Senior Security Specialist - Menlyn Park, South Africa - Assupol Life Ltd.

Thabo Mthembu

Posted by:

Thabo Mthembu

beBee Recruiter


Description
1. Strategy and Planning

  • Create and maintain the enterprise's security architecture design.
  • Lead, Plan and Implement all security and network projects as per the Security Strategy and Security Program.
  • Develop, implement, maintain, and oversee enforcement of policies, procedures and associated plans for system security and user system access based on industrystandard best practices.
  • Assess a need for any security reconfigurations (minor or significant) and execute them as required.
  • Keep current with emerging security trends and global threats.
  • Collaborating with various departments in IT and business to steer the security journey, ensuring that our digital footprint remains secure.
  • Conduct research on emerging products, services, protocols, and standards in support of security enhancements and development efforts.
  • Continual enhancing of the security visibility and control for the 24/7 SOC team.
  • Acquisition and Deployment
  • Select and acquire additional security solutions or enhancements to existing security solutions to improve overall enterprise security as per the enterprise's existing procurement processes.
  • Negotiate with different security vendors for better discounts, support and access to vendor training material for upskilling.
  • Recommend, schedule, and perform security improvements, upgrades, and/or new purchases.
  • Oversee the deployment, integration and initial configuration of all new security solutions and of any enhancements to existing security solutions in accordance with standard best operating procedures generically and the enterprise's security documents specifically.
  • Operational Management
  • Deploy, manage and maintain all security systems and their corresponding or associated software, including firewalls, intrusion detection systems, PKI, MFA, DLP, and antivirus software.
  • Ensure the confidentiality, integrity and availability of the data residing on or transmitted to/from/through enterprise workstations, servers and other systems and in databases and other data repositories.
  • Manage the implementation and execution of Data-Loss technologies enterprise wide.
  • Ensure the enforcement of enterprise security policies, standards and guidelines.
  • Plan and oversee penetration testing and vulnerability management of all systems to identify and remediate any system vulnerabilities.
  • Monitor and report on security systems, and enduser activity audits.
  • Supervise all investigations into suspicious/anomalous activity and provide ongoing communication with senior management until resolved.
  • Dive into technical challenges when necessary, demonstrating a blend of leadership and handson skills to address critical security issues.
  • Engage in ongoing communications with peers in the Systems and Networking areas as well as the various business groups to ensure enterprise wide understanding of security goals, to solicit feedback and to foster cooperation.
  • Manage and/or provide guidance to junior members of the team.
  • Translates the business security requirements into technical implementation plans, working with the Server Team and other IT teams to ensure that the plan is practical, controls are sustainable, and implementation risk and adverse impact to servers, workstations and user productivity is managed and minimized.
  • Work closely with other teams to ensure that security by design is in place.
  • Engage with external security vendors, ensuring services align with our security standards and optimizing costefficiency.
Knowledge and Skills

Formal Education

Matric
IT related degree/diploma

Technical/Legal Certification

FortiGate NSE6 a must.

  • UTM
  • Wireless
  • WAF
  • Analyzer and Manager
  • FortiWeb
CCNP (Networking or Security) a must.
CISSP qualification an advantage
Cloud Security and Network an advantage.
Endpoint Security an advantage (Panda, Mcafee, Symantec etc.)

Experience

IT experience: 5 years minimum

Insurance industry experience: 3 years (Advantage)

More jobs from Assupol Life Ltd.