Jobs Career Advice Post Job
X

Send this job to a friend

X

Did you notice an error or suspect this job is scam? Tell us.

  • Posted: Apr 19, 2023
    Deadline: Not specified
    • @gmail.com
    • @yahoo.com
    • @outlook.com
  • NTT Ltd. is a leading, global technology services company. In a constantly evolving world, technology doesn’t stand still. And nor do we. Every wave of change is an opportunity to transform your business today, so you can reshape the outcomes of tomorrow. As a global technology services provider, we help our people, clients, and communities do great...

     

    Senior Penetration Tester

    Want to be a part of our team?

    • Performs penetration testing and attack simulations on business critical infrastructure including internal servers, networks and applications to identify and resolve security flaws. Probes for security weaknesses in applications, networks and systems. Experiments with various methods attackers could use to exploit information security vulnerabilities. Completes threat assessment reports that outline penetration test findings and presents findings to management. May conduct physical security assessments of servers, systems and network devices. Collaborates with cybersecurity team to maintain the company’s information security policies and procedures.

    Working at NTT

    • The primary responsibility of the Penetration Tester is to proactively support the evaluation of NTT Ltd’s external and internal presence by discovering, evaluating, exploiting and reporting vulnerabilities. The role is internally focused to the business with a remit covering all areas of IT infrastructure, applications and systems.

    Key Roles and Responsibilities:

    • Perform penetration tests against internal and external facing systems.
    • Provide input to improve the quality and effectiveness of tests in a highly scaled and global environment.
    • Articulate complex technical risks through creation of reports and delivering presentations to key stakeholders.
    • Work with Security DevOps teams to test the orchestration and automation processes and platforms, feed results into a testing program.
    • Support the assessment risk and the development and/or recommends appropriate mitigation countermeasures based on empirical testing.
    • Provide comprehensive technical expertise with web, application and database vulnerability testing
    • Support the development of the security automation framework and the implementation roadmap.

    Knowledge, Skills and Attributes:

    • Ability to work unsupervised in a remote capacity and deliver results
    • Demonstrate a strong ability to engage with various stakeholders, have a team based approach and work towards share goals and outcomes.
    • Ability to think outside the box and a passion to improve your skills and drive innovation
    • Ability to compromise systems and demonstrate ways to laterally move post compromise
    • Academic Qualifications and Certifications:
    • Information Technology degree
    • Security related certifications such as OSCP, OSCE or CREST are desirable

    Required Experience:

    • Extensive penetration testing experience in a similar role.
    • Experience with both commercial and open source security tools and scripting languages
    • Exposure to security testing scenarios e.g. Capture the Flag / Red Team / Blue Team is desirable
    • Experience with various testing platforms e.g. Hack the Box / Vulnhub / PentesterLab is desirable

    go to method of application »

    Security Solutions Architect

    Want to be part of our team?

    • Provides primarily pre-sales technical support for the development and implementation of complex products/applications/solutions. Uses in-depth product knowledge to provide technical expertise to sales staff and the customer through sales presentations and product demonstrations. Assists the sales staff in assessing potential application of company products to meet customer needs and may prepare detailed product specifications for the development and implementation of customer products/applications/solutions. May create detailed design and implementation specifications for complex products/applications/solutions. May build a mini-application based on customer requirements to demonstrate feasibility of the application, often requiring rapid prototyping and/or product demo for client. May provide consultation to prospective users and/or product capability assessment and validation.

    What You'll Be Doing

    • The primary responsibility of the Solutions Architect is to consult with the client and work with internal teams to create strategies, transformational designs and the architectural vision for complex solutions that address the clients’ needs. They provide multi-technology consulting services on all aspects of application software, infrastructure and related technology components.

    Key roles and responsibilities:

    • Contributes to the development of solution architectures in specific business, infrastructure or functional areas.
    • Identifies and evaluates alternative architectures and the trade-offs in cost, performance and scalability.
    • Produces specifications of cloud-based or on-premises components, tiers and interfaces, for translation into detailed designs using selected services and products.
    • Supports a change programme or project through the preparation of technical plans and application of design principles that comply with enterprise and solution architecture standards.
    • Takes responsibility for understanding client requirements, collecting data, delivering analysis and problem resolution.
    • Monitors the external environment to gather intelligence on emerging technologies.
    • Creates reports and technology roadmaps and shares knowledge and insights with others.
    • Designs components using appropriate modelling techniques following agreed architectures, design standards, patterns and methodology.
    • Creates multiple design views to address the concerns of the different stakeholders of the architecture and to handle both functional and non-functional requirements, including proof of concept (POC).
    • Reviews, verifies and improves own designs against specifications.
    • Contribute to the development of new go to market services and contributes knowledge on relevant verticals.
    • Operate across both the technical levels within the enterprise architecture and the value chain in order to develop holistic and integrated solutions.

