BSc/MSc in Information Security, Computer Science or other technical discipline
3+ years of experience in a similar information security role
Working experience with cloud offerings such as AWS, Databricks, etc
Technical understanding of a range of enterprise IT and cloud-based architectures and technologies, such as networking, server infrastructure, operating systems, web applications, databases, containerization, mobile
Expertise defining system boundaries and the applications and security/compliance/infrastructure support services operating therein
Understanding of common security and privacy management frameworks and participation in audit/certification such as: GDPR, NIST SP800-53, ISO 27001, NIST CSF, etc
Experience evaluating logging activities for ingestion into SIEM as part of continuous monitoring plan
Experience with security technologies and tooling, e.g. vulnerability scanners, firewalls, network monitors, IAM, SIEM, IDS/IPS
Knowledge of Secure Software Development Lifecycle and DevSecOps