Job Summary
We are seeking a highly skilled Senior ICT Infrastructure Engineer (Cyber Security Tools) to enhance and maintain our cyber security technology stack, focusing on vulnerability management, compliance, automation, and operational efficiency.
Responsibilities
Lead vulnerability management of assigned cyber security tools by proactively monitoring vulnerabilities, planning remediation schedules, and managing risk assessments for deviations
Engineer and continuously improve the Tenable Vulnerability and Compliance Management platform architecture and operations
Administer and troubleshoot Tenable Nessus platform components including agent-based scans, credentialed scans, plugin updates, and scan policies to ensure accurate vulnerability assessments
Develop, maintain, and optimize Tenable Audit Files for CIS Benchmark compliance, tailoring audit policies to meet organizational security standards and regulatory requirements
Lead security compliance efforts through system hardening, configuration management, and enforcement of security policies
Manage IT lifecycle processes including timely updates and upgrades with minimal business disruption
Plan system downtime and collaborate with cross-functional teams to coordinate updates and upgrades
Support regular security audits and perform remediation actions to address findings
Manage vendor relationships to ensure effective tool support and service delivery
Provide operational support across a multi-vendor network environment including Critical Information Infrastructure (CII)
Participate in Disaster Recovery exercises and contribute to architectural planning for managed security tools in cloud environments
Manage tool setups, migrations, and configurations to maintain operational readiness
Create, maintain, and review technical documentation and Standard Operating Procedures (SOP) as part of Knowledge Management
Drive operational efficiencies by applying AI and automation technologies to security tool operations
Provide after-hours support, including weekends, as required
Required competencies and certifications
Tenable Security Center Specialist or equivalent certification (mandatory)
Hands-on experience administering and maintaining the Tenable vulnerability management platform including Tenable One, Tenable Security Center, and Nessus Scanners (minimum 3 years)
Hands-on experience developing and optimizing Tenable Audit Files for CIS Benchmark compliance (minimum 3 years)
Hands-on experience administering and troubleshooting Tenable Nessus platform operations (minimum 3 years)
Experience operating Privileged Access Management (PAM) tools such as CyberArk
Minimum 5 years of hands-on experience in cybersecurity operations and security tool management
Preferred competencies and qualifications
Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related field
Strong vendor management skills
Effective written and verbal communication skills with ability to influence and communicate with non-technical audiences including management
Ability to manage work in fast-paced environments across heterogeneous networks including cloud environments and Critical Information Infrastructure (CII)