Implement security strategies to protect company systems, networks, and data from cyber threats;
Monitor security operations and ensure the integrity of IT infrastructure by continuously evaluating systems for vulnerabilities and implementing proactive measures;
Manage security tools (e.g., firewalls, intrusion detection systems, antivirus solutions, and SIEM systems) to detect, respond to, and mitigate security incidents;
Conduct risk assessments and vulnerability assessments and provide recommendations for risk mitigation strategies;
Manage incident response for cybersecurity breaches, ensuring proper investigation, containment, and recovery in alignment with incident response protocols;
Perform security audits and assessments to ensure compliance with internal and external security policies, laws, and regulations (e.g., 27001);
Maintain security documentation, including policies, procedures, incident reports, and compliance records;
Coordinate and support security awareness training for employees to educate them on cybersecurity best practices, phishing prevention, and safe data handling;
Stay updated with emerging cybersecurity threats, vulnerabilities, and industry best practices to proactively address new security challenges;
Collaborate with IT and development teams to integrate security best practices into system design, software development, and network management;
Report on security metrics and provide recommendations to senior management regarding improvements in security posture.
Xüsusi tələblər
Bachelor’s degree in Information Security, Cybersecurity, IT, or a related field;
Relevant certifications such as CompTIA A+ , CompTIA Security+, SSCP or equivalent are highly desirable;
2–3 years of professional experience in information security, IT, or equivalent roles;
Solid knowledge of network security, firewalls, VPNs, and intrusion detection/prevention systems (IDS/IPS);
Proficiency with security technologies such as endpoint protection, SIEM (Security Information and Event Management), and vulnerability scanning tools;
Understanding of regulatory requirements and compliance frameworks (such as (27001);
Excellent problem-solving skills and ability to think critically;
Strong team collaboration skills and the ability to work effectively across departments;
Experience with penetration testing and security assessments is a plus.