Company: NES Fircroft
Skills: IT - Analysis & Management, Risk Management
Experience: 5 + Years
Education: Bachelors/3-5 yr Degree
Employment Type: Full Time Contractor
Location: Algeria, Algeria


Cyber Security Assurance Engineer - 12 Months Contract - 28 x 28 Rotation - Algeria
 
NOTE:-   Client is looking for and IT Security background but over the last 5 years has been working within Cyber Security so more on the Risk management, Compliance, Security Processes Audit side, so this is not a technical Network Security role. You will need to be able to work with stakeholders and hold meeting with them. Security Certifications CISSP etc required and a bachelor's degree in Computer Science or Information Technology.
 
Cyber Security Assurance Engineer Overview
The Cyber Security Assurance Engineer provides direction for the risk management and compliance functions within the Information Security team.  This person will conduct activities ranging from policy, auditing, and risk analysis to overall risk mitigation. This individual will also build, develop, and maintain relationships with our internal stakeholders and external vendors to help mature and enhance our enterprise-wide compliance with security.
You will support security risk assessments, implementations and operations of security technologies and software tools especially in area of data loss prevention and/or identity and access management. The successful candidate will also help to develop operational processes for identity or data loss lifecycle management and document assessment results.
 
Cyber Security Assurance Engineer Position Duties:
 
  • Responsible for all activities within the security compliance and risk management lifecycle. These activities include: risk analysis, auditing, mitigation, and governance & policy.
  • Develop, update, and monitor compliance with information security policies designed to ensure the confidentiality, integrity, and availability of systems and data.
  • Manage periodic independent security audits, i.e. ISO27001, ISO 9001, SSAE18
  • Manage internal and client information security audits
  • Technical risk and compliance assessment support
  • Support design and implementation of data loss and / or identity management systems
  • Support of operational activities e.g. operational review and analysis of access requests and/or data leakages to ensure compliance, 
  • Oversee periodic penetration tests and triage remediation for vulnerabilities identified
  • Leads efforts in developing/improving process, procedures, and documentation for all aspects of security
  • Work closely with key process owners to implement the agreed remediation actions
  • Identify and recommend gaps and improvements to business processes
  • Lead workshops with Process and Control Owners
  • Perform control testing and agree results with control owners
  • Work closely with key process owners to implement the agreed remediation actions
  • Oversee Security Service projects to ensure products are developed in compliance with security standards and practices
 
Candidate Requirements:
  • Experience: 5+ years of IT administration (not networking) and Security engineering experience
  • Relevant security knowledge and experience in two or more of the following areas: Audit, compliance, risk management & GRC tools
  • Firm understanding of networking basics, including TCP/IP, FW, Domains, Active Directory Management
  • Windows System administration
  • Working knowledge of at least one scripting language (Python and Shell preferred)
  • Good understanding of security concepts, such as system hardening and vulnerability management and remediation
  • Experience maintaining critical and high visibility services for stakeholders
  • Policy configuration and implementation for networking and endpoint security controls
  • Demonstrated experience helping an organization successfully complete independent compliance audits under SOX, etc.
  • Well-versed in recognized security industry standards and leading practices, i.e. ISO, PCI, NIST, CIS, FedRamp,
  • Advanced knowledge of network protocols and operating systems (Windows, Unix, Linux, Databases)
 
 




With over 90 years' combined experience, NES Fircroft (NES) is proud to be the world's leading engineering staffing provider spanning the Oil & Gas, Power & Renewables, Infrastructure, Life Sciences, Mining, Automotive and Chemicals sectors worldwide.With more than 100 offices in 45 countries, we are able to provide our clients with the engineering and technical expertise they need, wherever and whenever it is needed. We offer contractors far more than a traditional recruitment service, supporting with everything from securing visas and work permits, to providing market-leading benefits packages and accommodation, ensuring they are safely and compliantly able to support our clients.