19 Security Infrastructure jobs in South Africa
Divisional Head: Security Infrastructure and Incident Management
Posted 11 days ago
Job Viewed
Job Description
Divisional Head: Security Infrastructure and Incident Management
Location: Pretoria
Description
The main purpose of this position is to provide leadership and strategic direction for the Security Infrastructure and Incident Management Division, which includes the provision/oversight of the physical security systems, physical security infrastructure, and security liaison and response functions.
The successful candidate will be responsible for the following key performance areas:
- Oversee functions of the division (i.e. the provision/oversight of the physical security systems, physical security infrastructure, and security liaison and response functions).
- Provide input into the departmental strategy and policy in line with the South African Reserve Banks (SARB) strategy, and communicate and clarify the vision and strategic goals of the department to own team.
- Develop and implement policies for the division in support of the departmental strategy.
- Develop and implement the divisional operational plan to ensure strategic and operational objectives are achieved.
- Ensure compliance with policy, procedures and audit findings to mitigate risk in the division.
- Oversee the management of all personnel and resources allocated to the division.
- Create a performance culture in the division, define performance expectations and conduct effective performance management of direct reports.
- Oversee the divisional costs, ensuring alignment with related functions and the organisational value chain.
- Oversee and authorise the provision of management information for decision-making purposes.
- Oversee the provision of security systems management for the SARB Group to ensure that appropriate security infrastructure is utilised, and that adequate support and maintenance mechanisms are in place.
- Oversee the design, implementation and maintenance of security systems to ensure a secure operational environment.
- Oversee the SARB Groups capacity to manage and coordinate all incidents through the National Operations Centre (NOC).
- Oversee the provision of security services across the SARB Group in line with the service delivery model.
- Oversee the National Incident Management Centre and ensure that the SARB Group is able to adequately and appropriately detect, respond and recover from relevant incidents.
- Oversee physical assets and infrastructure design elements within a facility for security purposes unrelated to systems.
Job requirements
- Honours degree/Postgraduate Diploma (NQF8) in Computer Science, Information Technology or an equivalent qualification;
- a minimum of 10 years experience in a security and/or systems management environment with at least five years in a senior management position; and sound knowledge and experience in areas such as incident management, infrastructure management, security systems management and stakeholder engagement.
The following would be an added advantage:
- Successfully completed a Senior Management Development Programme.
- Additional requirements include:
- leading change;
- strategic thinking;
- building and maintaining trust;
- developing and empowering others;
- fostering diversity and inclusion;
- leading teams through effective communication and collaboration;
- managing complexity and ambiguity;
- building and maintaining relationships;
- a drive for results; and
- Sound judgement and decision-making skills.
Security Architecture and Engineering Manager
Posted today
Job Viewed
Job Description
We are seeking a hands on, skilled and detail-oriented Security Leader to spear head our Architect and Engineering department with expertise in Microsoft technologies to join a rapidly expanding global team of security experts that provides services to protect our business. This role will report into the Head of Information Security and will work closely across all IT Teams and business units.
In this role, you will be responsible for leading, designing, implementing, managing, and optimizing security solutions to protect our IT infrastructure, technology assets, cloud environments, and applications. The ideal candidate will have hands-on experience with Microsoft security tools and technologies, such as Azure, Microsoft 365, Microsoft Purview and Microsoft Defender, and will play a critical role in safeguarding our digital assets.
Leadership and Team Management
- Lead and mentor a team of Security Engineers and Architects focused on, designing and implementing secure controls across Microsoft technologies, such as Microsoft 365, Microsoft Defender, Azure Security Centre, and Microsoft Sentinel.
- Establish team goals, manage performance, and provide regular feedback to ensure the success of security operations.
- Foster a culture of continuous improvement and professional development within the team.
Cloud Security Strategy
- Responsible for the cloud security strategy for our Azure-based solutions, leveraging Azure Security Centre, Azure Active Directory, and other Azure-native security tools to secure infrastructure and applications.
- Design security controls in Azure to protect resources, networks, data, and identities.
- Oversee the integration of security practices in cloud migration strategies and help guide the secure adoption of cloud technologies.
Security Solution Implementation
- Implement, configure, and manage security solutions in Microsoft environments, including Azure, Microsoft 365, Microsoft Defender, Microsoft Purview and other Microsoft security tools.
