Talent.com
Security Engineer
Security EngineerZealhr • Pretoria, Gauteng, South Africa
Security Engineer

Security Engineer

Zealhr • Pretoria, Gauteng, South Africa
4 days ago
Job description

Job Description

Are you ready to be the cybersecurity cornerstone of a fast-moving tech environment Were looking for a sharp strategic IT Security Engineer to lead our company-wide security effortsfrom infrastructure hardening and penetration testing to audit readiness and compliance documentation. Youll own the roadmap for SOC2 and HiTrust collaborate across DevOps and RAQA and implement proactive measures that protect our systems data and reputation. If you thrive on precision automation and staying five steps ahead of threats this is your chance to make a measurable impact.

Responsibilities :

Cybersecurity Management 40%

  • Drive development standards and processes related to cybersecurity compliance.
  • Monitor all cybersecurity processes operations and infrastructure monitoring internal and external policy and regulatory compliance.
  • Review and evaluate development designs (for existing products and during design phase for new products) to identify gaps in cybersecurity controls and drive updates to any cybersecurity or compliance documentation.
  • Liaise with internal and external stakeholders to prepare for SOC2 Type 2 and HiTrust).
  • Drive cybersecurity audit strategy and readiness from a dev security and devops perspective.
  • Identify implement and maintain all security tools and technology.
  • Schedule (and ideally automate) internal vulnerability scans remediating findings and ensuring accurate & timely reporting to satisfy PCI DSS requirements.
  • Schedule annual Penetration Tests with external supplier(s) and ensure implementation of items identified in remediation plans.
  • Complete required cybersecurity applications and records for large customers and audits including reporting as required.

Infrastructure Management 30%

  • Drive and action where required the planning installation monitoring and maintenance of IT systems and infrastructure focused on cyber security including any penetration testing that is required.
  • Design and execute short- and long-term initiatives to detect and prevent any security vulnerabilities in the IT infrastructure (cloud security and devops) to meet current and future needs.
  • Develop execute and oversee procedures policies and related training plans for cybersecurity project management and infrastructure administration.
  • Conduct research and recommend changes in services products protocols and standards to support development efforts and infrastructure procurement.
  • Define software and hardware security standards in collaboration with stakeholders and owners for the provisioning of the development and IT infrastructure.
  • Ensure appropriate security levels on network infrastructure and servers are maintained ensuring that
  • the IT team follows the requirements set in line with cybersecurity standards.
  • Implement cybersecurity continuous improvement programs.
  • Crisis management - keeping stakeholders informed and actively working with teams to return service in the shortest possible time frame. This would include documenting all disaster recovery procedures.
  • Effective management and optimisation of vendors (where applicable) as well as collaborating with the dev and IT teams as necessary.
  • Risk Management and Compliance 20%

  • Collaborate with divisional the RAQA team and Senior Managers to define and centralize risks and put mitigation measures in place for new and existing products and services from a cybersecurity and privacy perspective.
  • Improve the automation of security controls.
  • Work closely with the dev team on defining industry-standard processes and system requirements identifying and proposing fixes to shortcomings in the development lifecycle code reviews and scanning as well as infrastructure provisioning.
  • Work with the dev team to ensure that security standards and policies are being set up and configured correctly ensuring adherence to certifications and best-practice.
  • Assist with remediations on risk items identified from security and preventative detection reviews to ensure compliance and ensure the security posture of the IT landscape is ensured at all times.
  • Remediate audit items by putting measures in place to prevent the recurrence of findings. For example by making sure that audit findings are resolved by the relevant personnel and that the resolutions are such that they prevent the item from reoccurring in the future.
  • Manage internal and external audits as required with relation to cybersecurity.
  • Maintain documentation for cybersecurity-related risks processes and findings.
  • QMS and Documentation 10%

  • Manage annual cybersecurity roadmap IT audit (internal and external) plan and calendar.
  • Work closely with the Compliance team to gather and submit evidence for all security and IT audits.
  • Proactively keep stakeholders updated on status progress risks and problems.
  • Review and approve documented outcomes of Penetration Tests Remediation Plans and required activities.
  • Review and approve documented outcomes of Vulnerability Scans Remediation Plans and required activities.
  • Maintain cybersecurity documents and records in line with certification requirements.
  • Maintain document bank and matrix for the cybersecurity setup and external customer-audit matrix requests. For example ensuring that all cybersecurity related information such as architectural diagrams asset lists asset control lists and vulnerabilities can be referenced from a single central source from which to direct the readers to the appropriate resources.
  • Role Requirements

