IT Security Specialist
Hybrid / Prague 8 /
Hybrid
Lokation: Prague 8, HO 50 %
Languages: Fluent English and Czech
Level: Senior
Form of cooperation: Contraktor
Start date: asap
Allocation: Full-Time
Allocation length: Long term
- The Security Engineer is responsible for identifying security requirements and defining measures to limit identified risks by means of respective procedures, policies or technical means. He/ she provides expertise and support in security engineering, incident response and risk management.
Task and responsibilities:
- • Support DBG System Security initiatives Compliance checks for system hardening,
- • Specialist in Operating Rapid 7, creating security baseline templates for compliance scanning based on CIS benchmarks
- • Evaluating and validating the scan outputs for accuracy of compliance scanning conducted by Rapid 7 Nexpose.
- • Supporting Infra Support groups on Rapid 7 user onboarding
- • Ensure daily operational duties relating to security management in compliance with relevant policies and industry best practices.
- • Develop Information Security Baselines in line with DBG Policies and Standards and international standards of quality management.
Mandatory skills and experiences:
- 5+ years of proven professional experience for IT Security and Compliance Management using Rapid 7 Nexpose
- Very good understanding of Infrastructure, Platform and Application security concepts & threats (Network Infrastructure, Operating Systems, Database, Middleware and Web applications hardening measures).
- Good knowledge of Network Infrastructure, Operating Systems, Database Middleware and Web applications
- Ability to quickly understand new threats and technical concepts.
- Recommend appropriate controls to maintain confidentiality, integrity and availability of systems/services and to fulfil the requirements of regulators
- Very good communication skills in in written and spoken English
- Sense for detail and for picking the right solution while keeping in mind the business constraint
Optional skills:
- Security-related certification (CCSP, CISSP, CISM)
- Good ITIL knowledge (ITIL certification)
- Experience with System security tool Rapid7 Nexpose
- Effective organizational skills to maintain a consistently high standard of operations in a business-critical financial environment