Security Specialist

Firmenname für PREMIUM-Mitglieder sichtbar

  • August 2024
  • nicht angegeben
  • CH-Basel
  • auf Anfrage
  • 16.07.2024
  • CR/117318_1721120203

Projekt Insights

seit wann aktiv?
Projektansichten
Bewerbungen

Projektbeschreibung

We have a current opportunity for a Security Specialist on a contract basis.

Background:

We are looking for a professional Security Specialist to join our Corporate Security team to support in our strategic and governance security environment. This would be an operational role running on going corporate security work-packages, also supporting various deliverables for projects. The team is made up of around 6 other members and they focus on review, create and update Security Policies and Standards following industry best practices.

Perfect candidate:
Security Specialist with an ability to perform cyber/technology risk assessments across multiple platforms which include Cloud applications, operating systems and network infrastructure.
The candidate should be able to develop security policies and compliance standards (could come also from a technical audit background). The candidate should have a very good technical understanding and ownership mindset. Also very dynamic, results oriented and comfortable with reporting.

General Information:
* Start date: ASAP
* End date: 12 months contract
* Work location: Basel
* Workload: 100%

Tasks & Responsibilities:
Provide expert advice and operational experience on information security risk and control matters throughout the organisation. This includes:
* Review of existing security standards/baselines and creation of new ones
* Conduct compliance reviews/audits of the organization's information assets.
* Support the maturing of the penetration testing strategy and support in scoping and engagement with third parties
* Review and advise on the security measures to protect the confidentiality, integrity and availability of the client's information assets and critical services.
* Perform risk assessments and contribute to reviews of the assessment methodology
* Contribute to the implementation of industry-recognised key critical controls and contribute to Corporate Security compliance mandate
* Support the team on technical security projects, in particular to develop and enhance the client's security policies and procedures. Participate in the gathering and analysis of information from security-related sources

Must haves:
* Familiarity with industry-recognized frameworks and controls (e.g., NIST CSF, CIS, OWASP, SANS, etc…). We are looking for experience in implementing these frameworks.
* Security knowledge in cloud technology, operating system, application security, penetration testing and sound knowledge of cyber governance risk management practices
* Certification in security-related disciplines and technologies would be an advantage (accreditation such as CISSP, CRISC, CISA, OSCP, PCI DSS)
* Experience with documenting and communicating results that may be consumed by both developers and management-level audiences.
* Experience with some of the following:
o Security Policy and Standard creation
o Risk management processes

Nice to Have:
* TFS, SharePoint, DevOps
* Azure Security Centre
* Compliance monitoring tools
* KRI/KPI development and monitoring
* Nexpose

If you are interested, please apply with your latest CV

Kontaktdaten

Als registriertes Mitglied von freelance.de können Sie sich direkt auf dieses Projekt bewerben.

Sie suchen Freelancer?

Schreiben Sie Ihr Projekt aus und erhalten Sie noch heute passende Angebote.

Jetzt Projekt erstellen