Posted on: 27/01/2026
Job Description :
The IT Security & Compliance Specialist is responsible for maintaining, monitoring, and enhancing the organizations IT security posture across hardware, software, and cloud environments. The role focuses on ensuring compliance with information security standards, managing security operations tools and processes, and proactively identifying and mitigating risks to protect organizational assets.
Key Responsibilities :
IT Security & Compliance :
- Maintain and ensure IT security compliance across the organizations IT infrastructure, including hardware, software, and cloud environments
- Implement, monitor, and enforce information security policies, standards, and procedures
- Ensure compliance with industry standards and frameworks such as ISO 27001, ISO 20000, and other applicable security controls
- Support internal and external audits, risk assessments, and compliance reviews
- Maintain documentation related to security controls, policies, procedures, and compliance reports
Security Operations & Monitoring :
- Operate and manage SOC tools for monitoring, detecting, and responding to security incidents
- Perform continuous monitoring of systems, networks, and applications for security threats and vulnerabilities
- Investigate security alerts, analyze incidents, and coordinate remediation activities
- Support incident response processes, including root cause analysis and corrective actions
Vulnerability Management & Testing :
- Conduct application penetration testing and vulnerability assessments on systems, applications, and networks
- Analyze vulnerability scan results, prioritize risks, and work with IT teams to remediate findings
- Track and report on vulnerability remediation status and risk metrics Systems, Identity & Cloud Security (Nice to Have)
- Support security aspects of system administration, database administration, and Active Directory (AD)
- Assist with identity and access management, role-based access control, and user privilege reviews
- Support security configuration and compliance in Azure Cloud and Office 365 environments
Process Management & Continuous Improvement :
- Define, implement, and improve IT security and SOC processes
- Ensure adherence to incident management, change management, and problem management processes
- Drive continuous improvement initiatives related to security operations and compliance
Stakeholder Engagement & Communication :
- Effectively communicate security risks, findings, and recommendations to technical and non-technical stakeholders
- Prepare and deliver security training, awareness sessions, and presentations
- Work closely with internal teams and customers to understand requirements, address concerns, and provide timely resolutions
- Build strong relationships through active listening, empathy, and professional communication
Qualifications :
- Graduate in IT or a related discipline (Minimum requirement)
- Preferred : Female candidate
Required Skills & Knowledge :
- Strong knowledge and hands-on experience with SOC tools and security monitoring solutions
- Experience in application penetration testing and vulnerability assessment
- Solid understanding of IT security principles, risk management, and compliance requirements
- Experience with security incident handling and process management
- Excellent verbal and written communication skills Strong reporting and documentation skills
Certifications (Preferred / Mandatory) :
- One or more of the following certifications : CSA CISM ISO 27001 / ISO 20000
- Any other recognized IT Security certification
- Optional Certifications : Azure Cloud / Office 365 certifications ITIL
Experience :
- Minimum 5 years of experience in IT Security SOC tools and operations Security process management
Personal Attributes :
- Strong interpersonal and communication skills with the ability to explain complex security topics clearly
- Proven training and presentation skills
- Ability to effectively articulate ideas and convey information to diverse audiences
- Customer-focused mindset with the ability to : Establish rapport Actively listen to needs and concerns
- Demonstrate empathy : Address inquiries or issues promptly and professionally
- Detail-oriented with strong analytical and problem-solving abilities
- Reporting Structure : Reports directly to the Practice Head
Did you find something suspicious?
Posted by
Posted in
CyberSecurity
Functional Area
IT Security
Job Code
1606111