Perform effective threat and control assessments of services within our internal, external and cloud estate.
Liaise with Developers, Architects and other Technical Leads to understand the end to end service and identify where there are any control gaps.
Understand the Business requirements, evaluate potential products / solutions and provide technical recommendations.
Be "hands on" with technology and contribute to the design, development and the support of projects with security recommendations.
Identify threats across the IT estate; including applications, databases, network and other infrastructure components.
Engage with other Cybersecurity teams, senior management and members of the Business when confronted with potential security issues.
Contribute to process, procedures and tool identification/development.
Required skills:
Knowledge and exposure of Risk and Control Management
Ability to understand and assess both threats, controls and vulnerabilities, articulating these to both technical and business stakeholders
Desirable to have one or more industry-recognised cybersecurity-related certifications including CISSP, CRISC, CISM or Cloud Security Certifications
Proven experience in general security concepts and principles
Hands on experience with threat modelling and strong technical understanding and experience of assessing vulnerabilities and identifying weaknesses in diverse enterprise IT assets
Strong understanding of applications design and architecture
Knowledge of one or more of the Cloud Service Providers
Strong stakeholder management and communications skills
Ability to complete tasks independently to a high quality standard
We offer:
A full-time contract (B2B also possible)
Stable and long-term cooperation
Well-defined career path at the European leader in engineering & IT consulting
Participation in company conferences, trainings, workshops, integration meetings, etc.