Senior IT Security Engineer
Charlotte, NC, United States
DP World
DP World is a world leader in logistics management services. We ensure future viability of global international trade & prosperity of communities around the worldThe Senior IT Security Engineer is a key player in safeguarding the organization's information technology systems, networks, and data from potential threats and vulnerabilities. This role is critical in ensuring the confidentiality, integrity, and availability of the company's digital assets, as well as protecting against unauthorized access, data breaches, and cyber-attacks.
KEY ACCOUNTABILITIES
- Develop, implement, and maintain advanced security architectures and designs to protect the organization's IT infrastructure and data
- Ensure security controls are integrated into the design and implementation of new systems and services
- Participate in both project and operationally focused work regarding end user Security Protection technologies and implementing standards/processes. Participates in the implementation of recommendations arising from vulnerability assessments and other potential threats
- Provides security event monitoring and incident management support and will be required to serve as an incident manager as part of DP World’s IT Incident Management process
- Develops communications and actively promotes information security awareness among all staff and advises internal organizations on best practices for securely managing information as well as assists with the design and implementation of a formal security awareness/training program for Information Security & Compliance
- Provides input to audit log requirements/designs and periodically checks audit logs to ensure these are being maintained to agreed retention levels
- Responsible for coordinating security assessments. Coordinates and report on the results of penetration testing, proactively identifies and mitigates both internal and external threats to DP World’s information landscape and assists in the development of security checklists
- Ensure optimal configuration and maintenance of security systems to provide continuous protection
- Responsible for IT risk management by maintaining a risk/control framework that accurately reflects the IT control environment and alignment to the Information Security Policy and standards and provides recommendations on risk assessment and collaborates with legal and audit teams on items related to security & compliance
- Provide security guidance and recommendations during the development and deployment of new applications and systems
- Stay current with the latest security trends, threats, and technologies
- Recommend and implement enhancements to the organization's security posture
QUALIFICATIONS, EXPERIENCE, & SKILLS
- A Bachelor's in Computer Science or IT Security or a combination of equivalent professional training and security industry certifications, combined with a minimum of three years related work experience in a position(s) with increasing responsibility may be accepted
- CISSP
- Experience in information technology that encompasses a variety of roles, such as working with SIEM, Data Loss Protection, Vulnerability Management, Forensics, IDS/IPS, privilege and identity management as well as software and security architectures, like NIST and ISO27001
- Thorough knowledge of information security principles and practices
- Knowledge of industry standard processes (SDLC, CMMI, Change Management, ITIL, OWASP), methodologies, standards, best practices and encryption methods and techniques
- Understanding of network and host-based intrusion detection (NDS/HDS), non-repudiation, access control, network security, threat modelling, SSL / TLS, Digital Signatures, auditing architectures, application vulnerabilities and Public Key Infrastructure (PKI) is desired
- Understanding of methods and models within information security & compliance to include risk analysis and mitigation, policies, regulatory environment, technologies, architecture, and best-practices
By submitting your resume and application information, you authorize DP World to transmit and store your information in the world-wide recruitment database, and to circulate that information as necessary for the purpose of evaluating your qualifications for this or other job vacancies. #LI-EY2 #LI-Hybrid #AMRITJobs
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Audits CISSP Compliance Computer Science Encryption Forensics IDS Industrial Intrusion detection IPS ISO 27001 ITIL IT infrastructure Monitoring Network security NIST OWASP Pentesting PKI Risk analysis Risk assessment Risk management SDLC Security assessment SIEM TLS Vulnerabilities Vulnerability management
Perks/benefits: Startup environment
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.