IT Security Operations Specialist – GRC
About the job
About the IT Security Operations Specialist (GRC) role
We are seeking a skilled IT Security Operations Specialist to manage and maintain our organisation’s security posture through various operational and compliance management tasks and monitoring activities for Governance, Risk and Compliance (GRC).
The Governance, Risk and Compliance (GRC) have setup a horizontal function focused on taking on governance, risk and compliance related work across EPD with the aim to centralize the management of GRC work across EPD.
Key Responsibilities:
System Security Management
- Execute regular operating system patching across all environments
- Manage enterprise password policies and renewal processes
- Conduct vulnerability assessments and oversee remediation efforts
- Monitor and maintain antivirus solutions across all systems
- Ensure accurate server inventory and data in TechLens platform
Certificate and Lifecycle Management
- Manage SSL certificate lifecycle, including timely renewals
- Track and report on End-of-Life (EOL) and End-of-Support (EOS) for all systems
- Coordinate system upgrades or replacements for EOL/EOS components
Access Control and Monitoring
- Perform User Access Reviews (UAR) periodically
- Monitor and investigate failed login attempts
- Manage privileged access rights and permissions
- Review and analyse security logs for potential threats
Risk and Compliance
- Conduct regular risk assessments
- Address and remediate Cloudscape security findings
- Prepare security reports for management review
Requirements:
- Bachelor’s degree in IT, Computer Science, or related field
- 5+ years of experience in IT security operations
- Relevant security certifications (e.g., CompTIA Security+, CISSP)
- Strong knowledge of security tools and best practices
- Amazon Web Services (AWS) certifications
Skills:
- Strong analytical and problem-solving abilities
- Excellent documentation and communication skills
- Experience with security monitoring tools
- Knowledge of compliance frameworks
- Ability to work in a fast-paced environment
- Familiarity with Amazon Web Services (AWS) services such as IAM, CloudWatch etc