Perform security assessments and identify areas for improvements and designing strategies to mitigate risks effectively.
Drive and improve enterprise-wide security initiatives, including threat detection and prevention systems, incident response functions, and vulnerability management
Engage in Incident Response in collaboration with NOC & SOC to mitigate and investigate security incidents using threat hunting and digital forensics methodology.
Design and implement robust security systems and architectures, including network segmentation, firewalls, intrusion detection and prevention systems, VPNs, and endpoint protection solutions.
Design and implement security protocols and best practices to protect journalistic content, communications, and digital assets from unauthorised access, interception, or tampering.
Improve security monitoring of the network, cloud, IAM and endpoint system environment to detect and prevent threats quicker and more accurately.
Perform security due-diligence of and define security procedures towards external vendors and third party providers to prevent supply-chain threats.
Write security documentation, including policies, standards, procedures, and guidelines, ensuring compliance with regulatory requirements and industry standards.
Collaborate with external auditors and regulatory bodies to facilitate security audits and assessments.
Contribute to the development of security training and education programs tailored to e.g. journalists and developers.
Collaborate with journalists, editors, and other stakeholders to assess security risks and vulnerabilities in journalistic workflows and communications.
Collaborate with the physical security team for assignments related to journalists operating in high risk environments.
Collaborate with journalists to understand their missions ‘on the field’ and support them with adapted tools and equipment.
Conduct security assessments and audits of digital platforms, tools, and communication channels used by journalists, identifying and remedying security weaknesses and vulnerabilities.
Contribute developing and delivering security awareness training and resources for journalists and editorial staff, promoting a culture of security awareness and vigilance.
Depending on your experience, provide guidance and mentorship to junior security team members, fostering a culture of continuous learning and development.
Requirements
Strong academic background within the areas of cyber security, computer science or other relevant field
1-3 years of experience in an IT Security role, with practical experience in implementing security controls and technologies.
Proficiency in network and system administration, with hands-on experience managing security tools and technologies such as SIEM, DLP, EDR, and vulnerability scanning tools.
Strong understanding of networking protocols, operating systems, and cloud computing platforms, with the ability to analyse and troubleshoot security-related issues.
Excellent analytical and problem-solving skills, with the ability to prioritise and manage multiple tasks effectively.
Strong communication and interpersonal skills, with the ability to collaborate effectively with both technical and non-technical stakeholders.