- Ensure the secure deployment and configuration of Microsoft cloud resources, applications, and services, adhering to security best practices and company policies.
- Set up and maintain security controls such as firewalls including WAFs, VPNs, and endpoint protection across all environments.
Identity and Access Management (IAM)
- Responsible for Architecting and implementing advanced identity and access management (IAM) solutions using Microsoft technologies such as Azure Active Directory/EntraID, Azure AD B2B/B2C, and Microsoft Identity Platform.
- Design and enforce least privilege access principles, multi-factor authentication (MFA), conditional access policies, and role-based access control (RBAC) across all Microsoft service.
Vulnerability Management and Risk Assessment
- Responsible for security assessments and risk analysis for new Microsoft technologies, AI, cloud services and digital products.
- Regularly assess and monitor Microsoft systems and services for vulnerabilities and security gaps, using tools like Microsoft Defender for Endpoint and Azure Security Centre.
Security Automation and Optimisation
- Responsible for an Automation Strategy for security processes and tasks using PowerShell, Azure CLI, and other tools to improve efficiency and response times.
- Optimise security configurations across Microsoft environments to ensure best practices and consistent application of security controls.
- Continuously review and improve existing security processes, tools, and policies.
Compliance and Reporting
- Ensure Microsoft-based systems meet regulatory requirements (e.g., GDPR), internal security standards (ISO 27001/2, SOC) and policies.
- Assist in security audits and assessments, providing the necessary documentation and evidence to support compliance initiatives.
- Generate regular security reports, dashboards, project status and metrics using Microsoft security tools.
Collaboration and Effective Communication
- Work closely with IT, system administrators, and other security teams to coordinate incident response efforts, identify vulnerabilities, and implement mitigation strategies across the Microsoft technology stack.
- Communicate and conduct regularly presentations at a senior leadership level.
- Ensure that the IT Security documentation is maintained and updated regularly as required
- Provide guidance and support to internal teams regarding Microsoft security best practices, threat mitigation and security by design
- Participate in security projects, including cloud migration efforts, that involve Microsoft technologies, ensuring security is a top priority
- Provide input to the monthly IT Security report.
Essential
- 5+ years of experience in a security engineering/architecture or cybersecurity leadership role, with a strong focus on Microsoft environments such as Microsoft 365, Azure, Microsoft Purview, and related Microsoft security products.
- Proven track record in leading security engineering/architecture teams, managing risk, design and build security principles for products (e.g. Microsoft 365, Microsoft Azure, CoPilot, Microsoft Defender, Microsoft Sentinel).
- Experience of working in a diverse Global Company;
- Understanding of key network and infrastructure security solutions such as firewalls, SD-WAN, WAF, DDoS protection IPS, Web Proxy, etc.
- Excellent knowledge of security solutions and technologies including Network Firewalls, proxy technologies, EDR, SIEM (Sentinel);
- Understanding of SASE solutions and cloud-based service delivery of traditional security controls (e.g. content filtering, firewall)
- Knowledge of Intrusion detection/prevention systems (IDS/IPS/WAF) and vulnerability assessment tools (Nessus/Tenable.io/Qualys);
- Excellent knowledge of different threat scenarios, incident response and remediation techniques;
- Hands on experience of applying security by design across a Microsoft eco system.
- Knowledge of security technologies (encryption, data protection, permissions, privilege access etc.);
- Knowledge of applying CIS benchmark policies in Azure & O365;
- Experience with Security frameworks, ISO 27001, Cyber Essentials, NIST, PCI;
- Good working knowledge of Active Directory services, including reporting and auditing of Active Directory objects;
- Skilled in using scripting tools (PowerShell, MS CLI & VBS).
- Understand Incident Response, Cyber Kill Chain, Threat Modelling and pertinent Attack Vectors;
- Desirable qualifications, Microsoft Certified: Azure Security Engineer or Architect Associate, Microsoft Certified: Security, Compliance, and Identity Fundamentals, Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), CompTIA Security+, Certified Cloud Security Professional (CCSP) or other similar security certifications or demonstratable experience.
- Good communication (English Writing, Reading and Speaking) skills and ability to articulate subjects clearly.
- Proven analytical and problem-solving skills;
- Strong documentation skills;
- Organised, methodical and self-motivated;
- Keeping abreast of industry trends and security technologies.
