Security Specialist (Senior)
Discovery – Information Governance and Security
Security Specialist Senior
About Discovery
Discovery’s core purpose is to make people healthier and to enhance and protect their lives. We seek out and invest in exceptional individuals who understand and support our core purpose, and whose own values align with those of Discovery. Our fast-paced and dynamic environment enables smart, self-driven people to be their best. As global thought leaders, Discovery is passionate about innovating in order to not only achieve financial success, but to ignite positive and meaningful change within our society.
About Information Governance and Security (IGS)
The Information Governance and Security function within the Discovery Group aims to provide assurance that the organisation’s information assets are adequately protected against threats on a continual basis. This is achieved by finding the right balance of information security and business freedom.
Key Purpose
The role is pivotal in detecting and responding to cyber events which includes reviewing and continuously improving the management of the Cyber threats. The position requires strong technical and analytical expertise with sound leadership attributes. The primary focus is to ensure that all malicious activity is detected timeously utilising and improving upon the cyber detection capabilities.
Areas of responsibility may include but not limited
-
Optimise Blue / Red Team operations and maintain a working relationship with security operations teams, security officers, security architects, development, network, server and web teams
-
Contributing information and recommendations to strategic plans and reviews.
-
Preparing and completing Incident response action plans; identifying trends; determining system improvements; implementing change.
-
Coordinate and manage hi volume complex Cyber Security focused engagements whilst also responding to and managing security events and engage in security investigations
-
Systematically test and forensically detect system vulnerabilities,
-
Conduct risk pathway analysis, assist with combating global system penetrations,
-
Identify and escalate high priority events, prepare and present management risk and remediation assessment reports, and serve as a team lead to mitigate future attacks,
-
Develop an operational support plan for the sustained success of the program – including KPIs of teams, training and development of staff and identify process improvements.
Personal Attributes and Skills
-
Excellent knowledge of technology environments
-
The ability to articulate security in non-technical business impact terms
-
Customer Service Orientation, Result Orientation, Negotiation skills
-
Personal organisation and time management skills
-
Time and Task Delivery Management
-
Professional Communication (written, verbal/presenting and listening)
-
Interpersonal skills - Ability to build relationships with people from all different backgrounds and at different job levels
Qualifications & Experience
Essential
-
IT related Diploma / Degree
-
Basic IT qualifications (A+, N+ or equivalent)
Advanced Security qualifications (CISSP, CEH, OSCP, OWASP or equivalent)
-
10+ years IT Experience
-
10+ years’ experience in Information Security across 4 or more domains
-
8+ years direct incident response, cyber security
Advantageous
-
Relevant Security certifications (GPEN, OSCP, CREST,etc)
-
Expertise with security assessment methodology, vulnerability Risk management, OWASP model, CVE ratings
-
Advanced knowledge of networking protocols and equipment
-
Comfortable with packet analysis and forensic tools
-
Knowledge of a managed security service provider operating model.
-
Firewalls, IDS/IPS, Web Firewalls, Sandboxing, and other security tools.
-
Scripting with Bash, Batch, Perl, or Python – beneficial.
-
Strong understanding of Unix/Linux operating systems.
-
Ability to read web and application server logs to determine potential breaches.
-
Ability to read and action upon logs from endpoint security and malware detection tools
-
Ability to set strategic goals via cyber security industry trends in areas surrounding threat intelligence,
-
SIEM technologies and correlation.
-
Familiarity in cyber security forensics is a plus
-
Network security certifications a plus