We are looking for an experienced Information Security Specialist with 3–4 years of relevant experience to join our team.
The ideal candidate will have a strong technical background in cybersecurity, solid knowledge of information security standards and frameworks, and an understanding of Cybersecurity Governance, Risk, and Compliance (GRC).
Key Responsibilities:
• Support the implementation and continuous improvement of information security controls.
• Support and participate in Security Operations Center (SOC) activities, including security monitoring, alert analysis, incident detection, investigation, escalation, and response.
• Analyze security events and alerts generated by SIEM, firewalls, and other security technologies.
• Support cybersecurity incident investigation, containment, remediation, and root-cause analysis.
• Conduct and support vulnerability assessments, vulnerability management, and remediation follow-up.
• Assist in maintaining and improving the organization’s Information Security Management System (ISMS).
• Support information security risk assessments and risk treatment activities.
• Contribute to the development and review of security policies, procedures, standards, and guidelines.
• Support internal/external security audits, compliance assessments, and remediation of findings.
• Collaborate with IT and business teams to ensure security requirements and controls are effectively implemented.
• Support cybersecurity governance, compliance monitoring, and security reporting activities.
What We’re Looking For:
• Bachelor’s degree in Cybersecurity, Information Security, Computer Science, IT, or a related field.
• 3–4 years of relevant experience in Information Security or Cybersecurity.
• Strong knowledge of Security Operations Center (SOC) processes and operations.
• Hands-on understanding of security monitoring, event and alert analysis, incident detection, incident response, and threat analysis.
• Good knowledge of cybersecurity technologies and concepts, including:
- SIEM and log monitoring
- Endpoint security
- Network security and firewalls
- Identity & Access Management (IAM)
- Vulnerability management
- Incident response
- System and application security
- Cyber threats, attack techniques, and Indicators of Compromise (IoCs)
- • Good knowledge of ISO/IEC 27001 and information security controls.
- • Familiarity with the NIST Cybersecurity Framework (NIST CSF) and other recognized cybersecurity frameworks and standards.
- • Good knowledge of Cybersecurity Governance, Risk Management, and Compliance (GRC).
- • Understanding of information security risk assessment and control implementation.
- • Strong analytical, problem-solving, documentation, and communication skills.
Preferred Qualifications:
Relevant certifications such as CompTIA Security+, CySA+, ISO 27001, CEH, SSCP, or equivalent cybersecurity certifications are considered an advantage.
We’re looking for someone who can bridge technical cybersecurity, SOC operations, and information security governance—with the ability to analyze security threats and incidents, evaluate security controls, and contribute to strengthening the organization’s overall cybersecurity posture.