- Takes the initiative to proactively resolve issues within own remit and recognises when escalation is required;
- Uses own knowledge and experience to make sounds judgements or assist others with sound judgements;
- Considers the regional and global implications of what we do in our own areas of responsibility;
- Identifies and builds relationships across team and region;
- Understands need to work within project scope, including price;
- Shows understanding of others in order to influence as appropriate.
Security Architecture and Engineering Manager
Posted today
Job Viewed
Job Description
We are seeking a hands on, skilled and detail-oriented Security Leader to spear head our Architect and Engineering department with expertise in Microsoft technologies to join a rapidly expanding global team of security experts that provides services to protect our business. This role will report into the Head of Information Security and will work closely across all IT Teams and business units.
In this role, you will be responsible for leading, designing, implementing, managing, and optimizing security solutions to protect our IT infrastructure, technology assets, cloud environments, and applications. The ideal candidate will have hands-on experience with Microsoft security tools and technologies, such as Azure, Microsoft 365, Microsoft Purview and Microsoft Defender, and will play a critical role in safeguarding our digital assets.
Leadership and Team Management
- Lead and mentor a team of Security Engineers and Architects focused on, designing and implementing secure controls across Microsoft technologies, such as Microsoft 365, Microsoft Defender, Azure Security Centre, and Microsoft Sentinel.
- Establish team goals, manage performance, and provide regular feedback to ensure the success of security operations.
- Foster a culture of continuous improvement and professional development within the team.
Cloud Security Strategy
- Responsible for the cloud security strategy for our Azure-based solutions, leveraging Azure Security Centre, Azure Active Directory, and other Azure-native security tools to secure infrastructure and applications.
- Design security controls in Azure to protect resources, networks, data, and identities.
- Oversee the integration of security practices in cloud migration strategies and help guide the secure adoption of cloud technologies.
Security Solution Implementation
- Implement, configure, and manage security solutions in Microsoft environments, including Azure, Microsoft 365, Microsoft Defender, Microsoft Purview and other Microsoft security tools.
- Ensure the secure deployment and configuration of Microsoft cloud resources, applications, and services, adhering to security best practices and company policies.
- Set up and maintain security controls such as firewalls including WAFs, VPNs, and endpoint protection across all environments.
Identity and Access Management (IAM)
- Responsible for Architecting and implementing advanced identity and access management (IAM) solutions using Microsoft technologies such as Azure Active Directory/EntraID, Azure AD B2B/B2C, and Microsoft Identity Platform.
- Design and enforce least privilege access principles, multi-factor authentication (MFA), conditional access policies, and role-based access control (RBAC) across all Microsoft service.
Vulnerability Management and Risk Assessment
- Responsible for security assessments and risk analysis for new Microsoft technologies, AI, cloud services and digital products.
- Regularly assess and monitor Microsoft systems and services for vulnerabilities and security gaps, using tools like Microsoft Defender for Endpoint and Azure Security Centre.
Security Automation and Optimisation
- Responsible for an Automation Strategy for security processes and tasks using PowerShell, Azure CLI, and other tools to improve efficiency and response times.
- Optimise security configurations across Microsoft environments to ensure best practices and consistent application of security controls.
- Continuously review and improve existing security processes, tools, and policies.
Compliance and Reporting
- Ensure Microsoft-based systems meet regulatory requirements (e.g., GDPR), internal security standards (ISO 27001/2, SOC) and policies.
- Assist in security audits and assessments, providing the necessary documentation and evidence to support compliance initiatives.
- Generate regular security reports, dashboards, project status and metrics using Microsoft security tools.
Collaboration and Effective Communication
- Work closely with IT, system administrators, and other security teams to coordinate incident response efforts, identify vulnerabilities, and implement mitigation strategies across the Microsoft technology stack.
- Communicate and conduct regularly presentations at a senior leadership level.
- Ensure that the IT Security documentation is maintained and updated regularly as required
- Provide guidance and support to internal teams regarding Microsoft security best practices, threat mitigation and security by design
- Participate in security projects, including cloud migration efforts, that involve Microsoft technologies, ensuring security is a top priority
- Provide input to the monthly IT Security report.
Essential
- 5+ years of experience in a security engineering/architecture or cybersecurity leadership role, with a strong focus on Microsoft environments such as Microsoft 365, Azure, Microsoft Purview, and related Microsoft security products.
- Proven track record in leading security engineering/architecture teams, managing risk, design and build security principles for products (e.g. Microsoft 365, Microsoft Azure, CoPilot, Microsoft Defender, Microsoft Sentinel).
