Job Description
What you will do
- Conduct information security risk assessments across cloud, data centre, and application environments.
- Provide security architecture guidance and technical design recommendations to internal teams during the design and build phases.
- Evaluate business requirements and proposed technical designs to identify risks, define secure alternatives, and recommend optimal security solutions.
- Apply recognised security frameworks and standards such as ISO 27001, ISO 31001, NIST, CIS, SANS, and NIST SP 800-53.
- Support secure development practices aligned with OWASP “Security by Design” principles.
- Assess and advise on perimeter security controls, including firewalls, VPNs, proxies, and network security solutions.
- Monitor and interpret the global threat landscape, including advanced persistent threats, to inform risk-based decisions.
- Create clear reports, dashboards, and presentations to communicate security posture, trends, and performance to stakeholders.
- Collaborate across teams, influencing outcomes through strong interpersonal and negotiation skills.
