Job Purpose
The role holder will be responsible for carrying out and coordinating Cyber Threat hunting for pro-active detection and prevention of Cyber Breaches in the Banking Sector.
Key Duties and Responsibilities
Technical and Operational Responsibilities
- Perform targeted Vulnerability Assessment and Penetration Testing (VA/PT) to identify flaws on systems and applications of regulated entities.
- Write reports detailing the findings of VA/PT exercises explaining the attack vectors of Cyberattacks.
- Reviewing results of VA/PT exercises before dispatch.
- Providing recommendations on fixing the issues identified during VA/PT exercises.
- Carrying out Open-Source Intelligence (OSINT) collection on Cyber Threat Actors.
- Supporting, liaising and coordinating with other incident response teams in identifying cyber-attack vectors by analyzing raw data and identifying suspicious patterns.
- Incidence Response engagements on regulated entities to ensure recovery and efficiency in incident response management.
- Adhere to VA/PT and incident management policies, best practices and SOP manuals.
- Prepare Cyber Security training/awareness material for the financial sector.
- Maintain records of all Cyber incidents recorded and their status.
- Maintain catalogue of all VA/PT tools and equipment.
Other Responsibilities
- Conduct research on Cyber Threat Actors Tactics, Techniques and Procedures (TTPs)
- Any other duties assigned.
Qualifications
- A Bachelor’s Degree in Information Technology, Computer Engineering, Telecommunications and Information Engineering & Computer Science and/or any related qualification.
- Professional certification(s) in VA/PT (CEH) and Cybersecurity & Information Security (GSEC) and/or Networking (CCNA) or any other related field.
- Practical hands-on experience with enterprise VA/PT tools and software, e.g Nessus, Burp suite, OpenVAS, Nikto and exploit frameworks.
- Active membership in at least one (1) professional body.
Work Experience
- Three (3) years’ experience with at least two (2) years’ experience in a cybersecurity and VA/PT analysis environment.