- Experience of working in a diverse Global Company;
- Understanding of key network and infrastructure security solutions such as firewalls, SD-WAN, WAF, DDoS protection IPS, Web Proxy, etc.
- Excellent knowledge of security solutions and technologies including Network Firewalls, proxy technologies, EDR, SIEM (Sentinel);
- Understanding of SASE solutions and cloud-based service delivery of traditional security controls (e.g. content filtering, firewall)
- Knowledge of Intrusion detection/prevention systems (IDS/IPS/WAF) and vulnerability assessment tools (Nessus/Tenable.io/Qualys);
- Excellent knowledge of different threat scenarios, incident response and remediation techniques;
- Hands on experience of applying security by design across a Microsoft eco system.
- Knowledge of security technologies (encryption, data protection, permissions, privilege access etc.);
- Knowledge of applying CIS benchmark policies in Azure & O365;
- Experience with Security frameworks, ISO 27001, Cyber Essentials, NIST, PCI;
- Good working knowledge of Active Directory services, including reporting and auditing of Active Directory objects;
- Skilled in using scripting tools (PowerShell, MS CLI & VBS).
- Understand Incident Response, Cyber Kill Chain, Threat Modelling and pertinent Attack Vectors;
- Desirable qualifications, Microsoft Certified: Azure Security Engineer or Architect Associate, Microsoft Certified: Security, Compliance, and Identity Fundamentals, Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), CompTIA Security+, Certified Cloud Security Professional (CCSP) or other similar security certifications or demonstratable experience.
- Good communication (English Writing, Reading and Speaking) skills and ability to articulate subjects clearly.
- Proven analytical and problem-solving skills;
- Strong documentation skills;
- Organised, methodical and self-motivated;
- Keeping abreast of industry trends and security technologies.
- Takes the initiative to proactively resolve issues within own remit and recognises when escalation is required;
- Uses own knowledge and experience to make sounds judgements or assist others with sound judgements;
- Considers the regional and global implications of what we do in our own areas of responsibility;
- Identifies and builds relationships across team and region;
- Understands need to work within project scope, including price;
- Shows understanding of others in order to influence as appropriate.
Infrastructure and Security Manager
Posted today
Job Viewed
Job Description
Centurion, South Africa | Posted on 06/11/2025
We are a dynamic multinational technology organisation committed to innovation, security, and excellence. As a leader in our industry, we are seeking a high performance driven individual to manage our Cybersecurity and Infrastructure. This role offers an exciting opportunity to drive the protection of our assets, manage our digital infrastructure, and lead our cybersecurity initiatives.
Main Duties
- Day-to-Day Operations: Implementing and overseeing strategies to assess and mitigate risk, safeguarding the corporation and its assets, and crisis management.
- Security: Developing, implementing, and maintaining security processes and policies, identifying and reducing risks, and limiting liability and exposure to informational, physical, and financial risks.
- Compliance: Working with a legal/compliance team, or being independently responsible for ensuring the company complies with local, national, and global regulations, especially in areas like privacy.
- Innovation: Conducting research and executing security management solutions to help keep the organization safe.
- Head the procurement of all infrastructure including hardware, software, network and related, including security services comparison NSOC, SIEM, Anti virus, Malware and related.
- Manage the cyber awareness training across the enterprise, with continued testing of the application of these knowledge areas using various methodologies and tools
- Establish and Maintain a Knowledge Management system on infrastructure and security related incidents, using this to drive resiliency of security framework and internal training.
- Managing the SLA of Third Party Service providers, ensuring that they perform within agreed contractual obligations.
- Managing and maintaining the organisations Firewall.
- Analyze, plan, manage, implement, maintain, schedule, and monitor the Digital Infrastructure Across All African operating entities
- Actively participate in the design of new and maintenance of system architecture with regard to security related considerations, inline with best practise.
