Core Security Skills
– Understanding of common threats, including phishing, malware, ransomware, social engineering, and credential theft.
– Basic network security knowledge covering firewalls, VPNs, secure Wi-Fi, endpoint access, and least privilege.
– Experience with, or willingness to learn, endpoint monitoring tools such as Wazuh and comparable EDR or SIEM-lite
platforms.
– Basic vulnerability scanning experience with Nessus, OpenVAS, or similar tools.
– Basic penetration testing concepts and familiarity with Burp Suite Community, OWASP ZAP, or equivalent tools.
– Understanding of the OWASP Top 10, basic web and API behavior, SQL fundamentals, and injection risks.
– Comfort reading and writing basic Python and/or Bash scripts for simple automation.
Tools and Fintech Knowledge – Advantageous, Not Mandatory
– Familiarity with PCI-DSS or a clear willingness to learn its requirements.
– Awareness of data privacy principles, including GDPR concepts or relevant local equivalents.
– Experience with ticketing tools such as Jira or ServiceNow.
– Basic knowledge of AWS, Azure, or Google Cloud security fundamentals.
Preferred Certifications
– CompTIA Security+, CEH, or a comparable entry-level cybersecurity certification.
– Vendor-specific training in Wazuh, endpoint security, or cloud-provider security fundamentals.
– Certifications are preferred but are not mandatory when supported by strong practical experience.
Communication and Personal Attributes
– Clear spoken and written English, with the ability to explain security issues to technical and non-technical colleagues.
– Genuine curiosity and commitment to continuous learning in a fast-changing field.
– Patient and clear when delivering staff training or guiding users through security issues.
– Collaborative team player who is comfortable working closely with developers and IT colleagues.
– Organized and reliable when tracking alerts, vulnerabilities, patches, updates, and follow-up actions.
Education and Experience
– Degree, diploma, or equivalent practical experience in IT, Computer Science, Cybersecurity, or a related field.
– Strong self-taught candidates with a demonstrable track record are encouraged to apply.
– 1-3 years of IT or cybersecurity experience; internships, junior roles, and hands-on personal projects are relevant.
– Exposure to fintech, startups, financial products, or sensitive customer data is an advantage, not a requirement.
Cybersecurity Specialist | ACBAR-ready vacancy draft Page 4
Key Performance Indicators
– Device patch compliance and the proportion of company systems kept up to date.
– Number and severity of vulnerabilities identified and remediated before release.
– Cybersecurity awareness sessions delivered and staff completion rates.
– Reduction in phishing and other preventable security incidents over time.
– Response time to flagged issues on monitored endpoints and systems.