Integrity
We must conduct our business fairly, with honesty and transparency. Everything we do must stand the test of public scrutiny.
Read more about this company
Vulnerability assessment and penetration testing officer working with the Head of IT Risk Management to protect the organization from internal and external threats
Responsibilities
Operate a hands-on role involving penetration testing and vulnerability assessment activities of complex applications, hardware, operating systems, wired and wireless networks, and mobile applications/devices with clear interpretation of issues, recommendations, retesting, revalidations, and assurance
Identify vulnerabilities in new and upcoming applications and systems through careful research, engagement with vendors and internal IT Staff before and after acceptance tests
Perform both Dynamic and Static Application Security Testing on new Applications, solutions, and systems. Regression testing will also be needed
Produce an actionable, threat-based security report after performing security assessments of systems, servers, and other network devices with a view to spot and identify existing and potential vulnerabilities
Pinpoints and documents methods and entry points that attacker may use to exploit vulnerabilities or weaknesses and providing control measures to block the gaps with a view to mentor and coach other staff to provide guidance.
Search for weaknesses in common software, web applications and proprietary systems. Communicate and document same for continuous improvement program
Research, evaluate, document, and discuss findings with IT teams and management. This will be communicated through trainings and knowledge sharing
Establish improvements for existing security services, including hardware, software, policies, and procedures. Document and communicate such to IT Leadership.
Identify areas where improvement is needed in security education and awareness for users around prevailing and current threats.
Consult with application developers, systems administrators, and management to demonstrate security testing results, explain the threat presented by the results, and consult on remediation.
Qualifications
HND/ BSc in Computer Science, Engineering or in a related field. .
3-4 Years, proven hands-on experience as a Vulnerability &Penetration Tester.