Officer ICT Security - (210000T) Job at Uganda Revenue Authority - Career Opportunity in Uganda
Website :
1103 Days Ago
Linkedid Twitter Share on facebook

Vacancy title:
Officer ICT Security - (210000T)

[ Type: FULL TIME , Industry: , Category: Computer & IT ]

Jobs at:

Uganda Revenue Authority

Deadline of this Job:
01 May 2021  

Duty Station:
Within Uganda , Kampala , East Africa

Summary
Date Posted: Monday, April 12, 2021 , Base Salary: Not Disclosed


JOB DETAILS:
Description
JOB ROLE/ PURPOSE:
Implement and maintain ICT security controls to safeguard the Authority’s Information Technology systems and infrastructure against security risks
PRINCIPLE ACCOUNTABILITIES
1. Participate in the design & building of the URA’s information security architecture in support of the URA’s mission
a) Engage key stakeholders to elicit security requirements adequate to provide assurance of security
b) Evaluate the efficacy of existing security controls & provide expert advisory services in this regard
c) Carry out threat modelling and security reviews for Software Development projects
d) Assist in developing information security policies, standards & guidelines
e) Provide input into the development of URA’s IT Security Strategy
2. Support & maintain Information security solutions to ensure their continued efficacy
a) Test, deploy, maintain, review and administer the infrastructure hardware and software that are required to effectively manage network defenses.
b) Install, config, troubleshoot and maintain server security configurations to ensure their confidentiality, integrity, and availability.
c) Work with other teams to ensure good security practice is followed during deployments
3. Identify, analyse and mitigate threats to URA’s IT Infrastructure
a) Carry out vulnerability assessments & penetration testing to establish the effectiveness of internal controls
b) Use defensive measures and information collected from a variety of sources to identify, analyze, and report events that occur or might occur within the network to protect information, information systems, and networks from threats.
c) Analyze digital evidence and investigate security incidents to derive useful information in support of system/network vulnerability mitigation and investigations.
d) Keep abreast with emerging industry security threats that could potentially impact URA’s IT Infrastructure & work towards strengthening URA’s security posture
4. Facilitate information security awareness programs
a) Provide input into the security awareness content
b) Conduct security awareness training using various channels
c) Conduct phishing assessments and other testing to ascertain level of awareness among different categories of staff .

Qualifications
PERSON SPECIFICATIONS
Essential Requirements
a) An honors Bachelor’s Degree in IT/Computer Science or related technical science degree from a recognised University.
b) At least 2 years’ experience in security, network administration, software development role gained in a complex IT environment

Desirable Requirements
a) Information Security Certification Such as; CISSP, CSSLP, CEH, Security+, Any GIAC, OSCP, CCSA, CCNA or other Vendor Specific InfoSec Certification
b) Certification in ITIL, LPI
c) Experience in managing Web or Network Firewalls
d) Experience in threat Modelling & Secure SDLC
e) Experience in maintenance of Network Infrastructure
f) Experience in penetration testing & vulnerability assessments of network, web or mobile platforms
g) Experience in digital forensics & incident response
h) Experience in installing & Securing Server Infrastructure
Knowledge
• Knowledge of cyber threat actor categories
• Knowledge of system administration, network, and operating system hardening techniques.
• Knowledge of cyber-attack stages
• Knowledge of computer networking concepts and protocols, and network security methodologies.
• Knowledge of system administration concepts for operating systems such as but not limited to Unix/Linux, IOS, Android, and Windows operating systems.
• Knowledge of packet-level analysis using appropriate tools (e.g., Wireshark, tcpdump).
• Knowledge of OSI model and underlying network protocols
• Knowledge of penetration testing principles, tools, and techniques.
• Knowledge of Application Security Risks
• Knowledge of prevalent cyber threats, tactics, techniques and procedures
• Knowledge of information technology (IT) security principles and methods (e.g., firewalls, demilitarized zones, encryption).
• Knowledge of how traffic flows across the network
• Knowledge of basic system, network, and OS hardening techniques.
• Knowledge of network tools (e.g., ping, traceroute, nslookup)
• Knowledge of operating system command-line tools.
• Knowledge of Security Service Management Frameworks & methodologies ( ISO 27001, ITIL4, DevSecOps )
• Knowledge of concepts and practices of processing digital forensic data.
• Knowledge of installation, integration, and optimization of system components.
• Knowledge of Interpreted & compiled computer languages

Job Qualifications : Not Specified


Work Hours: 8


Experience in Months: 24

Level of Education:
Bachelor Degree

 

{module 317}

Job application procedure
Click the link to apply https://bit.ly/3wR8D4w 

All Jobs

QUICK ALERT SUBSCRIPTION

{module 321}

Job Info
Job Category: Computer/ IT jobs in Uganda
Job Type: Full-time
Deadline of this Job: 01 May 2021
Duty Station: Uganda
Posted: 12-04-2021
No of Jobs: 1
Start Publishing: 12-04-2021
Stop Publishing (Put date of 2030): 12-04-2065
Apply Now
Notification Board

Join a Focused Community on job search to uncover both advertised and non-advertised jobs that you may not be aware of. A jobs WhatsApp Group Community can ensure that you know the opportunities happening around you and a jobs Facebook Group Community provides an opportunity to discuss with employers who need to fill urgent position. Click the links to join. You can view previously sent Email Alerts here incase you missed them and Subscribe so that you never miss out.

Caution: Never Pay Money in a Recruitment Process.

Some smart scams can trick you into paying for Psychometric Tests.