    Minimum education (essential) :

  • Engineering degree (Computer Software Mechanical or Electronic)
  • Minimum education (desirable) :

  • OSCP (Offensive Security Certified Professional)
  • PNPT (Practical Network Penetration Tester)
  • CISSP(Certified Information Systems Security Professional)
  • CCSP (Certified Cloud Security Practitioner)
  • Minimum applicable experience (years) :

  • Minimum 5 years experience in Technology & Software
  • Minimum 3 years experience in Cybersecurity
  • Required nature of experience :

    AWS ecosystem :

  • AWS Well Architected Framework
  • Trusted Advisor
  • GuardDuty / SCP / SSM / IAM / WAF
  • Container services such as ECS / EKS
  • Incident detection and response management.
  • Performing penetration tests and vulnerability scans against networks and infrastructure applications and AWS environments.
  • Drafting and implementing security policies security procedures security design and implementation.
  • The following would be advantageous :

  • ISO 14971 (risk management) compliance
  • ISO 27032 (cybersecurity) compliance
  • SOC2 Type 2 (with HiTrust attestation) or HiTrust experience (or equivalent)
  • Skills and Knowledge (essential) :

  • Deep understanding of automation quality engineering architectural methodologies principles and solution design.
  • Familiarity with operational observability including log aggregation application performance monitoring etc.
  • Understanding of the following : Linux / Windows server and application administration and configuration networking scripting and automation large scale distributed computing architecture.
  • Solid knowledge of IT security (firewalls EDR IDS / IPS SOAR vulnerability scanning forensic and Threat Hunting).
  • Understanding of AWS ECS & Kubernetes and Containerisation (Docker / Podman / Containerd) with implementation support and design.
  • Knowledge in security classification frameworks like MITRE or the cyber-attack kill chain.
  • Good knowledge and understanding of industry standards memberships and frameworks such as CIS and SOC 2.
  • Key Skills

    Splunk,IDS,Network security,Computer Networking,Identity & Access Management,PKI,PCI,NIST Standards,Security System Experience,Information Security,Encryption,Siem

    Employment Type : Full-Time

    Experience : years

    Vacancy : 1

    Create a job alert for this search

    Security Engineer • Pretoria, Gauteng, South Africa

    Related jobs
    Software Engineer (Cryptography and Network Securi

    Software Engineer (Cryptography and Network Securi

    E and D Recruiters • Pretoria, Gauteng, South Africa
    International Company - Software Engineer (Cryptography and Network Security).This exciting career opportunity is for a person with skills in Cryptography and computer & network security.We require...Show more
    Last updated: 30+ days ago • Promoted
    Cyber Security Specailist (Infra)

    Cyber Security Specailist (Infra)

    Transnet SOC Ltd • Pretoria, Gauteng, South Africa
    Providing security support through monitoring, analysis, detection and mitigation of threats against the Transnet Engineering environment. Identifies and remediate the vulnerabilities that may cause...Show more
    Last updated: 18 hours ago • Promoted • New!
    Security Engineer

    Security Engineer

    Air Chefs • Pretoria, Gauteng, South Africa
    We're looking for an experienced Security Engineer to support our cybersecurity and compliance efforts across product, operations, and infrastructure. Cybersecurity Management (40%).Develop and main...Show more
    Last updated: 28 days ago • Promoted
    Cybersecurity Engineer : Security Operations & Risk Advisory

    Cybersecurity Engineer : Security Operations & Risk Advisory

    Bcx • Pretoria, Gauteng, South Africa
    A leading cybersecurity solutions provider in Pretoria is seeking a Cybersecurity Engineer responsible for safeguarding customer networks by managing firewall requests and incidents.The ideal candi...Show more
    Last updated: 1 day ago • Promoted
    Security Software Developer

    Security Software Developer

    E&D Recruiters • Pretoria, South Africa
    Electronic Engineering) or BEng / BSc (Computer Engineering) or Computer Science.Experience writing software in C and C++ for embedded platforms. Experience or knowledge in communications security and...Show more
    Last updated: 27 days ago • Promoted
    Manager : Security Systems Design and Applications - GSMD

    Manager : Security Systems Design and Applications - GSMD

    South African Reserve Bank • Pretoria, ZA
    Job title : Manager : Security Systems Design and Applications - GSMD.Job Location : Gauteng, Pretoria.The main purpose of this position is to oversee the Security Systems Design and Applications Fu...Show more
    Last updated: 1 day ago • Promoted
    Security Engineer

