Our client is looking for a junior who would like to start his career in Information Security and join their team as an Information Security Officer.
Job Overview
The Information Security Officer plays a key role in safeguarding organisational information assets, core systems, and technical services. The successful candidate will support the execution, maintenance, and continuous optimisation of the Information Security Management System (ISMS), security governance controls, and overall cyber resilience.
Responsibilities
- Governance, Risk & Compliance (GRC): Help design, maintain, and refine the ISMS in alignment with ISO 27001 and established security standards. Conduct routine reviews of access controls, system configurations, and policy compliance.
- Audit & Assurance: Facilitate internal and external security audits by compiling compliance documentation, gathering evidence, and tracking corrective action plans to resolution.
- Threat Detection & Incident Response: Monitor, analyse, and triage security alerts and events using platforms such as SIEM, XDR, and NDR. Lead containment, eradication, and recovery efforts during security incidents, and participate in business continuity and disaster recovery simulation exercises.
- Vulnerability & Technical Assessment: Execute regular technical risk and vulnerability evaluations across cloud, network, application, and physical infrastructure environments. Coordinate internal and external penetration testing initiatives and drive remediation efforts.
- System Hardening & Engineering Support: Collaborate with Infrastructure, Network, and Software Development teams to provide guidance on secure system architecture, baseline hardening, patch management, and secure coding practices.
Requirements
- Demonstrated experience in information security, cybersecurity operations, or GRC. Proven track record of executing technical security assessments, vulnerability scans, and penetration tests.
- Strong grasp of core information security principles across infrastructure, cloud platforms, network environments, and software application stacks.
- Familiarity with industry standards, regulatory frameworks, and privacy laws (e.g., ISO 27001, NIST CSF, GDPR).
Benefits
- Hybrid working
- Health insurance
- Flexible working hours
Education and experience
- Bachelor’s degree (MQF Level 6 or equivalent) in Information Technology, Cybersecurity, Computer Science, or a related technical field. Relevant professional experience will be considered in place of a formal degree.
- Certifications: Industry certifications such as ISC2 CC, CompTIA Security+, CySA+, CEH, or equivalent credentials are highly desirable.