yandex
☎️ 094758888400 (OFFLINE)
📧 support@devjobs.lk

SydPro is hiring a

Associate Cyber Security Engineer - [ Hybrid ]

Colombo,Sri Lanka

Join Our Team as an Associate Cyber Security Engineer at OctopusBI

At Sydpro Pvt Ltd, we’re more than just a recruitment agency—we’re a gateway for top-tier talent to connect with global opportunities. Specializing in ICT/Technical, Networking, Data Analytics, Admin & Compliance, and Accounting, we strive to become Sri Lanka’s leading provider of local talent to the world. Our mission? To help global companies meet their staffing needs while giving Sri Lankan professionals a platform to shine on the global stage.

About the Role:

We’re excited to invite a passionate and skilled Associate Cyber Security Engineer to join our sister company, OctopusBI. In this role, you’ll be at the forefront of safeguarding our products and systems, ensuring they meet the highest security standards. You’ll also play a critical role in fostering a culture of continuous improvement in cybersecurity practices.

What We’re Looking For:

  • Education: A Bachelor's degree in Network Security, Cybersecurity, or a related field.
  • Experience: At least 1 year of hands-on experience as a penetration tester.
  • Certifications: Industry certifications like eJPT, CEH, CISSP, or OSCP are a big plus.

Key Skills:

  • Expertise in conducting Vulnerability Assessments and Penetration Tests (VAPTs) on web applications, including API and front-end testing.
  • Strong proficiency in Web Application Penetration Testing with the ability to offer actionable recommendations.
  • Proven ability to document security issues and draft security advisories.
  • A deep passion for staying ahead of the curve with the latest security threats and solutions.
  • Familiarity with various operating systems, especially Ubuntu and Windows.
  • A thorough understanding of threats, vulnerabilities, and the capability to conduct root cause analysis based on EDR logs.
  • Basic knowledge of cloud computing, particularly AWS security.

Your Responsibilities:

  • Lead frequent vulnerability assessments and penetration tests on OctopusBI products to ensure top-notch security.
  • Conduct detailed VAPTs on multiple web applications, with a focus on both API and front-end testing.
  • Manage periodic external vulnerability assessments and security reviews.
  • Identify and recommend solutions for vulnerabilities discovered during product development.
  • Support the IT/network team with network security implementations and change management.
  • Develop and enforce best practices for IT security across the company.
  • Ensure compliance with information security standards like ISO27001, SOC2, ST4S, and GDPR.
  • Thoroughly investigate security breaches and other cybersecurity incidents.
  • Respond swiftly to application security alerts and incidents.
  • Collaborate with Development and QA teams to address and resolve vulnerabilities, while suggesting best practices.
  • Conduct regular security awareness sessions for staff to enhance overall security knowledge and practices.

Why Join Us?

By joining OctopusBI as an Associate Cyber Security Engineer, you’ll be stepping into a role where your expertise directly contributes to the security and success of our products. You’ll work in a dynamic environment where continuous learning and improvement are not just encouraged but essential. If you’re passionate about cybersecurity and ready to make a tangible impact, we want to hear from you!

Apply today and help us secure the future of technology at OctopusBI.

Salary and compensation

No salary information available

Benefits

  • No politics at work 🚫

How to Apply

👉 Please reference you found the job on DevJobs, this helps us get more companies to post here, thanks!

When applying for jobs, you should NEVER have to pay to apply. You should also NEVER have to pay to buy equipment which they then pay you back for later. Also never pay for trainings you have to do. Those are scams! NEVER PAY FOR ANYTHING! Posts that link to pages with "how to work online" are also scams. Don't use them or pay for them. Also always verify you're actually talking to the company in the job post and not an imposter. A good idea is to check the domain name for the site/email and see if it's the actual company's main domain name. Scams in Tech jobs are rampant, be careful! Read more to avoid scams. DevJobs accepts no liability or responsibility as a consequence of any reliance upon information on there (external sites) or here.