Cyber Security Specialist/Penetration Tester

  • Full-time

Company Description

IT Security C&T is an innovative, fast-growing security consulting and training company. Our management team combined with our consultants and engineers work together to deliver comprehensive security solutions to our customers around the MENA region.
IT Security C&T is continuously expanding its team of qualified professionals for a wide range of opportunities. Interested candidates are required to apply via our Career webpage on our website (www.itsecurityct.com)

Job Description

Penetration testers, also known as “ethical hackers,” are highly skilled security specialists that spend their days attempting to breach the systems. These testers work in the information technology (IT) field to ensure that those without authorization cannot access an organization’s data. They do this by trying to hack into networks to identify potential vulnerabilities in the system.

Key Activities Include:

  • Planning and performing relevant penetration tests on networks, Mobile or web-based applications.
  • Designing and implementing new penetration testing tools and techniques that can be deployed during Penetration testing on behalf of the client.
  • Conducting a physical security assessment of an organizations systems, including servers and networks, ensuring that any unauthorized external physical interference is not possible.
  • Pinpointing the methods that attackers would use to gain access to the clients systems and underlying data, identifying exploits and weaknesses within the organizations IT Security defenses.
  • Uncovering inadequate security practices, password policies and other human errors using social engineering techniques. Recommending processes and procedures to mitigate against human error in future.
  •   Ensuring that file, directory and login permissions are restricted to those that need access to them and no one else.
  • Collate all findings together into a formal document with the report highlighting all issues uncovered together with recommended remedial actions that should be taken by the client.
  •   Present the penetration testing findings to all interested parties such as senior IT management, directors and their impacted teams. Explaining the details of the individual findings, where required, and your experience and recommended next steps.
  •   Highlight the project scope and requirements necessary for the organization to patch, fix and isolate any of these newly discovered IT security flaws. Training, or indeed re-training, of the impacted systems users, may also be necessary. This work should take place alongside the creation of new documentation supporting both new and existing systems going forwards.
  • Recommending a process of penetration and vulnerability testing that the organization could carry out themselves in future. Penetration and vulnerability testing of the live or production environment on a regular basis is necessary in order to maintain a secure environment as new threats and exploits emerge.
  • The Penetration Tester should be able to verify the client’s remedial actions, providing feedback and verifying their fixes to any highlighted security issues. Often a final Penetration Test will be necessary to confirm success!

 

Qualifications

  • Bachelor’s degree in IT, Engineering, or related field of study preferred.
  • 3+ years of experience in VAPT
  • Relevant security certifications (Security +,OSCP /CEH)

Additional Information

Technical Skills:

  • Strong Communication skills.
  • Highly organized and self-motivated to set up and complete training’s timelines per scheduled deadlines.
  • Verbal Presentation Skills/negotiations.

Management Skills:

  • Excellent time management skills, presentation skills and team work skills.
  • Excellent written and verbal communications skills in English and Arabic