Cybersecurity
Role Description
We are seeking a proactive, analytical, and security-focused Cybersecurity professional to safeguard the organization's digital assets, enterprise infrastructure, applications, and sensitive information from evolving cyber threats. The successful candidate will play a key role in implementing security strategies, monitoring enterprise environments, identifying vulnerabilities, responding to security incidents, and supporting the continuous improvement of the organization's cybersecurity posture. This role collaborates with IT, cloud, infrastructure, software development, compliance, risk management, and business teams to ensure secure technology operations and regulatory compliance.Key responsibilities include monitoring networks, endpoints, cloud platforms, and enterprise systems to detect, investigate, and respond to potential security threats and suspicious activities; implementing, configuring, and maintaining security technologies including firewalls, endpoint detection and response (EDR), intrusion detection and prevention systems (IDS/IPS), security information and event management (SIEM), identity and access management (IAM), privileged access management (PAM), web application firewalls (WAF), email security gateways, and data loss prevention (DLP) solutions; conducting vulnerability assessments, security audits, risk assessments, penetration testing coordination, and remediation planning to strengthen security controls; supporting incident response activities including threat containment, forensic analysis, root cause investigation, recovery, and post-incident reporting; collaborating with cloud and DevOps teams to integrate security into cloud environments, CI/CD pipelines, infrastructure automation, and application development through DevSecOps practices; developing and maintaining cybersecurity policies, standards, procedures, security baselines, and technical documentation aligned with organizational objectives and industry frameworks; supporting governance, risk, and compliance initiatives by participating in internal audits, third-party assessments, vendor security reviews, and regulatory reporting; monitoring global threat intelligence, emerging attack techniques, ransomware campaigns, and vulnerability disclosures to proactively improve organizational resilience; promoting security awareness through employee education, phishing simulations, and cybersecurity best practices; leveraging automation, artificial intelligence, machine learning, and Security Orchestration, Automation, and Response (SOAR) technologies to improve operational efficiency and incident response capabilities; preparing security dashboards, executive reports, compliance documentation, and risk assessments for management review; and staying informed about emerging cybersecurity technologies, cloud security innovations, privacy regulations, and global security standards to continuously enhance enterprise security.
The Cybersecurity professional is expected to combine strong technical expertise with analytical thinking, risk management, and problem-solving skills to protect critical business systems and information assets. Success in this role requires attention to detail, adaptability, collaboration, effective communication, and a commitment to continuous learning in an ever-evolving threat landscape.
Qualifications
- Bachelor's degree in Cybersecurity, Information Security, Computer Science, Information Technology, Computer Engineering, Network Engineering, or a related discipline.
- Strong understanding of cybersecurity principles, network security, cloud security, endpoint security, application security, identity and access management, and information security governance.
- Knowledge of TCP/IP networking, Windows and Linux operating systems, virtualization, cloud computing, encryption technologies, authentication protocols, Active Directory, DNS, VPNs, Zero Trust Architecture, and secure network design.
- Proficiency with cybersecurity platforms and tools such as Microsoft Defender, Microsoft Sentinel, Splunk, IBM QRadar, CrowdStrike, SentinelOne, Palo Alto Networks, Fortinet, Cisco Secure, Qualys, Nessus, Burp Suite, Wireshark, Metasploit, or similar enterprise security technologies.
- Familiarity with Amazon Web Services (AWS), Microsoft Azure, Google Cloud Platform (GCP), Kubernetes, Docker, Infrastructure as Code (IaC), and cloud-native security solutions.
- Understanding of security frameworks and standards including ISO/IEC 27001, NIST Cybersecurity Framework, CIS Controls, SOC 2, PCI DSS, GDPR, HIPAA, OWASP Top 10, and MITRE ATT&CK.
- Strong analytical, troubleshooting, investigative, and problem-solving skills with the ability to assess and mitigate cybersecurity risks.
- Excellent written, verbal, presentation, and stakeholder communication skills.
- Strong organizational and project management skills with the ability to manage multiple initiatives simultaneously.
- High level of professionalism, integrity, confidentiality, attention to detail, and commitment to protecting organizational information assets.
- Proficiency in scripting or programming languages such as Python, PowerShell, Bash, or similar languages for automation and security operations is advantageous.
- Knowledge of digital forensics, malware analysis, threat hunting, penetration testing, artificial intelligence security, security automation, and zero-trust implementation is beneficial.
- Professional certifications such as CISSP, CISM, CompTIA Security+, CEH, GIAC, GSEC, CCSP, OSCP, Microsoft Certified: Cybersecurity Architect Expert, AWS Certified Security – Specialty, or equivalent are considered advantageous but are not mandatory.
- Demonstrated commitment to continuous learning and staying current with emerging cyber threats, cloud security advancements, artificial intelligence, regulatory changes, privacy standards, and global cybersecurity best practices.