- Perform server administration tasks, including user/group administration, security permissions, group policies, print services, research event log warnings and errors, and resource monitoring, ensuring system architecture components work together seamlessly
- Monitor cloud health (specifically AWS, but also GCP) using preexisting management tools and respond to issues as they arise; help build, test, and maintain new servers as needed
- Maintain internal infrastructure requirements including, servers, routers, switches, firewalls, printers, phones, security updates; support internet, intranet, LANs, WANs, VPNs and network segments
- Interact with the help desk, development team and other teams to assist in troubleshooting, identify root cause, and provide technical support when needed
- Perform routine/scheduled audits of the systems, including all backups
- New security threats pop up all the time, and IT security professionals need to stay up to date with the latest tactics hackers are employing in the field. In addition to the high-level responsibilities mentioned above, some specific duties IT security teams do, include:
- Set and implement user access controls and identity and access management systems
- Monitor network and application performance to identify and irregular activity
- Perform regular audits to ensure security practices are compliant
- Deploy endpoint detection and prevention tools to thwart malicious hacks
- Set up patch management systems to update applications automatically
- Implement comprehensive vulnerability management systems across all assets on-premises and in the cloud
- Work with IT operations to set up a shared disaster recovery/business continuity plan
- Work with HR and/or team leads to educate employees on how to identify suspicious activity
- Ad hoc duties as required from time to time
- Matric
- AWS System Administration & Cloud Certification required, with expert knowledge on administering Kubernetes Clusters.
- Bachelor's degree in Computer Science, Information Technology Advantageous
- Information Security and /or Information Technology industry certification (CISSP-ISSAP, CISM, ISO 27001 Lead Auditor, GIAC or equivalent) strongly preferred
- Experience is configuring firewalls (Fortigate or similar)
- 7-9 years of network administration, or system administration experience, with security as a portfolio
- System administration and IT certifications in Linux, Microsoft, or other network-related fields are a plus
- Working knowledge of virtualization, VMWare, or equivalent
- Cloud exposure, with a focus on AWS and networking security such as VPCs
- Strong knowledge of systems and networking software, hardware, and networking protocols
- Strong VPN experience across various hardware and software implementations such as OpenVPN
- Experience with scripting and automation tools
- A proven track record of developing and implementing IT strategy and plans
- Strong knowledge of implementing and effectively developing helpdesk and IT operations best practices, including expert knowledge of security, storage, data protection, and disaster recovery protocols
- We find a way
- We change the game
- We help each other thrive
#J-18808-Ljbffr
Infrastructure and Security Manager
Posted today
Job Viewed
Job Description
Infrastructure and Security Manager
Posted today
Job Viewed
Job Description
Centurion, South Africa | Posted on 06/11/2025
We are a dynamic multinational technology organisation committed to innovation, security, and excellence. As a leader in our industry, we are seeking a high performance driven individual to manage our Cybersecurity and Infrastructure. This role offers an exciting opportunity to drive the protection of our assets, manage our digital infrastructure, and lead our cybersecurity initiatives.
Main Duties
- Day-to-Day Operations: Implementing and overseeing strategies to assess and mitigate risk, safeguarding the corporation and its assets, and crisis management.
- Security: Developing, implementing, and maintaining security processes and policies, identifying and reducing risks, and limiting liability and exposure to informational, physical, and financial risks.
- Compliance: Working with a legal/compliance team, or being independently responsible for ensuring the company complies with local, national, and global regulations, especially in areas like privacy.
- Innovation: Conducting research and executing security management solutions to help keep the organization safe.
- Head the procurement of all infrastructure including hardware, software, network and related, including security services comparison NSOC, SIEM, Anti virus, Malware and related.
- Manage the cyber awareness training across the enterprise, with continued testing of the application of these knowledge areas using various methodologies and tools
- Establish and Maintain a Knowledge Management system on infrastructure and security related incidents, using this to drive resiliency of security framework and internal training.
- Managing the SLA of Third Party Service providers, ensuring that they perform within agreed contractual obligations.
- Managing and maintaining the organisations Firewall.
- Analyze, plan, manage, implement, maintain, schedule, and monitor the Digital Infrastructure Across All African operating entities
- Actively participate in the design of new and maintenance of system architecture with regard to security related considerations, inline with best practise.
