Basic familiarity with Technology Risks and Controls, Governance, Risk and Compliance tools
Basic knowledgeable in GRC tools configuration preferably with implementation experience in automating GRC processes using tools like Archer and Service now
Basic knowledge in the integration of the GRC tools with external data sources through API's and database integrations
...
Detection Engineering Support : Translate research findings into technical detection artefacts, such as YARA, Sigma, or Snort rules, to strengthen proactive threat hunting and detection capabilities.
Incident Response Integration : Act as the Tier- 3 intelligence lead during critical incidents, providing real‑time threat context, infrastructure pivoting, and attribution support to the CERT team.
Vulnerability Intelligence : Monitor and prioritise newly disclosed CVEs based on the organisation’s technology stack, providing actionable, risk‑based assessments to patching and infrastructure teams.
...
Strong technical skills in network defences, application, database and operating system security preferred cybersecurity assessment, cloud security, vulnerability assessment, penetration testing, incident management and IoT security are desired;
Professional certifications such as CISM, CRISC, CGEIT, and CISA are preferred; CISSP, GRID, GDAT, GDSA and GICSP are desired;
Self-motivated with strong analytical skills to deal with complex issues and influence internal and external stakeholders to achieve targeted outcomes;
...