Security Engineer
  • South Africa Johannesburg
  • BASHR Consulting
1 year before
31.12.2023
Protect and Defend
Cyber Defense Infrastructure Support
Job Description

About the job
Urgently looking for a Security Engineer, who not only displays a strong client service orientation but demonstrates specialist infrastructure knowledge and pays good attention to detail. The successful candidate’s responsibility is to ensure that IT infrastructure and systems remain operational, protected and secure through proactively identifying, investigating and resolving technical incidents and problems. Secondly to ensure that assigned infrastructure at the client site is configured, installed, tested and operational. As well as to Investigate assigned first line support calls and identify the root cause of incidents and problems. Thirdly the candidate needs to take responsibility for receiving calls and incidents at the services desk and assist in analyzing, assigning and escalating the support calls also follow the required handover procedures for shift changes to ensure service continuity.


Must have;


CISSP, CCNP / CCIE Security Certified
MCSA Certification (advantageous) Experience
At least 4 – 6 years’ relevant work experience
2 years’ experience in a Security Engineer role within a large scale (preferably multinational) technology services environment
Previous experience with on boarding and integrating environments
Technical expertise with configurations of:
Switches and routers
Cisco ASA, Juniper SRX, Checkpoint, Palo Alto and Application firewalls
Site to site VPN connections
Multipoint VPN connections
SSL-VPN's
F5 LTM, GTM


Quick response

Required Knowledge
  • K0001   Knowledge of computer networking concepts and protocols, and network security methodologies.
  • K0004   Knowledge of cybersecurity and privacy principles.
  • K0061   Knowledge of how traffic flows across the network (e.g., Transmission Control Protocol [TCP] and Internet Protocol [IP], Open System Interconnection Model [OSI], Information Technology Infrastructure Library, current version [ITIL]).
  • K0104   Knowledge of Virtual Private Network (VPN) security.
  • K0179   Knowledge of network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth).
  • K0205   Knowledge of basic system, network, and OS hardening techniques.
  • K0332   Knowledge of network protocols such as TCP/IP, Dynamic Host Configuration, Domain Name System (DNS), and directory services.

Required Skills
  • S0059   Skill in using Virtual Private Network (VPN) devices and encryption.
  • S0077   Skill in securing network communications.
  • S0121   Skill in system, network, and OS hardening techniques. (e.g., remove unnecessary services, password policies, network segmentation, enable logging, least privilege, etc.).

Required Abilities