Security Specialist Job Description
We are seeking a skilled Security Specialist to join our IT team. The successful candidate will work with architects, system engineers, and other IT support teams to define, guide, and advise on security standards across our IT landscape. Responsibilities include monitoring network activity to identify vulnerabilities, designing and configuring security hardware and software, and using available tools to detect intrusions and unauthorized access.
- Provide security solutions and enhancements to the IT network security roadmap.
- Train employees on security best practices and mentor junior team members.
- Monitor software and hardware for potential cyber threats and conduct security assessments and internal network scans.
- Analyze existing systems and recommend improvements.
- Prepare reports, action plans, and update the risk register.
- Organize and conduct security tests, including ethical hacking of the company's IT architecture.
- Maintain current technical knowledge through ongoing education.
- Develop automation solutions where possible.
- Serve as a security expert and conduct training as needed.
- Draft security policies, standard operating procedures, and guidelines.
- Participate in change advisory processes by reviewing production changes.
- Conduct research, benchmarking, trend analysis, and baseline exercises.
- Align security activities with the enterprise’s security policies and goals.
Minimum Qualifications
- At least 3 years of experience in a security role.
- Over 5 years of experience in an infrastructure support environment, including deployment of enterprise solutions.
- Strong technical knowledge of networking (LAN/WAN, firewalls, routers, switches, Wi-Fi, DHCP, DNS, DMZ, segmentation).
- Understanding of Security Operations Centre (SOC) functions.
- Proficiency with Windows, Apple, and Linux operating systems, protocols, data leakage prevention, mobile device management, endpoint security, cloud solutions, identity and access management, penetration testing, and web security.
- Scripting skills and familiarity with NIST and SANS frameworks are advantageous.
- Experience with governance standards such as POPI, Data Protection, PCI, including policy and procedure creation.
- Experience managing Security Information and Event Management (SIEM) environments.
- Knowledge of vulnerability management, authentication methods, and security tools.
- Understanding of cloud security controls.
- Excellent problem-solving, communication, and organizational skills.
- Ability to work under pressure and as part of a team.
Educational Requirements
A relevant IT degree and certifications in at least one of the following areas are required: