A cybersecurity specialist who designs and delivers 'Secure by Design' security solutions for clients — running risk assessments, security architecture reviews, audits and product POCs, and coordinating project delivery with customers, vendors and partners. Core focus areas include enterprise security (endpoint, network, IAM, DLP), security governance and CISSP-level expertise.
This is a Cyber Security role focused on designing, implementing, and delivering security requirements with a "Secure by Design" principle. You will conduct risk identification, risk analysis, and risk evaluation, while staying up-to-date with the current threat landscape and cybersecurity events. The role involves communicating across internal divisions, customers, vendors and partners, and delivering projects by coordinating with team members to meet deliverables and milestones.
Key responsibilities
Design, implement, and deliver security requirements with a "Secure by Design" principle
Conduct risk identification, risk analysis, and risk evaluation
Stay up-to-date with current threat landscape and cybersecurity events, and continuously improve knowledge in tools and best practices
Communicate across internal divisions, customers, vendors and partners
Write technical proposals and communicate and present solutions
Deliver projects by coordinating with project team members to complete deliverables and milestones
Review security architectures and designs to ensure adoption of security practices, baselines and standards
Conduct and perform various security tests, reviews and audits
Articulate clearly on cybersecurity risks and mitigation measures to stakeholders
Evaluate security products and conduct Proof of Concept (POC) to verify effectiveness of security measures
About you
Degree in Cyber Security, Computer Science or related field
At least 2 – 3 years of working experience in cyber security consultancy with relevant experience on security governance, design and architecture
Attained Cyber Security professional qualification (eg. CISSP or equivalent)
Experienced in turn-key development, implementation and maintenance of large-scale, multi-platform, multi-vendor systems in the IT and engineering domain
Familiar with enterprise security solutions, such as Endpoint Security, Identity & Access Control solutions, Network Security, Analytics solutions, Data Loss Prevention or Vulnerability and Compliance
Familiar with the conduct of a typical project lifecycle in terms of the various milestones and deliverables
Sound understanding of network and server infrastructure
Good presentation skills, communication, negotiation, interpersonal skills and customer service orientation
Hands on, self-directed executive who plans, prepares and executes professionally along with management of tight deadlines
Ability to provide guidance and consultancy to stakeholders to remediate security risks or recommend risk mitigations