    Knowledge, Skills And Attributes

    • Solid knowledge of multi-vendor service integrations and cross-functional software, OS’s and infrastructure designs
    • Excellent communication skills both verbal and written
    • Knowledgeable on how specific infrastructures and application software are deployed in line with relevant methodologies and frameworks
    • Ability to develop and leverage their knowledge of reference architectures
    • Ability to maintain knowledge of trends and development in technology domains

    Academic qualifications and certifications:

    • Qualification in Information Technology or Information Systems
    • Certification and working knowledge of Enterprise Architecture methodologies (e.g. TOGAF, Zachman, SOA, ITIL, COBIT, etc.)
    • SAFe Scaled Agile certification advantageous

    Experience required:

    • Solid professional technical, IT or Operations experience within a large scale (preferably multi- national) technology services environment on the following areas: Software Development, Application Support and Infrastructure Support
    • Some Project or Program Management experience would be preferred but not essential
    • Proven client engagement and consulting experience coupled with solid experience in client needs assessment and change management
    • Proven experience in integrating the solution for the particular project with the business domain, enterprise concerns, industry standards, established patterns and best practices
    • Experience working in an agile development environment

    go to method of application »

    Information Security Manager

    Want to be a part of our team?

    • Manages the development, deployment and execution of controls and defences to ensure the security and risk mitigation of company infrastructure technology, information systems and digital payment systems. Identifies cybersecurity architecture, goals, objectives and metrics; analyzes business needs and priorities for protection of critical systems. Establishes and implements operational policies and appropriate standards and criteria for hardware, software, email and web firewall, access verification and encryption requirements. Monitors systems for cybersecurity vulnerabilities, threats and events, oversees incident response planning, and leads vulnerability audits and forensic investigations. Evaluates potential business impacts from security breaches and provides strategic and tactical guidance to business decision-makers. Develops and executes security systems compliance policies and procedures. Selects, develops and evaluates personnel to ensure the efficient operation of the function.

    Working at NTT

    • Information Security Management has the responsibility to work closely with the Information Security Office (CISO) team to contribute in developing and enhancing the global Information Security Strategy and will have the responsibility and accountability for translating, directing, and implementing the global Information Security strategy across the NTT organisation. Incumbents within this role are responsible for technical leadership within the Information Security function and liaising closely with other managers on matters of Information Security. Information Security Management is responsible for safeguarding against current and future security risks. This role collaborates with other NTT key stakeholders and the broader NTT Information Security community to establish the vision, tenets, and comprehensive security strategy to mitigate risks. They will leverage their technical expertise and strong business acumen to define objectives, priorities, and establish appropriate milestones and actions to ensure the reduction of risk through the implementation of security controls and recommended mitigation strategies are delivered on, as committed to key senior management.

    Key Roles and Responsibilities:

