Overview
This Information Security Officer will ensure the confidentiality, integrity, and availability of organizational information assets. The officer will maintain and enhance a comprehensive information security program, monitor for potential threats, and implement proactive security measures. The role involves collaborating with multiple departments to foster a security‑conscious culture, assess and mitigate risks, and respond effectively to security incidents. The position provides the opportunity to work in a dynamic, high‑growth technology environment, contributing to the protection of critical systems and data.
Accountabilities
- Operate and continuously improve the information security program in accordance with company policies, standards, and procedures.
- Monitor and analyze security alerts, system logs, and events using advanced SIEM tools, escalating incidents as appropriate.
- Conduct detailed forensic investigations during security events and document findings and lessons learned.
- Support the vulnerability management program, validate scan results, prioritize critical issues, and assist in remediation planning and execution.
- Implement security configurations and mitigations to enforce compliance with security policies and standards.
- Collaborate with technology teams to enforce secure baselines for network devices, operating systems, cloud environments, and applications.
- Develop improvements and automation workflows for security monitoring and incident response processes.
- Communicate security risks, incidents, and mitigation strategies clearly to both technical and non‑technical stakeholders.
Requirements
- Minimum of 5 years of experience in information security or a related field.
- Relevant IT, Computer Engineering degree, diploma, or equivalent experience.
- Strong expertise in SIEM technologies, log analysis, threat detection, and incident response.
- Knowledge of security frameworks such as NIST Cybersecurity Framework, SOC 2, and compliance/regulatory requirements.
- Proficiency with security control areas including IPS/IDS, penetration testing, patch management, system/network hardening, data loss prevention, and multi‑factor authentication.
- Experience with modern security solutions: EDR, WAF, JWT, and application control.
- Excellent written and verbal communication skills with strong collaboration and interpersonal abilities.
Assets / Preferred Qualifications
- Security certifications such as CEH, OSCP, SSCP.
- Experience with Splunk Enterprise Security and advanced SPL queries for alerting, dashboards, and reporting.
- Knowledge of Microsoft Azure Defender for Cloud, IAM, and Azure monitoring/analytics.
- Experience applying NIST Cybersecurity Framework 2.0 principles.
Benefits
- Competitive base salary with variable bonus structure.
- Full‑time, permanent employment with comprehensive benefits package.
- Opportunity to work in a dynamic, high‑growth technology environment.
- Collaborative, security‑focused culture fostering professional growth.
- Exposure to modern cybersecurity tools, cloud security, and threat intelligence practices.
- Work remotely with no travel requirements.
Legal Statement
By submitting an application to this posting, the applicant acknowledges that Jobgether will process their personal data as necessary to evaluate their candidacy, provide feedback, and, when appropriate, share relevant information with potential employers. Such processing is carried out on the basis of legitimate interest and pre‑contractual measures in accordance with applicable data protection laws. The applicant may exercise their rights of access, rectification, erasure, and objection at any time as provided under the GDPR.