Awareness on information security measures such as acceptable use of information assets, malware protection, password security
Understand and report security risks and how they impact the confidentiality, integrity, and availability of information assets
Understand how data is stored, processed, or transmitted from a Data privacy and protection standpoint
Role and Responsibilities
Partner with leads and architects to create security solutions for proof of concepts, new integrations, and other technical service offerings
Exercise due care in increasing your knowledge of the security field, threat landscape, and security intelligence, moving proactively toward the prevention and detection of threats
Continuously monitor the client organization's networks and systems for potential threats and vulnerabilities; analyze and assess the severity of security incidents
Conduct regular vulnerability assessments and penetration testing to identify weaknesses and recommend remediation measures. Run daily, weekly, and monthly scans to assess systems risks and issues
Assist with incident response efforts, including containment, analysis, recovery, and post-incident reporting; follow proper incident response procedures
Ensure compliance with industry standards and regulations; stay up-to-date with evolving compliance requirements and maintain the organization's security posture
Contribute to developing, implementing, and enforcing security policies, standards, and procedures
Manage and maintain security tools and technologies, such as SIEM systems, IDS/IPS, and endpoint security.
Stay current with the latest cyber threats and vulnerabilities and leverage threat intelligence to enhance security
Prepare detailed reports on security incidents, vulnerabilities, and risk assessments
Maintain accurate documentation of security policies and procedures
Provide technical support and engage with clients on security incidents
Preferred Qualifications
CISM, CISSP, or CISA certification required; please do not apply if you do not posses one of these certifications
Bachelor's degree in Computer Science or a related technical field, or equivalent practical experience
6+ years of relevant industry experience in security
2+ years of Cloudflare administration and configuration for enterprise clients; Cloudflare ACE certification preferred
Experience in handling attack mitigation and thorough knowledge of various attacks (L3/4 and L7)
Skilled at working with modern internet protocols like UDP, TCP, etc.
Advanced understanding of iptables
Experienced in analyzing traffic for attack anomaly detection and creation of mitigation rules
Experience implementing security-related policies and procedures to support organizational scaling and growth projections
Expertise in computer networking fundamentals and command line/Bash shell