Bachelor’s or Master’s degree in Information Security, Computer Engineering, or a related field,
At least 5 years of experience in Red Team, Blue Team, and GRC, (Governance, Risk, Compliance)
Hands-on experience in designing secure architectures for complex IT environments, including network segmentation, identity federation, and encryption strategies,
Strong knowledge of PCI DSS, ISO 27001, and other industry-standard frameworks, (e.g., NIST, CIS)
Familiarity with cybersecurity threats, attack techniques, and defense methods,
Experience with enterprise security tools and technologies, (e.g., SIEM, Firewall, EDR, DLP, CASB, WAF, IAM)
Ability to manage security architecture documentation and review processes,
Strong analytical thinking, problem-solving, and crisis management skills,
Preferably holding security certifications such as CISSP (with ISSAP/ISSEP), SABSA, TOGAF Security, CISM, OSCP, or CEH.