Key Responsibilities:
IT Security & Risk Management
- Conduct IT security risk assessments in collaboration with the Authority to identify threats, assess risk levels, and propose mitigation strategies.
- Prepare and deliver IT security risk assessment reports as input to the security design and architecture of delivered systems.
- Coordinate security incident handling, investigation, and reporting.
- Lead and coordinate security audits, vulnerability assessments, and penetration tests.
- Consolidate testing results and ensure timely remediation of findings.
- Maintain and update security documentation, including policies, standards, and procedures.
- Ensure overall IT security compliance with requirements specified by the Authority.
System Administration & Cloud Infrastructure
- Install, configure, and maintain Linux (RHEL, CentOS, Ubuntu) and Windows Server environments.
- Perform routine system monitoring, OS patching, and upgrade management.
- Manage services including Active Directory, Group Policy, DNS, DHCP, and other Windows roles.
- Troubleshoot OS-level issues and optimize system performance and capacity.
Cloud Administration (AWS)
- Administer AWS services including EC2, S3, IAM, Lambda, CloudWatch, VPC, and Route 53.
- Provision and maintain secure and cost-optimized AWS infrastructure.
- Automate infrastructure tasks using AWS CLI, Lambda, and scripting (Shell, Python, Node.js).
- Monitor workloads using CloudWatch and integrate alerts with monitoring systems.
Required Qualifications:
- Minimum 3 years of experience in IT security, specifically in enterprise systems, network, or cloud infrastructure.
- Professional certification such as CISSP, CISA, or equivalent is required.
- In-depth knowledge of:
- IT security governance, risk assessment, and incident management.
- Vulnerability assessments and penetration testing.
- Security standards and best practices (ISO/IEC, NIST, CIS, etc.).
- Technical system security and architecture.
Technical Skills:
- Proficient in both Linux and Windows server administration.
- Strong knowledge of AWS cloud services and cloud security best practices.
- Scripting expertise in Shell, Python, or Node.js.
- Familiar with automated deployment and monitoring tools.
- Hands-on experience in implementing secure system configurations.
EA Number: 11C4879