•Must have a bachelor’s in Information Technology or Computer Science from a reputable university
•Possess minimum 8 years of working experience in which at least 5 years of working knowledge in IT Security for:
o Enterprise Network
o Large Server Infrastructure
o Application Development Life Cycle
•Strong technical proficiency in at least 5 of the following skill sets: Incident Response, Threat Modeling, Intelligence Gathering and Analysis, Threat Mitigation, Protocol Analysis, Intrusion Detection and Prevention, Web Application Security, DDoS Mitigation, Data Correlation, Penetration testing, Security Architecture, Data Loss Prevention, Tamper Resistance, Identity
•Performing detailed forensic analysis of systems and networks to support the resolution of information security incidents, root cause and remediation
•Responsible in gathering information, identify intelligence requirements, interpret and assess information from diverse technical, legal, academic, and human sources, profile malicious actors, monitor trends and patterns in cyber threats, and assess/identify tactics, techniques and procedures related to cyber security issues
•Intelligence Monitoring and Analysis: mining existing research, external open sources, and networks of professional contacts for indicators of information security threats and analyzing such threats to provide actionable intelligence to the management
•Building a Professional Networks of Information Sources: using one’s understanding of the security requirements of the company, this includes developing and deploying honeynet sensors, spam traps, monitoring logs, and Monitoring underground activities
•Briefing and Decision support: Provision of specialist advice or interpretation of data- via written reports, graphical representation of data-analysis, and presentations before groups- to give short-term and longer term trend assessments to help operational managers, risk managers and the various IT teams establish future priorities
•Responsible to evaluate, recommend and monitor IT Security parameters that would provide an effective security program of the IT security surveillance landscape focusing on the following key areas:
o Telecommunications and Network Security
o Applications and Systems Development Security
o Security Architecture and Models
o IT Operations Security
o Security Vulnerability Management
o Cryptography
•Develop a security program that would identify vulnerabilities through means of penetration testing, log monitoring, etc.
•Knowledgeable in Security Operation Centre functions and identification of emerging threats
•Ensure all security incidents are investigated and appropriate recommend mitigations
•Substantial experience in development and implementation of IT controls for area of expertise is a prerequisite
•Possess a strong understanding of business operations (preferably in the energy sector) so as to understand how cyber threats impact major organizations
•Must comprehend the technical aspects of threats- including IT system vulnerabilities, hacking techniques, and malicious code
•A proven understanding of intelligence analysis, qualitative social science, and/or business-management analysis methods
•Ability to construct and analyze social network graphs
•Proven ability to understand and explain the behaviors of different types of complex organizations, from criminal groups to financial enterprises
•Exceptional capacity to use the Internet as a research tool, including extensive familiarity with data and intelligence sources relevant to the information security field
•A proven capacity for critical problem solving and independent research design/execution
•Strong understanding of threat analysis at the detailed and enterprise level, mitigation strategies and communication platforms for delivering threat advisories and notification.
•Working knowledge of how malicious code operates and how technical vulnerabilities are exploited
•Certification in Information Security is an added advantage (e.g. CISSP)
•Must possess good English communication skills (both oral and written) with excellent interpersonal skills and pleasant professional personality
•Ability to adapt multicultural work environment
•Strong analytical and problem-solving skills