    Security Engineer

    wePlace • Pretoria, South Africa
    Responsible for company-wide cybersecurity and related documents, process and record management to ensure that systems and products are safe and effective. Ensures data integrity, and that informati...Show more
    Last updated: 30+ days ago • Promoted
    Infra Cyber Security Specialist - Cloud & Threat Defense

    Infra Cyber Security Specialist - Cloud & Threat Defense

    Transnet SOC Ltd • Pretoria, Gauteng, South Africa
    A major South African engineering firm is seeking an Information Security Analyst to enhance cybersecurity measures.The role involves monitoring networks for breaches, conducting penetration tests,...Show more
    Last updated: 18 hours ago • Promoted • New!
    Manager : Security Systems Design and Applications

    Manager : Security Systems Design and Applications

    Kamo Placements • Pretoria, South Africa
    Manage the provision of security systems management for the Company Group to ensure that appropriate security infrastructure is utilised. Manage the research, design and implementation of security s...Show more
    Last updated: 8 days ago • Promoted
    Network Security Engineer

    Network Security Engineer

    Recruit • Pretoria, Gauteng, South Africa
    Our client is looking for a Security network Engineer for a 2 year contract.The Network Security Engineer will design, implement, and maintain robust network security infrastructure to protect Cust...Show more
    Last updated: 3 days ago • Promoted
    Remote DevSecOps Engineer - Cloud Security & Automation

    Remote DevSecOps Engineer - Cloud Security & Automation

    Mukuru • Pretoria, Gauteng, South Africa
    Remote
    A leading fintech company is seeking a skilled DevSecOps Engineer to enhance its security posture.The successful candidate will work with AWS, Kubernetes, and CI / CD pipelines to ensure secure devel...Show more
    Last updated: 2 days ago • Promoted
    Cyber Security Specailist (Infra)

    Cyber Security Specailist (Infra)

    Transnet Company • Pretoria, Gauteng, South Africa
    Operating Division : Transnet Engineering.Department : ICT, Infrastructure & Systems Arch, KNP.Reporting To : Manager : ICT Infrastructure-KNP. The closing date is on 02 / 12 / 2025.It is the responsibility...Show more
    Last updated: 18 hours ago • Promoted • New!
    Security Engineer

    Security Engineer

    The Hiring House • Pretoria, South Africa
    Risk Management and Compliance.Engineering degree (Computer, Software, Mechanical or Electronic).Minimum education (desirable) : . OSCP (Offensive Security Certified Professional).PNPT (Practical Netw...Show more
    Last updated: 30+ days ago • Promoted
    Security Engineer - Cloud, Compliance & Threat Defense

    Security Engineer - Cloud, Compliance & Threat Defense

    Air Chefs • Pretoria, Gauteng, South Africa
    An airline service provider in Pretoria is seeking a Security Engineer to enhance its cybersecurity efforts.This role involves developing security standards, managing cybersecurity operations, and ...Show more
    Last updated: 18 hours ago • Promoted • New!
    Lead Network Security Engineer

    Lead Network Security Engineer

    Recruit • Pretoria, Gauteng, South Africa
    A leading recruitment firm is seeking a Security Network Engineer for a 2-year contract in Pretoria, South Africa.The successful candidate will be responsible for designing and maintaining robust n...Show more
    Last updated: 3 days ago • Promoted
    Protection Engineer

    Protection Engineer

    IOCO • Pretoria, South Africa
    We are seeking a highly skilled Protection Engineer.This role requires in-depth knowledge of feeder, transformer, bus bar, capacitor bank schemes, as well as protection settings and load flow studi...Show more
    Last updated: 30+ days ago • Promoted
    Security Analyst (Pentester)

    Security Analyst (Pentester)

    Redherd.io • Pretoria, Gauteng, South Africa
    We are looking for a highly skilled Security Analyst (Penetration Tester) to join one of South Africa’s largest and most reputable security consulting firms, based in Pretoria.This semi-hybrid role...Show more
    Last updated: 30+ days ago • Promoted
    Manager : Security Systems Design + Applications

    Manager : Security Systems Design + Applications

    SHARON NUROCK RECRUITMENT CC • Pretoria, South Africa
    Lead the design, research and build of security systems (ACS, CCTV, alarms, sensors, perimeter systems).Provide strategic oversight for the teams security research and system design initiatives.Hig...Show more
    Last updated: 5 days ago • Promoted