activity is detected timeously utilising and improving upon the cyber detection capabilities.
Areas of responsibility may include but not limited
- Optimise Blue / Red Team operations and maintain a working relationship with security operations teams, security officers, security architects, development, network, server and web teams
- Contributing information and recommendations to strategic plans and reviews.
- Preparing and completing Incident response action plans; identifying trends; determining system improvements; implementing change.
- Coordinate and manage hi volume complex Cyber Security focused engagements whilst also responding to and managing security events and engage in security investigations
- Systematically test and forensically detect system vulnerabilities,
- Conduct risk pathway analysis, assist with combating global system penetrations,
- Identify and escalate high priority events, prepare and present management risk and remediation assessment reports, and serve as a team lead to mitigate future attacks,
- Develop an operational support plan for the sustained success of the program – including KPIs of teams, training and development of staff and identify process improvements.
Personal Attributes and Skills
- Excellent knowledge of technology environments
- The ability to articulate security in non-technical business impact terms
- Customer Service Orientation, Result Orientation, Negotiation skills
- Personal organisation and time management skills
- Time and Task Delivery Management
- Professional Communication written, verbal/presenting and listening
- Interpersonal skills - Ability to build relationships with people from all different backgrounds and at different job levels
Qualifications & Experience
Essential
- IT related Diploma / Degree
- Basic IT qualifications A+, N+ or equivalent
- Advanced Security qualifications CISSP, CEH, OSCP, OWASP or equivalent
- 10+ years IT Experience
- 10+ years' experience in Information Security across 4 or more domains
- 8+ years direct incident response, cyber security
Advantageous
- Relevant Security certifications GPEN, OSCP, CREST,etc
- Expertise with security assessment methodology, vulnerability Risk management, OWASP model, CVE ratings
- Advanced knowledge of networking protocols and equipment
- Comfortable with packet analysis and forensic tools
- Knowledge of a managed security service provider operating model.
- Firewalls, IDS/IPS, Web Firewalls, Sandboxing, and other security tools.
- Scripting with Bash, Batch, Perl, or Python – beneficial.
- Strong understanding of Unix/Linux operating systems.
- Ability to read web and application server logs to determine potential breaches.
- Ability to read and action upon logs from endpoint security and malware detection tools
- Ability to set strategic goals via cyber security industry trends in areas surrounding threat intelligence,
- SIEM technologies and correlation.
- Familiarity in cyber security forensics is a plus
- Network security certifications a plus