Cybersecurity Engineering & Assessment Specialist
RINA Visualizza tutti gli annunci
- Roma
- Tempo indeterminato
- Full time
- Design, deploy, and optimize cybersecurity platforms (e.g., SIEM/SOAR, vulnerability management, endpoint protection). -Implement automation workflows and integrations using APIs and scripting to enhance operational efficiency.
- Extend product capabilities through custom development aligned with client and organizational needs.
- Conduct penetration testing and red‑team engagements across network, application, cloud, and OT environments. -Simulate real‑world attack scenarios—phishing, malware delivery, privilege escalation—to evaluate detection and response capabilities.
- Provide remediation guidance based on realistic adversary behavior.
- Perform vulnerability and configuration assessments across IT and industrial infrastructures.
- Identify weaknesses in system architecture, misconfigurations, or insecure interfaces, and develop prioritized mitigation plans linked to business risk.
- Assess security and monitoring capabilities within OT and industrial control systems (SCADA, PLCs, IIoT).
- Deploy or leverage network visibility tools to identify insecure protocols and lateral movement paths.
- Support improved segmentation, monitoring, and hardening of critical environments in accordance with IEC 62443 standards.
- Support operating system and infrastructure hardening, patch management, and endpoint control implementation.
- Ensure that deployed platforms are securely integrated within hybrid and on‑premises architectures.
- Develop clear and actionable reports describing vulnerabilities, exploitation techniques, and resolution strategies.
- Present results to both technical and executive audiences, linking technical findings to operational and business implications.
- Deploy and manage awareness and training platforms to reinforce organizational security culture.
- Stay current on emerging threats, offensive tools, and cybersecurity technologies.
- Pilot new solutions and techniques that strengthen automation, visibility, and testing capabilities across IT and OT domains.
- Hands‑on experience (About 5 years) in penetration testing, vulnerability assessment, and red‑team methodologies.
- Proficiency in system integration and scripting (e.g., Python, PowerShell, Bash, API orchestration).
- Knowledge of industrial/OT cybersecurity standards (IEC 62443) and best practices for critical infrastructure.
- Strong analytical, troubleshooting, and problem‑solving skills.
- Excellent communication skills in English and Italian, both written and spoken.
- Willingness to travel domestically and internationally for project activities.
- DOMAIN & BUSINESS ACUMEN - Applying a scientific approach and critical thinking in operations and solution development within area of expertise.
- FORESIGHT & INSIGHT - Context awareness adopting a systemic perspective and informed decision making.
- INTERPERSONAL INFLUENCE - Skills and strategies we use to interact effectively with others.
- PERSONAL EMPOWERMENT - Ownership for life, work and results, striving to grow professionally and personally.
- WORKPLACE DYNAMICS - Resourcefulness in shaping progress and working efficiently.