Job Description
Duties and Responsibilities
- Perform vulnerability and penetration tests on computer systems, networks, databases, and applications with appropriate and clear interpretation of issues and recommendations
- Identify vulnerabilities in upcoming applications and systems through careful research, engagement with vendors and internal IT Staff.
- Perform both Dynamic and Static Application Security Testing on new Applications, solutions and systems. Regression testing might also be needed
- Perform security assessments of systems, servers, and other network devices with a view to spot and identify existing and potential vulnerabilities.
- Pinpoints and documents methods and entry points that attacker may use to exploit vulnerabilities or weaknesses and providing control measures to block the gaps
- Search for weaknesses in common software, web applications and proprietary systems. Communicate and document same for continuous improvement program
- Research, evaluate, document, and discuss findings with IT teams and management. This will be communicated through trainings and knowledge sharing
- Establish improvements for existing security services, including hardware, software, policies, and procedures. Document and communicate such to IT Leadership.
- Identify areas where improvement is needed in security education and awareness for users around prevailing and current threats.
- Stay updated on the latest malware and other security threats
- Perform other duties as need arises
Job Requirements
Educational Qualification and Experience
- Candidate should possess an HND / B.Sc in Computer Science or in a related field.
- Minimum of Three years’ experience in similar role and organization
Certifications:
- CEH, GIAC, OSCP, CHFI, CISSP.
Competencies:
- Technical knowledge of Cyber Security Operations and solutions
- Communication (Good verbal and written) skills
- Knowledge of ethical hacking, network, web and perimeter hacking
- Strong research and reporting skills
- Hands on with Kali Linux suites, password cracking tools, session spoofing, DoS and other vulnerability and penetration tools
- IT Analytical skills
- Knowledge of Scripting, AD Audit, KQL etc.
- Strong technical knowledge of firewalls, routers, and servers