IT security specialist job at National Social Security Fund (NSSF)

Vacancy title: IT security specialist

[ Type: FULL TIME , Industry: Public Administration, and Government , Category: Computer & IT ]

Jobs at:

National Social Security Fund (NSSF)

Deadline of this Job:
26 August 2022  

Duty Station:
Within Uganda , Kampala , East Africa

Summary
Date Posted: Saturday, August 20, 2022 , Base Salary: Not Disclosed

Similar Jobs in Uganda
Learn more about National Social Security Fund (NSSF)
National Social Security Fund (NSSF) jobs in Uganda

JOB DETAILS:
REPORTS TO: MANAGER IT SECURITY
JOB GRADE: D1

Job Purpose:
We are looking for a passionate and experienced IT Security Specialist to join our team. This person will be responsible for implementing, monitoring, and maintaining our security systems, by preventing unauthorized access to our data and responding to privacy breaches.

Duties and Responsibilities include:
• Ensure that application security is an embedded and critical part of the software delivery lifecycle (including during the early stages of projects) regardless of delivery methodology and toolsets used (e.g. static code analysis)
• Train and educate developers and teams in secure coding techniques including the use of supporting toolsets and enable them to self-service
• Conduct continuous vulnerability assessments on the Fund’s systems, including but not limited to source code libraries and runtime environments.
• Conduct compliance assessments by understanding business objectives, structure, policies and procedures, and internal and external regulatory controls.
• Identify and implement security requirements when developing applications, including when the development is outsourced.
• Document systems processes, and controls using narratives, flow charts, data flow diagrams, etc.
• Implement identity management and access control strategies, policies, procedures, standards, and guidelines.
• Collaborate with control owners to implement process changes and track to completion
• Act on privacy breaches and malware threats
• Understand and communicate the downstream impact of control deficiencies on the business.
• Monitor and Investigate security breaches and other cybersecurity incidents.
• Stay up to date on information technology trends and security standards.
• Implementation of IT security strategy

Education Requirements:
• A Bachelor’s degree in Cybersecurity, Computer Science, software engineering, Information Technology, or related field
• Professional qualifications in Security (CEH, C-WAST, DLP, SIEM), or related certifications.
Work Experience:
• Minimum of 3 years with hands-on programming experience using relevant languages
• Minimum of 3 years’ experience in IT/Information Security responsibilities in a fast-paced environment
• Any security configuration and/or automation experience is highly desirable
• Strong understanding of cryptography and SSL certificate lifecycle management
• Working knowledge and experience with web and application security would be added advantage.

Key Competences:
• Foundation experience and reasonable understanding of network stack (OSI model, TCP/IP), network ports and protocols, traffic flow, defence-in-depth, and common security elements.
• Understanding of network security (incl. Network and Host IDS/IPS, WAF, DAM, SIEM, Antimalware, DLP, URL filtering, others)
• Sound understanding and exposure to Application Penetration Testing
• Practical understanding of code analysis, security testing knowledge/techniques (SAST and DAST)
• Understanding of OWASP top ten web application security risks
• Practical understanding of SDLC
• Ability to learn on the job and a positive attitude towards learning and development.
• Motivated personality and ability to work in self-organized teams
• Ability to break down complex security issues to non-technical stakeholders.
• Strong analytical and problem-solving skills, plus the ability to think outside the box to anticipate possible threats
• Understanding of Cloud technologies and the associated risks

Work Hours: 8


Experience in Months: 36

Level of Education:
Bachelor Degree

Job application procedure
Interested individuals should click https://forms.office.com/r/bQ9BtbyUsB  to fill out the application form and also send copies of their application letter, curriculum vitae and academic qualifications, addressed to the Chief of People and Culture to recruitment@nssfug.org  by Friday 26th August 2022.
Women are encouraged to apply. Please note that canvassing or lobbying will lead to automatic disqualification of the candidate.



All Jobs

QUICK ALERT SUBSCRIPTION

Job Info
Job Category: Computer/ IT jobs in Uganda
Job Type: Full-time
Deadline of this Job: 26 August 2022
Duty Station: Kampala
Posted: 20-08-2022
No of Jobs: 1
Start Publishing: 20-08-2022
Stop Publishing (Put date of 2030): 20-08-2066
Apply Now
Notification Board

Join a Focused Community on job search to uncover both advertised and non-advertised jobs that you may not be aware of. A jobs WhatsApp Group Community can ensure that you know the opportunities happening around you and a jobs Facebook Group Community provides an opportunity to discuss with employers who need to fill urgent position. Click the links to join. You can view previously sent Email Alerts here incase you missed them and Subscribe so that you never miss out.

Caution: Never Pay Money in a Recruitment Process.

Some smart scams can trick you into paying for Psychometric Tests.