Job Summary
We are seeking a highly skilled Senior ICT Infrastructure Engineer (Cyber Security Tools) to enhance and maintain our cyber security technology stack, focusing on vulnerability management, compliance, automation, and operational efficiency.
Responsibilities
- Lead vulnerability management of assigned cyber security tools by proactively monitoring vulnerabilities, planning remediation schedules, and managing risk assessments for deviations
- Engineer and continuously improve the Tenable Vulnerability and Compliance Management platform architecture and operations
- Administer and troubleshoot Tenable Nessus platform components including agent-based scans, credentialed scans, plugin updates, and scan policies to ensure accurate vulnerability assessments
- Develop, maintain, and optimize Tenable Audit Files for CIS Benchmark compliance, tailoring audit policies to meet organizational security standards and regulatory requirements
- Lead security compliance efforts through system hardening, configuration management, and enforcement of security policies
- Manage IT lifecycle processes including timely updates and upgrades with minimal business disruption
- Plan system downtime and collaborate with cross-functional teams to coordinate updates and upgrades
- Support regular security audits and perform remediation actions to address findings
- Manage vendor relationships to ensure effective tool support and service delivery
- Provide operational support across a multi-vendor network environment including Critical Information Infrastructure (CII)
- Participate in Disaster Recovery exercises and contribute to architectural planning for managed security tools in cloud environments
- Manage tool setups, migrations, and configurations to maintain operational readiness
- Create, maintain, and review technical documentation and Standard Operating Procedures (SOP) as part of Knowledge Management
- Drive operational efficiencies by applying AI and automation technologies to security tool operations
- Provide after-hours support, including weekends, as required
Required competencies and certifications
- Tenable Security Center Specialist or equivalent certification (mandatory)
- Hands-on experience administering and maintaining the Tenable vulnerability management platform including Tenable One, Tenable Security Center, and Nessus Scanners (minimum 3 years)
- Hands-on experience developing and optimizing Tenable Audit Files for CIS Benchmark compliance (minimum 3 years)
- Hands-on experience administering and troubleshooting Tenable Nessus platform operations (minimum 3 years)
- Experience operating Privileged Access Management (PAM) tools such as CyberArk
- Minimum 5 years of hands-on experience in cybersecurity operations and security tool management
Preferred competencies and qualifications
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field
- Strong vendor management skills
- Effective written and verbal communication skills with ability to influence and communicate with non-technical audiences including management
- Ability to manage work in fast-paced environments across heterogeneous networks including cloud environments and Critical Information Infrastructure (CII)