The role is primarily responsible over two key security capabilities: Security Engineering and Identity & Access Management.
The role is responsible for planning, implementing, managing, monitoring, and upgrading security measures for the protection of company personnel and assets. This includes speciality in troubleshooting security, network, and system problems as well as assisting in the response to system and data breaches should they occur.
It also plays a key role helping define, build, implement, maintain, and enforce a strategic approach to Identity & Access Management (IAM) across the TIU Group enterprise.
The role ensure company risk is managed through implementation of appropriate security controls and serve as Security Technical Lead for various IT projects.
KEY RESPONSIBILITIES
- Define information system security architecture strategy that supports our domain’s objectives, including IAM security strategy, processes, and standards.
- Review, design and implement security controls and requirements for the TIU Group environment.
- Analyse the current information security environment related to our domain to detect critical deficiencies and recommend solutions for improvement through knowledge of current threat landscape, and to identify optimization opportunities for the technology landscape.
- Engineer, implement and monitor security measures for the protection of computer systems, networks and identity and access management on information following best practices like RBAC Model, Zero Trust Architecture, API security, Federation/SSO.
- Serve as Security Technical Lead for various IT projects.
- Serve as a Subject Matter Expert to identify and define system security requirements.
- Analyse/develop/test, propose and implement new internal IT security tools/controls and technical requirements for better protecting the company information systems.
- Lead directory services implementations involving customization, configuration, and development of solution integrations translating functional requirements into technical designs for IAM-related security including roles/tools and related provisioning processes
- Provide Tier-2 support on security infrastructure devices and applications and IAM.
- Liaising with vendors to test or implement security solutions.
- Identifying current and emerging technology issues including security trends, vulnerabilities, and threats.
- Supervise changes in software, hardware, facilities, telecommunications and user needs to ensure security is not degraded.
SKILLS & RELEVANT WORK EXPERIENCE
- 5+ years working experience in information technology
- Proven work experience as a Security Architect, System Security Engineer, Information Security Engineer or Identity and Access Management Engineer/Specialist for at least 2+ years
- Bachelor’s degree or equivalent combination of education and experience
- Hands on experience in security systems, including SIEM, SOAR, EDR, Firewalls, intrusion detection systems, anti-virus software, authentication systems, log management, content filtering, etc.
- Has a deep understanding of cybersecurity architecture, defense-in-depth strategies, and systems design, with hands-on experience in implementing and managing Zero Trust architectures. Has demonstrated expertise in implementing Identity and Access Management (IAM) and Single Sign-On (SSO) technologies
- Experience in building and maintaining security systems supporting multiple platforms and applications
- Experience with Problem Management techniques and Process Improvement methodology
- Experience with network security and networking technologies and with system, security, and network monitoring tools
- Thorough understanding of the latest security principles, techniques, and protocols.
- Familiarity with web-related technologies (Web applications, Web Services, Service-Oriented Architectures) and of network/web related protocols
- Problem-solving skills and ability to work under pressure
- An understanding of best practices and how to implement them at a business-wide level while balancing between the need of Security and Production requirements
- Previous exposure to Linux and/or Windows Operating Systems, scripting languages, and/or Networks.
- Experience in Business Continuity/ Disaster Recovery architecture, implementations and executions will be a plus.
- Knowledge with programming languages such as PowerShell, Python, etc.
- Strong work ethic with attention to detail
- Ability to communicate security issues to peers and management
- Industry certifications such as CISSP, GISP, GSEC, CEH, CIAM, CAMS are strongly preferred