The Cybersecurity Specialist plays a critical role in safeguarding the organization's digital infrastructure, ensuring that systems, networks, and data remain secure against internal and external threats. This position requires a proactive mindset, strong technical proficiency, and the ability to anticipate, detect, and respond to evolving cybersecurity risks. The ideal candidate will possess a solid foundation in cybersecurity best practices, risk assessment, and incident response.
Primary Responsibilities:
- Continuously monitor enterprise networks and systems to detect potential breaches, suspicious behavior, or system anomalies.
- Perform in-depth vulnerability scans and penetration testing to evaluate and reduce security risks.
- Configure, manage, and oversee a variety of security technologies, including but not limited to firewalls, anti-malware platforms, SIEM tools, IDS/IPS systems, and endpoint protection solutions.
- Lead investigations of security incidents, ensuring timely response, thorough documentation, and comprehensive post-incident evaluations.
- Assist in the development and implementation of secure architectures, along with enforcing security policies and operational procedures.
- Conduct risk evaluations for applications, infrastructure, and third-party service providers.
- Ensure organizational adherence to relevant cybersecurity standards and regulatory frameworks (e.g., ISO 27001, NIST, HIPAA, GDPR).
- Design and facilitate company-wide cybersecurity awareness training programs.
- Keep abreast of emerging cybersecurity threats, vulnerabilities, and defensive strategies through continuous research and threat intelligence.
- Collaborate with internal teams and external partners to promote security best practices and improve incident handling capabilities.
- Contribute to disaster recovery and business continuity efforts from a security standpoint.
Qualifications and Skills:
- A bachelor's degree in Computer Science, Information Technology, or a related discipline, or equivalent professional experience in the field.
- At least 5 years of experience in cybersecurity operations, information security, or IT security.
- Expertise with cybersecurity tools and platforms, including SIEM, encryption technologies, firewalls, and endpoint defense systems.
- In-depth understanding of cyber threats, attack vectors, and security protocols.
- Familiarity with industry-recognized frameworks such as NIST, CIS Controls, ISO 27001, and MITRE ATT&CK.
- Experience in securing cloud environments (AWS, Azure, GCP) is highly desirable.
- Possession of cybersecurity certifications such as CompTIA Security+, CEH, CISSP, or CISM is an advantage.
- Strong analytical and investigative skills, with a keen eye for detail.
- Effective verbal and written communication skills, with the ability to clearly present technical findings and recommendations to stakeholders.
