Analyst /Developer- IT Security
- Cape Town, Western Cape
- Clicks Group Limited
Job Description
Position Summary
Industry: IT & Internet Job category: Network Administration and Security Location: Cape Town Contract: Permanent Remuneration: Market Related EE position: Yes Brand: Clicks GroupIntroduction
We are looking to recruit a IT Security Analyst/Developer to work within the IT department of Clicks Group Services. The role will be based at Clicks Head Office Cape Town and will report into the IT Security Officer.
Job description
To take ownership of IT security duties and provide day-to-day support to the Information Security Officer, including:
Implement new tools to integrate security solutions with operational processes towards continuous improvement of the overall IT security posture- Leverage scripting skills to develop tools for the automation of operational security and access management processes using Python, Perl, Linux shell scripting and Powershell
- Research, develop, and recommend information security policies, procedures, standards, and safeguards to protect sensitive data and enable secure data transmission and storage
- Document and implement security hardening baselines for internal and external IT systems supported by compliance monitoring
- Implement, administer and enforce logical user access management for applications and environments, and work with team leads for user and data access control, including monitoring and maintenance of role/entitlement review campaigns
- Collaborate with other teams to design and implement integration of security solutions with backend applications and systems
- Identify, investigate and resolve threat intelligence, security, access and authentication issues escalated by staff and other users
- Keep abreast of and share details of new and ongoing information security issues, threats, remediation/mitigation steps and latest technologies
- Coordinate and/or perform network, mobile, application, infrastructure security assessments and penetration testing. Document technical issues identified during security assessments and practical recommendations for resolution. Proactively identify and mitigate against information security risks or incidents
- Drive awareness of vendors / 3rd parties compliance requirements to information security standards, and ensure adherence thereof
- Generate regular IT security reports structured to provide information about statistics and trends as required by the Information Security Officer
- Implement IT security projects, deploy new security tools using DevOps approach to achieve tasks and objectives, and conduct research work as needed
- Maintain PCI DSS and audit compliance requirements
- Share workload with IT Security analysts to meet call SLA requirements, and automate manual IT security workflows where appropriate
Minimum requirements
Qualifications:- Relevant degree, certification or IT studies (CISSP, OSCP, CEH, Security , Linux)
- Demonstrable programming/development experience
Skills, Abilities and Job Related Knowledge:
- Demonstrable general IT / security experience
- Good knowledge and understanding of information security principles, with demonstrated ability to identify security weaknesses and take ownership of tasks
- Working knowledge of heterogeneous operating system platforms including Linux
- Proficient in at least two or more programming or scripting languages (Linux shell scripting, Windows Powershell scripting, Python, Perl, Java, etc.)
- Analysing
- Planning and Organising
- Delivering Results and Meeting Customer Expectations
- Deciding and Initiating Action
- Learning and Researching
- Presenting and communicating