Jobs Career Advice Post Job
X

Send this job to a friend

X

Did you notice an error or suspect this job is scam? Tell us.

  • Posted: Jun 23, 2023
    Deadline: Not specified
    • @gmail.com
    • @yahoo.com
    • @outlook.com
  • Dis-Chem Pharmacies is a major South African retail pharmacy chain known for its slogan "Pharmacists who care". Working here involves fast-paced retail, customer service, and healthcare support. Employees generally report an average work experience with opportunities in retail, nursing, and pharmacy
    Read more about this company

     

    Senior IT Security Engineer

    Dis-Chem Pharmacies requires an  Senior IT Security Engineer at our Head Office in Midrand. To support day-to-day data security operations including patch management, red team exercises, remediation of cyber security incidents, implementation of Cyber Security road map tasks and to support and maintain a broad suite of information security infrastructure.

    Minimum Requirements:

    Essential:

    • Grade 12 / Matric
    • Minimum of 3 - 5 years of experience in information security and compliance frameworks.
    • BSC Computer Science/Engineering or any relevant IT tertiary qualification.
    • Information Security certification (s) such as Security+, Cyber Security Analyst, CRISC, CISSP or CISA.

    Advantageous:

    • ITIL certification (Information Technology Infrastructure Library
    • Minimum 5 years of experience in IT related positions.

    Job Specification:

    • Architects, designs, implements, maintains and operates information system security controls and countermeasures.
    • Implement new security systems/platforms as per the Cyber Security Roadmap.
    • Analyzes and recommends security controls and procedures in acquisition, development, and change management lifecycle of information systems, and monitors for compliance.
    • Analyzes and recommends security controls and procedures in business processes related to use of information systems and assets, and monitors for compliance.
    • Monitors information systems for security incidents and vulnerabilities; develops monitoring and visibility capabilities; reports on incidents, vulnerabilities, and trends.
    • Responds to information system security incidents, including investigation of, countermeasures to, and recovery from computer-based attacks, unauthorized access, and policy breaches; interacts and coordinates with third-party incident responders, including law enforcement.
    • Administers authentication and access controls, including the creation, modification, and deactivation of user and system accounts, security/access roles, and information asset access rights.
    • Analyzes trends, news and changes in threat and compliance environment with respect to organizational risk; advises organization management and develops and executes plans for compliance and mitigation of risk; performs risk and compliance self-assessments, and engages and coordinates third-party risk and compliance assessments.
    • Perform patch management of endpoints and servers to ensure highest level of security on all critical systems.
    • Conduct red team exercises and remediation on mission-critical systems.
    • Review, understand and correlate data from multiple sources, not limited to user authentication events, windows security event logs, intrusion detections alerts, proxy logs and firewall events.
    • Assist with the documentation of security policies as well as promote activities and procedures to create a general awareness about the significance of security within the organization.
    • Assist with the maintenance of information security policies and procedures and to ensure that the security strategies are being followed, to meet the organizational security goals and standards.
    • Perform Payment Card Industry(PCI) compliance and IT General Controls (ITGC) related tasks as directed.
    • Assist with the monitoring of internet access utilized by employees within the Group.
    • Assist with the identification, investigation and resolution of security breaches.
    • Develops and administers, or provides advice, evaluation, and oversight for, information security training and awareness programs.
    • Manage configuration and change control records with regards to IT security system activities.
    • Engage management on users that default their Cyber Security Awareness Training to ensure compliance.
    • Liaise with stakeholders to perform root cause analysis and trend analysis of security threats.
    • Perform various administrative duties related to information security.
    • Keep accurate record of all hard copy documents, related to the department in a logical filing system.
    • Adhere to Dis-Chem Policies and Standard Operating Procedures.
    • Adhere to Health and Safety rules and regulations. 

    Competencies

    Essential:

    • Knowledge of common information security management frameworks, such as ISO/IEC. 27001 and NIST. Understanding of Security principles such as Confidentiality, Integrity and Availability. Experience with data privacy (POPIA and/or GDPR) is required. Experience in driving PCI-DSS compliance and recertification.
    • Makes timely, informed decisions that take into account the facts, goals, constraints, and risks. Having or showing interest in learning things and being curious. The ability to comprehend, to understand and profit from experience.
    • Communicating in a confident and forceful manner in order to achieve the required goal without being aggressive.
    • Addresses customer questions in a timely manner. Ensures products and services comply with customer requirements.
    • Diligently attends to details and pursues quality in accomplishing tasks.
    • Deadline orientated and good time management skills.
    • Be able to work under pressure
    • English – Read, write and speak well
    • Trustworthy and Honest
    • Be self-motivated and deadline driven
    • Be able to motivate, lead and inspire others
    • Computer Skills – Microsoft Office: Word, Excel, PowerPoint and Outlook
    • Technical experience with Kali Linux and other penetration testing tools required. Technical knowledge of Network Security (e.g. SSL, HTTP, DNS, SMTP, IPSec), and encryption techniques.
    • Technical experience on firewall and IDS/IPS technologies. Technical troubleshooting skills, i.e. both for security and network administration.
    • Technical experience with Microsoft Windows Active Directory. Intermediate virus protection and content filtering technical experience. Investigation and remediation of security incidents, i.e. understanding of associated processes and reporting.
    • Experience with vulnerability scanning tools, including web application vulnerability scanning tools. Strong process oriented individual with understanding of ITIL concepts. 

    Special conditions of employment:

    • Occasional Travel.
    • South African Citizen
    • MIE, clear criminal and credit
    • Driver’s license and/or own reliable transport 

    Remuneration and benefits:

    • Market-related salary
    • Medical aid
    • Provident fund
    • Staff account

    Check how your CV aligns with this job

    Method of Application

    Interested and qualified? Go to Dis-Chem Pharmacies on dischem.simplify.hr to apply

    Build your CV for free. Download in different templates.

  • Get new ICT / Computer jobs like this on Telegram.Subscribe on Telegram
  • Send your application

    View All Vacancies at Dis-Chem Pharmacies Back To Home

Career Advice

View All Career Advice
 

Subscribe to Job Alert

 

Join our happy subscribers

 
 
Send your application through

GmailGmail YahoomailYahoomail