- Perform server administration tasks, including user/group administration, security permissions, group policies, print services, research event log warnings and errors, and resource monitoring, ensuring system architecture components work together seamlessly
- Monitor cloud health (specifically AWS, but also GCP) using preexisting management tools and respond to issues as they arise; help build, test, and maintain new servers as needed
- Maintain internal infrastructure requirements including, servers, routers, switches, firewalls, printers, phones, security updates; support internet, intranet, LANs, WANs, VPNs and network segments
- Interact with the help desk, development team and other teams to assist in troubleshooting, identify root cause, and provide technical support when needed
- Perform routine/scheduled audits of the systems, including all backups
- New security threats pop up all the time, and IT security professionals need to stay up to date with the latest tactics hackers are employing in the field. In addition to the high-level responsibilities mentioned above, some specific duties IT security teams do, include:
- Set and implement user access controls and identity and access management systems
- Monitor network and application performance to identify and irregular activity
- Perform regular audits to ensure security practices are compliant
- Deploy endpoint detection and prevention tools to thwart malicious hacks
- Set up patch management systems to update applications automatically
- Implement comprehensive vulnerability management systems across all assets on-premises and in the cloud
- Work with IT operations to set up a shared disaster recovery/business continuity plan
- Work with HR and/or team leads to educate employees on how to identify suspicious activity
- Ad hoc duties as required from time to time
- Matric
- AWS System Administration & Cloud Certification required, with expert knowledge on administering Kubernetes Clusters.
- Bachelor's degree in Computer Science, Information Technology Advantageous
- Information Security and /or Information Technology industry certification (CISSP-ISSAP, CISM, ISO 27001 Lead Auditor, GIAC or equivalent) strongly preferred
- Experience is configuring firewalls (Fortigate or similar)
- 7-9 years of network administration, or system administration experience, with security as a portfolio
- System administration and IT certifications in Linux, Microsoft, or other network-related fields are a plus
- Working knowledge of virtualization, VMWare, or equivalent
- Cloud exposure, with a focus on AWS and networking security such as VPCs
- Strong knowledge of systems and networking software, hardware, and networking protocols
- Strong VPN experience across various hardware and software implementations such as OpenVPN
- Experience with scripting and automation tools
- A proven track record of developing and implementing IT strategy and plans
- Strong knowledge of implementing and effectively developing helpdesk and IT operations best practices, including expert knowledge of security, storage, data protection, and disaster recovery protocols
- We find a way
- We change the game
- We help each other thrive
#J-18808-Ljbffr
Network & Security Engineer
Posted today
Job Viewed
Job Description
At GBS Holdings, we're committed to building secure, scalable, and high-performance IT infrastructure that supports our diverse business operations. We're looking for a skilled Network and Security Engineer to join our dynamic team. In this role, you'll be responsible for designing, implementing, and managing robust network systems while ensuring the highest standards of security and reliability. If you're passionate about technology and thrive in a collaborative environment, we want to hear from you.
Key Responsibilities:
- Design, implement, and maintain secure network architectures (LAN, WAN, VPN)
- Configure and manage routing, switching, and wireless infrastructure
- Manage and secure FortiGate firewalls and related network security systems
- Provide 3rd line technical support for complex networking and security issues
- Ensure high availability (99.8% uptime) and proactive system maintenance
- Monitor network performance and conduct vulnerability assessments
- Maintain accurate documentation including network diagrams and configuration standards
- Support and maintain Windows Server 2016/2019 and Exchange hybrid environments
- Administer Office 365 and Microsoft Azure environments
- Implement and manage Veeam Backup & Replication for disaster recovery
- Support external SFTP environments and domain/DNS management
- Support endpoint security via Kaspersky Security Centre
Minimum Qualifications and Experience:
- Matric (Required)
- Diploma or Bachelor’s Degree in Information Technology or related field
- CCNA certification (Required)
- FortiGate certification (Advantageous)
- Must have a minimum of 5+ years as a network and security engineer
- Strong experience with routing, switching, FortiGate firewalls, and security best practices
- Background in cybersecurity and infrastructure management
- Good understanding of Microsoft technologies and cloud platforms (Azure, O365)
Behavioural & Competency Skills:
- Excellent communication and interpersonal skills
- Strong analytical and problem-solving abilities
- Able to work independently and collaboratively
- Task-oriented with a focus on timely, high-quality delivery
- Process-driven with attention to detail
Be The First To Know
About the latest Security infrastructure Jobs in South Africa !
Network Security Engineer
Posted 9 days ago
Job Viewed
Job Description
Bachelors degree /Diploma or equivalent experience
3+ years of IT experience
1+ years of hands-on web application penetration testing / ethical hacking experience
The Purpose of Your Role
Lead testing efforts on web and mobile applications and supporting systems.
Replicate the actual techniques and tools used by malicious attackers in an effort to model potential external threats.
