Security Engagement Lead - Brackenfell, South Africa - Shoprite Group

Thabo Mthembu

Posted by:

Thabo Mthembu

beBee Recruiter


Description

Purpose of the Job:


The purpose of the Security Engagement Lead is to lead a team of cloud security engineers responsible for securing cloud-based digital platforms and plays an integral role in engaging with business units in order to ensure the organization's digital platforms are protected.

This role involves analyzing existing cloud security measures/controls and creating new and enhanced security methods. This role is part of a larger team dedicated to cloud-based management and security.

The role is also responsible for the development and execution of large-scale cyber security initiatives and requires a professional with problem-solving abilities who can work in a fast-paced environment and has a clear passion for cloud security and cloud technologies.


Job Objectives:

Lead and mentor a team of cloud security engineers.

Provide assurance through collaboration with other stakeholders that all cloud and digital platforms meet the organization's security requirements.

Recommend innovative technologies or other methods that will enhance the security of cloud-based environments.

Develop standards, policies and procedures as well as best practices documentation.


Translate security and technical requirements into business requirements and communicate security risks to different audiences ranging from business leaders to engineers.

Influence multi-disciplinary teams in implementing and operating cyber security controls.

Automate security controls, data and processes to provide better metrics and operational support.

Utilize cloud-based APIs when appropriate to write network/system level tools for securing cloud environments.

Stay current on emerging security threats, vulnerabilities and controls.

Identify and implement new security technologies and best practices.


Identify processes/procedures for how to handle cloud security events, including forensic isolation and mitigation with Digital Forensics and Incident Response teams.

Identify new security threats by conducting continual monitoring, penetration testing, vulnerability assessments and log analysis.


Qualifications:

Degree/Diploma in IT, Information Systems, Systems Support or related field - (essential).

Recognized industry certifications in cloud security, Systems Security Certified Practitioner (SSCP) - (essential).


Experience:


  • 2 years' experience in a team leadership capacity or similar with demonstrable experience leading and/or efficiently managing the delivery of security engineering engagements with key business and IT stakeholders to ensure highly secure enterprise-wide IT infrastructure - (essential).
  • 5 years' experience in a cyber security role with hands-on expertise in cloud security - (essential).


Solid experience with specific exposure to mentoring and coaching a team, providing technical leadership and driving high performance within the context of security engineering - (essential).


Technical knowledge of system security compliance and practice in IT systems operations with relevant regulations (PCI DSS, ISO standards, POPIA, etc.) or working within those frameworks - (essential).


Expert knowledge of services related to cloud computing, network, storage, content delivery, administration and security, deployment and management, automation technologies - (essential).

Good understanding and exposure to cloud standards, architecture and models - (essential).

Practical experience with AWS WAF and/or Azure Frontdoor - (essential).

Experience with open-source software security - (essential).

Solid knowledge of internet & network protocols with PKI, SSL, SSH etc. and deep packet inspection - (essential).

Hands on knowledge of automation and DevSecOps, microservices, Kubernetes, docker, etc. - (highly beneficial)


Good understanding of software development principles, including design patterns, code structure, programming languages, continuous integration, continuous deployment, and deployment orchestration - (highly beneficial).

Robust microservices programming (AWS Lambda, Docker, etc.) - (highly beneficial)


Knowledge and Skills:

Relating and networking - Easily establishes good relationships with business unit and Technology staff; relates well to people at all levels; builds wide and effective networks of contacts; uses humour appropriately to bring warmth to relationships with others


Leading and supervising - Communicates a vision and inspires motivation, engaging the team or team process to resolve problems or differences.

Is aware of how management style impacts staff productivity and development, modifying leadership style to meet situational requirements.

Coaches, mentors and directs others to reach individual and team goals, delivering end-to-end business solutions in a collaborative and professional manner.

Analysing - Analyses numerical data and all other sources of information, to break them into component parts, patterns and relationships; probes for further information or greate

More jobs from Shoprite Group