Cyber Security Engineer
Cape Town - South Africa
Job Summary
Responsible for company-wide cybersecurity security systems compliance training documentation processes and records. The role supports ongoing security operations administration and development while improving detection data integrity confidentiality and information security.
Education:
- Engineering degree in Computer Software or Electronic Engineering.
- CISM CISSP CCSP or ITIL certification desirable.
Experience:
- Minimum 5 years experience in Technology & Software.
- Minimum 3 years experience in Cybersecurity.
- 3 years in Scala Go Java NodeJS/JavaScript/Typescript/Ruby.
- Extensive CI/CD framework experience including Jenkins Code Pipeline and CodeBuild.
- AWS ecosystem and AWS Well Architected Framework.
- Trusted Advisor GuardDuty SCP SSM IAM and WAF.
- ECS/EKS container services.
- Highly Available auto-scaling and load-balanced applications.
- Infrastructure-as-Code preferably CloudFormation and CDK.
- Security policies procedures security design and implementation.
- Incident detection and management.
- Experience reviewing development concepts and identifying business process and control gaps.
Key Requirements
- Deep understanding of automation quality engineering architectural methodologies principles and solution design.
- Operational observability including log aggregation and application performance monitoring.
- CI/CD pipelines and tools such as GitHub Actions.
- Linux/Windows server and application administration and configuration networking scripting and automation.
- Large-scale distributed computing architecture.
- IT security knowledge including FortiGate firewalls EDR IDS/IPS SOAR (Rapid7) vulnerability scanning (InsightVM) forensics and Threat Hunting.
- Kubernetes and containerisation using Docker/Podman/Containerd including implementation support and design.
- Security classification frameworks such as MITRE and the cyber-attack kill chain.
- Industry standards and frameworks including CIS and ISO-27001.
- ISO 14971 risk management compliance advantageous.
- ISO 27032 cybersecurity compliance advantageous.
- SOC2 Type 2 with HiTrust attestation or equivalent experience advantageous.
- Design cloud development infrastructure.
- Automate deployments in AWS Azure and other cloud tools as required.
- Improve automation of security controls.
- Work with development teams to define industry-standard processes and system requirements and identify fixes to development lifecycle shortcomings.
- Design and implement updates covering Cloud Conformity WAF status and Certificate Management.
- Uplift security posture of consumer accounts.
- Ensure security standards and policies are correctly configured.
- Drive Cloud Security LRP standards and enterprise minimum security requirements including data masking encryption monitoring perimeter protections and ingress/egress uplift.
- Define and maintain backups and backup systems.
- Design and implement CI/CD pipelines.
- Monitor infrastructure and deployments and ensure deployment stability.
- Generate and maintain effective efficient and reusable code.
- Drive cybersecurity compliance development standards and processes.
- Monitor cybersecurity processes operations infrastructure policy and regulatory compliance.
- Prepare for SOC2 Type I and future HiTrust roadmap.
- Drive cybersecurity audit strategy and readiness across development security and DevOps.
- Identify implement and maintain security tools and technology.
- Schedule and ideally automate ASV and internal vulnerability scans remediate findings and maintain accurate reporting for PCI DSS requirements.
- Schedule annual penetration tes
Should you meet the requirements for this position please email your CV to . You can also contact the IT team on or visit our website at NOTE: When replying to the advert also include the reference number in the subject line. Correspondence will only be conducted with short listed candidates. Should you not hear from us within 3 days please consider your application unsuccessful.
Required Experience:
IC