Upon completion of the assessment, you will prepare reports and present the results to application owners, developers, and business unit information security teams.
Analyse test results, draw conclusions from results, and develop targeted exploit examples.
Consult with operations and software - development teams to ensure potential weaknesses are addressed.
Contribute to the research or development of tools to assist in the vulnerability discovery process.
Identify threats to improve the overall security of applications and infrastructure.
Recommend solutions to help migitate risks and protect entire network i.e. Architect security solution
Skills:
Ability to demonstrate manual testing experience including all of OWASP
Working knowledge of application security mechanisms such as authentication and authorization techniques, data validation, and the proper use of encryption
Technical knowledge of, and the ability to recognize, various types of application security vulnerabilities
Demonstrated experience with common penetration testing and vulnerability assessment tools such as nmap, Wireshark, Nessus, NeXpose, Kali, Metasploit, AppScan, WebInspect, Burp Suite Professional, Acunetix, Arachni, w3af, NTOSpider
Knowledge of a programming or scripting language such a C, C#, Python, Objective C, Java, Javascript, SQL,
Knowledge of Web Services technologies such as XML, JSON, SOAP, REST, and AJAX
Knowledge of web frameworks, including XML, SOAP, J2EE, JSON and Ajax
Experience with Enterprise Java or .NET web application frameworks, including Struts and Spring
Proven analytical and problem solving skills, as well as the desire to assist others in solving issues
Excellent interpersonal skills with a strong interest in the application security domain
Excellent communication and presentation skills and a proven ability to communicate threats and facilitate progress towards long-term remediation
Highly motivated with the willingness to take ownership / responsibility for their work and the ability to work alone or as part of a team.
Ability to produce high level reports
Preferred Skills and competencies:
A+, N+, S+, CCNA
Vulnerability Scanning
Vulnerability Assessment
Valid Certified Ethical Hacker Certificate
Certified Penetration Testing Professional/ OR CISA/CISM/SISSP AND CISSP certification.
NB! CV FORMAT MUST BE PDF
Network Security Engineer
Posted 15 days ago
Job Viewed
Job Description
br>3+ years of IT experience
1+ years of hands-on web application penetration testing / ethical hacking experience
The Purpose of Your Role
Lead testing efforts on web and mobile applications and supporting systems.
Replicate the actual techniques and tools used by malicious attackers in an effort to model potential external threats.
Upon completion of the assessment, you will prepare reports and present the results to application owners, developers, and business unit information security teams.
Analyse test results, draw conclusions from results, and develop targeted exploit examples.
Consult with operations and software - development teams to ensure potential weaknesses are addressed.
Contribute to the research or development of tools to assist in the vulnerability discovery process.
Identify threats to improve the overall security of applications and infrastructure.
Recommend solutions to help migitate risks and protect entire network i.e. Architect security solution
Skills:
Ability to demonstrate manual testing experience including all of OWASP
Working knowledge of application security mechanisms such as authentication and authorization techniques, data validation, and the proper use of encryption
Technical knowledge of, and the ability to recognize, various types of application security vulnerabilities
Demonstrated experience with common penetration testing and vulnerability assessment tools such as nmap, Wireshark, Nessus, NeXpose, Kali, Metasploit, AppScan, WebInspect, Burp Suite Professional, Acunetix, Arachni, w3af, NTOSpider
Knowledge of a programming or scripting language such a C, C#, Python, Objective C, Java, Javascript, SQL,
Knowledge of Web Services technologies such as XML, JSON, SOAP, REST, and AJAX
Knowledge of web frameworks, including XML, SOAP, J2EE, JSON and Ajax
Experience with Enterprise Java or .NET web application frameworks, including Struts and Spring
Proven analytical and problem solving skills, as well as the desire to assist others in solving issues
Excellent interpersonal skills with a strong interest in the application security domain
Excellent communication and presentation skills and a proven ability to communicate threats and facilitate progress towards long-term remediation
Highly motivated with the willingness to take ownership / responsibility for their work and the ability to work alone or as part of a team.
Ability to produce high level reports
Preferred Skills and competencies:
A+, N+, S+, CCNA
Vulnerability Scanning
Vulnerability Assessment
Valid Certified Ethical Hacker Certificate
Certified Penetration Testing Professional/ OR CISA/CISM/SISSP AND CISSP certification.
NB! CV FORMAT MUST BE PDF
Network & Security Engineer
Posted today
Job Viewed