to protect organizational systems, networks, and data. This role includes assessing risks, implementing security controls, and responding to cybersecurity threats in compliance with industry standards.
Key Responsibilities
Assess, implement, and maintain cybersecurity measures to protect IT infrastructure.
Conduct vulnerability assessments, penetration testing, and risk evaluations.
Develop and enforce security policies and best practices.
Monitor and respond to security incidents; conduct forensic investigations.
Manage firewalls, IDS/IPS, SIEM, encryption, endpoint security, IAM, and other tools.
Implement frameworks such as
NIST, ISO 27001, CIS Controls
, or ITIL.
Coordinate security architecture reviews and ensure regulatory compliance.
Deliver cybersecurity training and awareness programs.
Required Knowledge & Skills
Understanding of security frameworks (NIST, ISO, GDPR, PCI-DSS, SOC 2, CIS).
Knowledge of threat intelligence, incident response, and forensic methodologies.
Experience with SIEM, IDS/IPS, firewalls, encryption, IAM, endpoint protection.
Cloud security (AWS, Azure, GCP) and Zero Trust principles.
Experience with scripting languages (Python, PowerShell).
Familiarity with secure DevOps (DevSecOps) and change management.