Job Openings Senior Information Security Consultant

About the job Senior Information Security Consultant

Job Title: Senior IT Security Engineer (CyberArk & Cybersecurity Expert)

Job Description:

We are looking for a Senior IT Security Engineer with at least 5 years of experience in IT security and 10 years of technical expertise. The ideal candidate will have strong proficiency in CyberArk (PAM), Python programming, and cybersecurity frameworks such as ISO 27000 series, NIST Cybersecurity Framework, and CIS 18. This role involves securing enterprise environments, conducting vulnerability assessments, and investigating security incidents, including digital forensics and penetration testing.

Key Responsibilities:

  • Design, implement, and manage Privileged Access Management (PAM) solutions using CyberArk.

  • Conduct vulnerability assessments, penetration testing, and security audits to identify and mitigate risks.

  • Investigate IT security incidents, including digital forensics and root cause analysis.

  • Develop and maintain Python-based security automation tools to enhance cybersecurity operations.

  • Ensure compliance with ISO 27000 series, NIST Cybersecurity Framework, CIS 18, and other industry standards.

  • Work with SIEM tools such as QRadar and Microsoft Defender E5 for threat detection and response.

  • Provide technical leadership in securing Operational Technology (OT) and Industrial Control Systems (ICS) environments.

  • Collaborate with cross-functional teams to improve security postures across the organization.

  • Lead cybersecurity projects, ensuring timely delivery and alignment with business objectives.

  • Stay updated on emerging threats, security trends, and best practices, providing recommendations to enhance security measures.

  • Create and maintain security policies, procedures, and technical documentation.

  • Participate in security awareness training and mentoring junior team members.

  • Willingness to travel 10-15 days per year for security assessments, audits, and training.

Qualifications & Experience:

  • Minimum 5 years of experience in IT security with 10 years of overall technical expertise.

  • At least 5 years of hands-on experience with CyberArk (PAM).

  • Strong Python programming skills for automation and security tool development.

  • Deep understanding of ISO 27000 series, NIST Cybersecurity Framework, CIS 18, or similar security standards.

  • Experience with QRadar (SIEM) and Microsoft Defender E5 platform (preferred).

  • Expertise in vulnerability management, penetration testing, and digital forensics.

  • Technical knowledge of OT/Industrial Control Systems (ICS) security (preferred).

  • Relevant certifications such as CISSP, CISM, CRISC, CEH, OSCP, or equivalent (highly desirable).

  • Strong communication skills, with the ability to work across diverse cultures and business units.

  • Fluent in written and spoken English at a professional level.

  • Goal-oriented mindset with strong project management skills.

Preferred Skills:

  • Experience with security automation and scripting using Python, PowerShell, or Bash.

  • Familiarity with cloud security (Azure, AWS, or Google Cloud).

  • Knowledge of Zero Trust security models and Identity & Access Management (IAM).

  • Experience in governance, risk, and compliance (GRC) frameworks.