Cyber Risk Specialist job at Tezza Business Solutions Ltd
Website :
1114 Days Ago
Linkedid Twitter Share on facebook

Vacancy title:
Cyber Risk Specialist

[ Type: FULL TIME , Industry: Information Technology , Category: Computer & IT ]

Jobs at:

Tezza Business Solutions Ltd

Deadline of this Job:
11 April 2022  

Duty Station:
Within Kenya , Nairobi , East Africa

Summary
Date Posted: Monday, March 28, 2022 , Base Salary: Not Disclosed

Similar Jobs in Kenya
Learn more about Tezza Business Solutions Ltd
Tezza Business Solutions Ltd jobs in Kenya

JOB DETAILS:
Cyber Risk Specialist
Reports to the Head of IT an Cyber risk

Job Responsibilities
• Set-up internal second line of defense red team lab to enable targeted testing of the group’s environment as well as effective follow up of vulnerability remediations.
• Manage the external red team exercise ensuring that noted risks are remediated and tracked.
• Review and propose updates to cyber risk management and information security frameworks and policies on an annual basis at a minimum.
• Enforce implementation of the cyber risk management and information security framework ensuring that key gaps and risks noted are well discussed, actioned and escalated.
• Support is ensuring the architecting and creation of secure solutions for the cloud that adhere to industry best practices through detailed risk assessments.
• Support the evaluation of security controls against the IaaS and PaaS offerings provided.
• Support the creation and management of a new security risk management process to approve and authorize new capabilities and monitor the output of the process.
• As part of targeted risk assessments, review network architecture and artifact configurations (Firewalls, Routers, Switches, IDS, IPS) and give practical recommendations.
• Support first line IT units in coming up with baselines for implementation and in accordance with best practices these include baselines for secure coding, custom scripts and programs.
• Support in other reviews that might be allocated from time to time.
• Present findings with clarity to management and get buy-in for implementation of controls.
• Have the capability to mine forensic data for investigative and forensic if called upon.

Key attributes
• Deliver with minimal supervision.
• Avid researcher of best practices and happenings in the global cyber space.
• Engage key stakeholders on actions required.
• Team player and contributor.
• Strong problem-solving, persuasive skills and an ability to grasp abstract concepts and complex technology situations to challenge the status quo and further develop and build on our IT Risk Management Framework.
• Excellent communication skill, both verbal and written, with the ability to initiate and lead conversations with technology and business leaders and risk colleagues regarding anticipated and emerging issues.

Education
• Bachelor of Science (Computer Science), IT, Software Engineering.
Certifications
• CEH (certified ethical hacker) *MUST
• CISSP (Certified Information Systems Security Professional) * Added advantage
• OSWP (Offensive Security Wireless Professional) *Added advantage
• OSEE (Open System Engineering Environment) *Added advantage
• OSCP (BEST) (Offensive Security Certified Professional) *Added advantage

Key skills
• Must have demonstrated skills in penetration testing and ethical hacking having carried out:
• Password guessing and cracking attacks.
• Session hijacking and spoofing attacks.
• Network traffic sniffing attacks.
• Denial of Service attacks.
• Exploiting buffer overflow vulnerabilities.
• Good understanding of networks and networking elements.
• Good understanding of web pages and it's technology.
• Expertise in Linux machine recommended Kali and parrot.
• Familiar with various operating systems and databases

Experience
• 5 years + experience in penetration testing on expansive environments.

Work Hours: 8


Experience in Months: 60

Level of Education:
Bachelor Degree

Job application procedure
Use the link(s) below to apply on company website.
• Cyber Risk Specialist 


All Jobs

QUICK ALERT SUBSCRIPTION

Job Info
Job Category: Computer/ IT jobs in Kenya
Job Type: Full-time
Deadline of this Job: 11 April 2022
Duty Station: Nairobi
Posted: 29-03-2022
No of Jobs: 1
Start Publishing: 29-03-2022
Stop Publishing (Put date of 2030): 29-03-2065
Apply Now
Notification Board

Join a Focused Community on job search to uncover both advertised and non-advertised jobs that you may not be aware of. A jobs WhatsApp Group Community can ensure that you know the opportunities happening around you and a jobs Facebook Group Community provides an opportunity to discuss with employers who need to fill urgent position. Click the links to join. You can view previously sent Email Alerts here incase you missed them and Subscribe so that you never miss out.

Caution: Never Pay Money in a Recruitment Process.

Some smart scams can trick you into paying for Psychometric Tests.