Attiva gli avvisi di lavoro via e-mail!

Junior Cybersecurity Engineers INFOSEC/COMSEC

RINA

Genova

In loco

EUR 30.000 - 60.000

Tempo pieno

30+ giorni fa

Genera un CV personalizzato in pochi minuti

Ottieni un colloquio e una retribuzione più elevata. Scopri di più

Inizia da zero o importa un CV esistente

Descrizione del lavoro

Un'azienda all'avanguardia nel settore della sicurezza informatica è alla ricerca di Junior Cybersecurity Engineers per unirsi al loro team a Genova. Questa posizione offre l'opportunità di lavorare su progetti innovativi, identificando rischi di sicurezza e implementando misure tecniche per migliorare la postura di sicurezza dei clienti. I candidati ideali avranno una solida formazione accademica in ingegneria informatica o informatica, insieme a una passione per la sicurezza informatica e la capacità di comunicare efficacemente in italiano e inglese. Se sei pronto a fare la differenza in un ambiente dinamico e stimolante, questa è l'occasione che fa per te.

Competenze

  • Richiesta esperienza di 2-3 anni nel campo della sicurezza informatica.
  • Conoscenza di linguaggi di programmazione e algoritmi crittografici.

Mansioni

  • Identificare rischi di sicurezza e analizzare documentazione tecnica.
  • Progettare misure di sicurezza e fornire raccomandazioni.

Conoscenze

Problem-solving
Communication Skills
Knowledge of Operating Systems Security
Knowledge of Cryptographic Algorithms
Knowledge of Networking Models
Programming Languages (Java, C/C++/C#, VB.Net, Python)

Formazione

Laurea in Ingegneria Informatica
Laurea in Informatica

Strumenti

Ansible
Puppet
Vulnerability Assessment Tools
Intrusion Prevention/Detection Systems (IPS/IDS)
Security Information and Event Management (SIEM)

Descrizione del lavoro

RINA is currently recruiting for a Junior Cybersecurity Engineers INFOSEC/COMSEC to join its office in GENOA within the Cyber Security and Management Consulting Division.

Junior personnel could have less than 5 years of experience in the field, but a technical academic background in computer engineering or computer science is required and an experience of at least 2/3 years is appreciated.

The persons will be in charge of technical activities such as:

  • Identify security risks within organizations and complex systems/architectures;
  • Analyse, draft and review technical documentation pertaining IT and Communication systems;
  • Manage changes in documents' versions and systems' configurations;
  • Design security measures and provide recommendations or suggestions to improve security postures;
  • Implement technical security measures also by means of hardening of target systems/devices based on identified security baselines or requirements;
  • Provide support to Customers in cybersecurity related activities;
  • It is possible some SW Code/Script development and/or network devices configuration also by means of automated configuration tools;
  • According to Customer's needs, it could be possible to carry out VA/PT activities on involved systems/architectures.
Requirements:

  • Knowledge of security aspects of principal Operating Systems;
  • Adequate knowledge of cryptographic algorithms (e.g. SHA, AES, CBC, ECB);
  • Adequate knowledge of networking models;
  • Adequate knowledge of programming languages (in particular Java, C/C++/C#, VB.Net, Python), their interfaces with principal DBMS, and their development environments;
  • Strong problem-solving ability;
  • Excellent verbal and written communication skills - Italian and English as a minimum;
  • Flexibility and ability to multi-task in a fast-paced atmosphere;
  • Availability to travel within the Country and abroad.
Desired Requirements:

  • Security Certifications: e.g. ISO270001 Qualified Lead Auditor, GIAC/GICSP or ISA62443 related certifications, CEH, OSCP, eJPT, PJPT, ISACA CISM/CISA/CRISC, ISC2 CISSP.
  • Previous experience in performing VA/PT activities (also for personal interest/passion, e.g. CTF challenges);
  • Knowledge of security tools/platforms such as: automated configuration tools (e.g. Ansible or Puppet), vulnerability assessment tools, penetration tests techniques and involved applications, cloud security, cyber threat intelligence, Mobile Threat Detection, Intrusion Prevention/Detection Systems (IPS/IDS), Endpoint Protection Platforms (EPP, but also EDR, MDR and XDR services), technologies related to code security analysis, Web Application Firewall (WAF), Security Orchestration Automation and Response (SOAR), Security Information and Event Management (SIEM) and Governance Risk Compliance (GRC).
Ottieni la revisione del curriculum gratis e riservata.
oppure trascina qui un file PDF, DOC, DOCX, ODT o PAGES di non oltre 5 MB.