
Senior/Cybersecurity Architecture & Testing Section, IDTD
Salary undisclosed
Checking job availability...
Original
Simplified
- Educational Qualifications: o Bachelor's degree in Computer Science, Information Security, Electrical Engineering Engineering or a related field. o Relevant certifications such as Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), Offensive Security Certified Professional (OSCP), or equivalent are highly desirable. • Experience: o Experience in conducting vulnerability assessments and penetration testing for IT and/or OT systems. o Familiarity with security architecture and consultancy, with the ability to provide input on solutions and technical security controls. o Experience in spearheading the architecture of OT systems following NIST, ISA99, and IEC-62443 standards. o Prior experience in developing and maintaining information security policies, standards, and procedures. • Technical Skills: o Strong or good understanding of cybersecurity principles, IT and OT security best practices, and regulatory requirements from CSA and GovTech. o Proficiency in using industry-standard security tools and technologies for vulnerability assessment and penetration testing. o Knowledge of risk management activities, including the ability to identify, evaluate, and address security threats or vulnerabilities. o Ability to perform controls reviews and system assessments to develop risk profiles and evaluate the efficiency and effectiveness of the control environment. • Responsibilities: o Conduct comprehensive assessments and testing to ensure adherence to cybersecurity policies, processes, and standards. o Evaluate cybersecurity risk within the business environment and industry requirements. o Lead security risk management activities and undertake vulnerability corrections for OT and IT systems. o Coordinate and manage the annual risk assessment, vulnerability assessment, penetration testing, and security compliance audit. o Oversee the administration of external consultants and auditors in risk & vulnerability assessment, and compliance audit. • Soft Skills: o Good analytical and problem-solving skills. o Good communication and presentation skills, with the ability to prepare and present security design and architectural review reports. o Ability to collaborate effectively with key stakeholders and work as part of a team. o Project management skills and the ability to manage the approval and engagement of external cybersecurity consultants and auditors. • Other Requirements: o Must be willing to stay updated with emerging trends in security solutions and apply new techniques to enhance cybersecurity architecture. o Availability to coordinate with various departments for the scheduling and conduct of security assessments and audits.