Responsibilities
Security Operations & Incident Response:
Monitor, investigate, and respond to security incidents and vulnerabilities.
Support security monitoring and threat intelligence efforts.
Assist in security investigations, root cause analysis, and remediation planning.
Cloud Security Implementation & Compliance:
Assist in deploying and maintaining security controls for cloud/hybrid environments (AWS, Azure, Kubernetes, Docker, etc.).
Ensure security compliance with industry standards (e.g., NIST, ISO 27001, CCM).
Support the development of cloud security policies and best practices.
Security Technology Deployment & Integration:
Assist in the deployment and integration of security tools such as Web Application Firewalls (WAF), Security Information and Event Management (SIEM), and Identity & Access Management (IAM) solutions.
Work with DevOps and IT teams to implement security configurations in cloud environments.
Participate in security automation and infrastructure-as-code (IaC) initiatives.
Process Improvement & Stakeholder Collaboration:
Collaborate with internal teams to identify security gaps and propose solutions.
Assist in documenting security policies, procedures, and incident reports.
Keep up-to-date with emerging cloud security threats and trends.
Other Responsibilities:
Work with vendors and support teams to resolve security issues.
Participate in training and upskilling programs as needed.
Requirements
- Degree in Computer Science/Information Technology or equivalent
- 3+ years of experience in Information Security, Cloud Security, or Security Engineering.
- 1+ years of hands-on experience with AWS or Azure security features and cloud security best practices.
- Familiarity with public and hybrid cloud security risks and mitigation strategies.
- Experience with security technologies and processes, including Intrusion Detection Systems (IDS/IPS), endpoint security, and log management.
- Hands-on experience with SIEM/Analytics tools (e.g., Microsoft Sentinel, Splunk, or Securonix) – including policy configuration and fine-tuning.
- Knowledge of security monitoring, incident response, and vulnerability management.
- Understanding of TCP/IP, HTTP, SSL, DNS, and OWASP Top 10 security risks.
- Experience with Web Application Firewalls (WAF) and proxy security solutions is a plus.
- Security certifications (e.g., CompTIA Security+, AWS Security Specialty, CEH) are preferred but not required.
- Strong problem-solving and analytical skills to assess security threats and recommend solutions.
- Ability to work independently and collaboratively in a fast-paced environment.
- Good communication skills, with the ability to explain security concepts to non-technical stakeholders.
Shortlisted candidates will be offered a 1 Year Agency Contract employment