Job Description – IT Support & Cyber Security ExecutiveOverview
We are seeking an IT Support & Cyber Security Executive with at least one year of experience to support day-to-day IT operations while ensuring adherence to security best practices. The ideal candidate will have a strong understanding of secure coding standards, cybersecurity principles, DevSecOps tools, and IT support fundamentals.
Required Skills
- Strong knowledge of secure coding practices, OWASP standards, and application security testing.
- Experience working with DevSecOps tools, including SAST, DAST, SCA, and security controls within CI/CD pipelines.
- Familiarity with threat modeling frameworks such as STRIDE, DREAD, PASTA.
- Understanding of network security fundamentals, including firewalls, segmentation, and access control mechanisms.
- Ability to manage cybersecurity and general IT operations, including end-user support, system monitoring, and troubleshooting.
- Basic understanding of version control systems (e.g., Git) and secure development workflows.
- Good documentation, communication, and analytical skills.
Key Responsibilities
- Implement and enforce Secure SDLC practices across development teams.
- Ensure cybersecurity and privacy checks are integrated into every feature and change review.
- Maintain strict version control, code integrity, and audit trails.
- Conduct and supervise SAST/DAST/SCA scans and follow up on timely remediation of vulnerabilities.
- Lead or participate in manual code reviews for high-risk or sensitive modules.
- Coordinate application penetration testing activities with third-party security specialists.
- Ensure that threat modeling and secure design principles are incorporated during system and application architecture.
- Maintain a secure, access-controlled, segmented development environment.
- Provide secure coding training, awareness sessions, and guidelines to development teams.
- Ensure Separation of Duties (SoD) and appropriate Role-Based Access Controls (RBAC) across systems.
- Assist in incident response by providing logs, code-level evidence, and technical support.
- Ensure compliance with international product security and governance standards.
- Provide IT support services, including troubleshooting, system configuration, user management, and routine maintenance.
- Support the deployment and monitoring of network and endpoint security tools.
Required Qualifications
- Bachelor’s degree in Computer Science, Information Technology, Cyber Security, Software Engineering, or a related field.
- 1 year of experience in IT support, cybersecurity, application security, or DevSecOps.
- Basic understanding of secure development practices, OWASP Top 10, and application security concepts.
- Knowledge of networking fundamentals (TCP/IP, firewalls, routing, switching).
- Familiarity with security tools such as SAST, DAST, SCA, antivirus/EDR, and SIEM solutions.
- Experience with Windows/Linux system administration and troubleshooting.
- Understanding of version control systems (Git) and CI/CD pipelines.
- Strong problem-solving, communication, and documentation skills.
- Relevant certifications (preferred but not mandatory):
- Security+, CEH, CSCU, Microsoft Security Fundamentals, or CCNA.
Job Type: Full-time
Pay: Rs60,000.00 - Rs75,000.00 per month
Ability to commute/relocate:
- Islamabad: Reliably commute or planning to relocate before starting work (Required)
Application Question(s):
- Your Current Salary?
- Expected Salary?
- Notice Period in Current Organization?
Education:
Experience:
- IT support, cybersecurity, application security: 1 year (Required)
Work Location: In person