    • Provide line management and mentorship of a team of Security Engineers, Security Consultants, Security Architects and DevSecOps Engineers
    • Define the overall strategic security architecture vision in conjunction with the CSO – TPS
    • Provide technical leadership on security initiatives
    • Provide leadership and direction for the TPS Information Security staff embedded and distributed throughout the organisation
    • Lead cross-functional teams in implementing Information Security
    • Liaise with and provide SME advice on Information Security matters such as BAU security activities, emerging security risks and relevant security controls, across the TPS functions (such as Research & Development, Corporate IT Management, Governance, Risk & Compliance Management, HR and Legal, Product Engineering, Product Management and Operations) in addition to senior management, department heads and managers as necessary
    • Work with department heads and other managers to champion the priority of security initiatives
    • Deliver a “Center of Excellence” for Information Security, offering internal consultancy, advice and pragmatic assistance on Information Security risk and control matters throughout the organisation and promoting the advantages of managing Information Security risks more efficiently and effectively
    • Provide leadership and strategic direction for the function, ranging from planning and budgeting to the value of Information Security & Certifications
    • Build a culture of security and create a compelling security vision and strategy for the company
    • Develop a layered defence strategy to protect our assets
    • Function as an internal consulting resource on Information Security issues and incidents
    • Provide strategic security oversight and risk guidance for projects and products, including the evaluation and recommendation of technical controls and solutions
    • Mitigate enterprise vulnerabilities and reduce attack surface vectors identified through Security reviews and controls implementation
    • Oversight of Threat & Risk Assessments, Security Architecture design reviews, and project security reviews, ensuring key applications and products are assessed for risk
    • Help ensure compliance with applicable data security laws, regulations, and customer requirements
    • Develop, manage, and execute the TPS’ Information Security budget in collaboration with business stakeholders
    • Security Architecture function:
    • Commission Information Security risk assessments and controls selection activities
    • Commission ongoing review and analysis of internal and external security risks/vulnerabilities, and develop/implement cost effective, proactive risk mitigation programs
    • Security Engineering (build) function:
    • Commission Information Security controls build processes for Security controls, client-build and new services build activities
    • Security Assurance function:
    • Oversight in implementing and maintaining Application Security tools, processes and best practices
    • Commission Security Testing (penetration testing) for new projects, compliance and annual BAU testing
    • Commission Vulnerability Management for new projects, compliance and ongoing BAU activities
    • Use an integrated risk management approach to create executive-level perspectives on, and status reports about, all security risks
    • Work with other members of the TPS management team to establish appropriate priorities for security-related objectives such as resiliency, continuity, recoverability, and defensibility against risks
    • Orchestrate and harmonise security-related business process standardisation, normalisation, documentation, and continuous improvement across services

    Knowledge, Skills and Attributes:

    • Excellent team player and corporate citizen
    • Excellent communication skills – both written and verbal
    • Excellent presentation skills
    • Innovative with a solid client orientation aptitude
    • Ability to train and coach teams
    • Excellent service consulting aptitude focussing on the business, service and sales aspects
    • Technology specialist who provide senior mentorship, thought leadership and technical guidance to stakeholders & solution architects, specialists, developers and business development managers
    • Ability to use previous technical project lead experience to guide successful implementation of a system solution
    • Impeccable attention to detail with the ability to translate internal customer requirements into solutions
    • Resourceful and confident in order to handle pressure in critical situations, ensuring that the client (internal and external) requirements are met
    • Articulate and persuasive leader who can serve as an effective member of the senior management team and who is able to communicate security-related concepts to a broad range of technical and non-technical staff
    • Solid understanding of security practices in a cloud (public/private) world
    • Highly developed technical capability across a broad range of Security products/solutions
    • Ability to map business needs to technology solutions
    • Solid understanding of information technology and Information Security
    • Solid understanding of security risks and preventative controls
    • Solid understanding of security operational processes and controls
    • Interpersonal skills with the ability to develop strong relationships
    • Ardently attuned to security news, trends, risks, and events and be able to understand vulnerabilities and exploit code sufficiently to understand security implications and assess their impacts
    • Ability to remain relevant in security threats, countermeasures, security tools, and network technologies
    • Motivated with the drive to succeed
    • A strong client service orientation
    • Ability to negotiate and influence
    • Good project, analysis, problem-solving, and business relationship skills

    Academic Qualifications and Certifications:

    • Bachelor’s in Computer Science or equivalent degree together with specialised training in new technologies and legacy systems
    • CISSP or equivalent certification (Highly Desirable)
    • SABSA or TOGAF certification (Highly Desirable)

    Required Experience:

    • Extensive experience in the Technology Information Security Industry
    • Demonstrable experience in a similar role
    • Demonstrable experience with business continuity planning, auditing, and risk management, as well as contract and vendor negotiation

    Method of Application

    Use the link(s) below to apply on company website.

     

    Build your CV for free. Download in different templates.

  • Get new ICT / Computer jobs like this on Telegram.Subscribe on Telegram
  • Send your application

    Back To Home

Career Advice

View All Career Advice
 

Subscribe to Job Alert

 

Join our happy subscribers

 
 
Send your application through

GmailGmail YahoomailYahoomail