About the role
This is a technical support position responsible for monitoring, analysing, and responding to security threats and incidents to protect the organisation's digital assets. The position will work closely with IT Infrastructure, Customer Support and Application teams to ensure the integrity, confidentiality, and availability of information systems.
Key responsibilities
- Continuously observe network traffic, analyse system logs, and manage Security Information and Event Management (SIEM) tools to spot suspicious activities and filter out false alarms
- Ensure the organisation's adherence to legal frameworks and industry standards (such as NIST CFS), document the security posture for leadership, and conduct ongoing training to help employees recognise and avoid common threats such as phishing
- Conduct regular network scanning, coordinate simulated penetration tests, and enforce rigorous patch management to identify, assess, and prioritise technical risks
- Install, configure, and manage essential security infrastructure including firewalls, endpoint protection (EDR), and strict identity access controls
- Ensure all new IT projects are designed securely from the ground up
- Assist and support the Manager, Infrastructure and Cybersecurity Risk to implement and ensure compliance with all policies relating to Information Technology
- Establish and maintain materials and equipment storage
- Ensure system compatibility and maintenance of the organisation's Standard Operating Environment
- Specify items required and obtain quotations from vendors as necessary
- Prepare reports and provide accurate information as required by Management
About you
- Bachelor's degree in Information Technology (IT), Computer Science or other related discipline from a recognised institution with at least three (3) years relevant work experience, or Master's degree holder
- At least one (1) relevant IT certification(s) with active status in either system, network, project management, information security, operations, or equivalent (e.g; CCNA, ITIL, CompTIA Security+, or equivalent)
- At least three (3) years of relevant working experience in two of the following domains: deployment, configuration, support, cybersecurity, network security, project management in a medium to large enterprise with a proven record of providing quality service
- Experience in assisting or performing risk assessment or incident response and management
- Familiar with current security technologies and keen interest in learning within security domain
- Familiar with support and manage Endpoint Detection and Responses (EDR/XDR), email security gateway, Firewall, IPS, VPN, DLP, MFA, etc.
- Ability to handle, validate and investigate Security Events (Intrusions/Malicious Activity/Security Events)
- Ability to perform tasks assigned under pressure and short notice, ready to work outside of normal office hours when required
- Ability to handle confidential and sensitive information responsibly
- Self-motivated, demonstrating a high level of initiative, assertiveness, versatility and flexibility