Mandatory
• Minimum of 7 years hands on practical experience working in cyber security operations with the focus on incident response and blue teaming.
• Experience in effectively leading small cyber teams.
• Experience with security technologies and processes covering identity & access management, data security, vulnerability management and general infrastructure (network, platform, cloud, and endpoint) security.
• Experience in defence tools such as EDR, Microsoft and SIEM.
Advantageous
• Experience with attack tools such as Burp Suite, Cobalt Strike and Metasploit.
• Relevant blue team and incident response qualifications and certifications such as SANS – Cyber Defence and CREST – Incident Response.
Additional Criteria
• Some leadership skills to provide oversight over technical processes executed by the blue team.
• Very good people skills to engage with the various stakeholders across the business, while ensuring that professionalism is maintained.
• Deep technical skills and ability to automate manual processes.
• Practical scripting experience.
• Working with data (flows, integration, correlation and visualisation).
• Bloodhound approach to security.
• Relentless pursuit of threat identification and remediation.
• Relevant research and translation into defence.
• Ability to perform malware analysis.
• Ability to engage with and contribute to the Information Security community.
• Ability to play in the Matrix.
• Knowledge of Woolworths IT and cyber security landscape, including systemic understanding of key business linkages and dependencies
• Is aware of and responsive to internal and external events and influences on the technical landscape
• Ability to research technology-related concepts, trends and best practices, and apply findings
• Appropriately derives and organises the essence of information to draw solid conclusions
• Looks beyond symptoms to uncover root causes of problems to be solved
• Synthesises data from different sources to identify trends
• Presents problem analysis and a recommended solution rather than just identifying and describing the problem itself
• Proactively approaches others to obtain missing information
• Demonstrates a results-oriented mindset in planning and implementing activities/projects
• Clearly defines objectives and translates them into workable activities
• Monitors and tracks progress to ensure delivery of all planned commitments, and keeps the appropriate people informed
• Prepares written reports and briefs and communicates ideas clearly
• Speaks fluently in team meetings when presenting information
• Manages existing partnerships within established agreements or contracts; negotiates adjustments when mutually beneficial to do so
• Genuinely cultivates personal bonds with colleagues in order to enhance performance throughout the organisation
• Adjusts to work effectively within new work structures, processes, requirements, or cultures
• Demonstrates resourcefulness in acquiring necessary knowledge, skills and competencies to adapt to change