Desired Skills and Experience
- Perform/oversee periodic risks assessments to identify security vulnerabilities, determine the acceptable level of risk, and prepare recommendations to reduce information security risks;
- Implement or coordinate remediation required by audits, as necessary;
- Administering and auditing the security of the different applications used within the organization;
- Auditing and assessing the physical network infrastructure, including servers, appliances, networks etc.;
- Prepare and periodically update information security policies, architectures, standards, and/or other technical documents to ensure all resources are adequately protected;
- Ensure adequate audit trails exist for the detection, investigation, and correction of information security breaches, violations, and other incidents;
- Act as a technical advisor for a variety of ad-hoc information security projects as dictated by business and technology developments;
- Provide technical assistance in the selection, configuration, and maintenance of security devices and technologies;
- Monitor and analyze security logs to identify any anomalies within the company’s environment and activities within the network, systems, and applications;
- Issue, follow-up on, resolve or drive resolution of open security event tickets;
- Engage with cross-functional teams in the design and implementation of security projects and initiatives;
- Promote security awareness and adoption of security standards and practices to all staff members including vendors;
- Respond to and, where appropriate, resolve or escalate reported security incidents;
- Identify recurring problems and recommend proactive measures to eliminate them;
- Remain current on emerging security risks, trends, and technologies and share with the team.
- Bachelor Degree in Computer Science or Information Security;
- Relevant information security certifications preferred (i.e. CISSP, CISM, CISA, ISO27001);
- At least 5 years of professional experience in a similar role;
- Demonstrated knowledge of regulatory compliance requirements such as GDPR;
- Extensive network, system and application security experience;
- Excellent understanding of TCP/IP and network communications;
- Functional knowledge of web-based fintech technologies;
- Demonstrable knowledge and experience with SIEM, IPS/IDS, Security Architecture and Incident Response.
Apply