Job Purpose Statement
The Engineer, Cyber Operations will be responsible for execution of day-to-day security programs such as Patch and Vulnerability Management, Incident Response and Security Monitoring. The role will work with NCBA Group Cyber team to manage support SLAs. They will also be responsible for managing and closure of Technology audit issues in Digital Business and maintaining an up-to-date asset register.
Key Accountabilities (Duties and Responsibilities)
- Patch & Vulnerability Management – Maintain a robust process by working with custodians to ensure vulnerabilities are closed within SLA.
- Audit – Track and close all technology-related audit issues within agreed timelines.
- Security Monitoring & Incident Management – Onboard assets to SIEM, perform SOC L2 functions, analyze incidents, and provide remediation.
- Identity & Access Management – Conduct user access reviews and remediate identified gaps across all bank platforms.
Job Specifications
- Bachelor’s degree in information systems, Computer Science, Information Security or related field required.
- Information security certifications e.g. CEH/CISA/CompTIA Security +/GIAC
- Minimum of 2 years’ experience in Cyber Security systems administration e.g. SIEM, Intrusion Prevention Systems, Web Application Firewalls, Remote access, Content Filters, endpoint protection, vulnerability management solutions etc.
- Hands-on experience in Networking and Operating Systems e.g. Cisco, Huawei, Windows (All) and Linux.
- Hands-on experience in scripting using a major programming language and other automation tools e.g. Python, Ansible etc.
- Knowledge and experience using RDBMS.
- Excellent analytical, problem solving and reporting skills.
- Good knowledge of the systems and processes within Financial Services industry.
Job Dimensions
Technical Competencies
- Technical skills to effectively perform IT security management activities/tasks in a manner that consistently achieves established quality standards or benchmarks.
- Knowledge of information security domains
- Conceptual understanding of Vulnerability and Risk Assessments.
- Working knowledge of system security controls on multiple operating systems (Windows, Linux)
- Practical understanding of common TCP/IP-based services, including DNS, DHCP, HTTP, FTP, SSH, SMTP
- Knowledge and application of modern IT security management practices in financial services industry to proactively define and implement security quality improvements in line with technological and product changes.
- Performance management to optimize personal productivity.
- Knowledge and effective application of all relevant banking policies, processes, procedures and guidelines to consistently achieve required compliance standards or benchmarks