Information Security Engineer

Permanent - Midrand
Qualifications & Experience 
• Bachelor’s Degree in IT, Computer Science, Information Security, or a related field.
• CISSP, CISM, or equivalent senior-level cybersecurity certification.
• Microsoft Certified: Cybersecurity Architect Expert and/or relevant Microsoft SC-series certifications.
• 7+ years’ experience in cybersecurity or information security engineering, including 3+ years in a senior/lead capacity.
• Strong experience across on-premises, cloud and SaaS security environments, particularly Azure and Microsoft 365.
• Expert-level knowledge of SIEM, EDR, firewalls, WAF, DLP and vulnerability management solutions.
• Hands-on experience with firewall configuration, WAF deployment and security reporting.
• Proven experience leading incident response, threat hunting, security architecture and security engineering projects.
• Advanced knowledge of Identity & Access Management, Microsoft Entra ID, privileged access management and Zero Trust.
• Strong scripting and automation experience using PowerShell and Python.
• Experience with security frameworks and regulatory requirements, including ISO 27001, NIST CSF, CIS, POPIA, GDPR and FSCA.
• Experience designing and implementing information security awareness programmes.
• Experience with Hillstone, NGINX, Microsoft Intune, Microsoft Purview and SIEM solutions would be advantageous.
Responsibilities
• Design, implement and maintain advanced security controls across on-premises, cloud and SaaS environments.
• Define and maintain security architecture standards and assess new technology integrations.
• Lead application security assessments and promote secure development lifecycle practices.
• Configure, manage and optimise enterprise firewalls and WAF solutions.
• Oversee security technologies including SIEM, EDR, DLP, web servers and vulnerability management platforms.
• Develop security automation strategies for threat detection, response and ITSM integration.
• Establish security operational procedures and playbooks while mentoring junior team members.
• Manage relationships, SLAs and performance metrics with outsourced SOC providers.
• Lead major security incident investigations, forensic analysis and root-cause investigations.
• Act as the escalation point for critical security incidents and coordinate cross-functional responses.
• Drive proactive threat hunting and advanced security analytics.
• Develop and manage vulnerability and patch management strategies.
• Provide executive-level reporting on security risks, vulnerabilities and remediation progress.
• Architect and enforce identity governance using Microsoft Entra ID and implement Zero Trust and privileged access management principles.
• Develop and deliver cybersecurity awareness programmes, campaigns and educational content.
• Ensure security alignment with relevant regulatory, compliance and industry frameworks.
• Lead technical audits, penetration testing and red/blue team exercises.
• Develop security metrics, risk dashboards and executive/board-level reports.
• Analyse threat intelligence and security trends and recommend improvements to the organisation’s security posture.
• Maintain detailed documentation and reporting relating to firewall and WAF configurations, changes and performance.
Competency
• Strong information security and cybersecurity expertise.
• Excellent analytical, problem-solving and troubleshooting skills.
• Strong understanding of security architecture, risk management and threat management.
• Excellent communication skills, with the ability to engage with both technical and executive audiences.
• Strong leadership, mentoring and team-development capabilities.
• Excellent organisational, documentation and reporting skills.
• Ability to analyse data, identify trends and translate findings into actionable recommendations.
• Strong ITSM and Microsoft Office proficiency.
• Ability to manage multiple priorities and work effectively in a fast-paced environment.
• Strong stakeholder and customer service orientation.
• Highly ethical, resilient and security-conscious.
• Results and achievement orientated.
• Collaborative team player with a positive and motivated attitude.
• Commitment to continuous improvement and staying current with evolving cybersecurity threats and technologies.
    © 2024 Rough Diamonds Studio. All rights reserved.