Core Security Skills
- Understanding of common threats, including phishing, malware, ransomware, social engineering, and credential theft.
- Basic network security knowledge covering firewalls, VPNs, secure Wi-Fi, endpoint access, and least privilege.
- Experience with, or willingness to learn, endpoint monitoring tools such as Wazuh and comparable EDR or SIEM-lite
platforms.
- Basic vulnerability scanning experience with Nessus, OpenVAS, or similar tools.
- Basic penetration testing concepts and familiarity with Burp Suite Community, OWASP ZAP, or equivalent tools.
- Understanding of the OWASP Top 10, basic web and API behavior, SQL fundamentals, and injection risks.
- Comfort reading and writing basic Python and/or Bash scripts for simple automation.
Tools and Fintech Knowledge - Advantageous, Not Mandatory
- Familiarity with PCI-DSS or a clear willingness to learn its requirements.
- Awareness of data privacy principles, including GDPR concepts or relevant local equivalents.
- Experience with ticketing tools such as Jira or ServiceNow.
- Basic knowledge of AWS, Azure, or Google Cloud security fundamentals.
Preferred Certifications
- CompTIA Security+, CEH, or a comparable entry-level cybersecurity certification.
- Vendor-specific training in Wazuh, endpoint security, or cloud-provider security fundamentals.
- Certifications are preferred but are not mandatory when supported by strong practical experience.
Communication and Personal Attributes
- Clear spoken and written English, with the ability to explain security issues to technical and non-technical colleagues.
- Genuine curiosity and commitment to continuous learning in a fast-changing field.
- Patient and clear when delivering staff training or guiding users through security issues.
- Collaborative team player who is comfortable working closely with developers and IT colleagues.
- Organized and reliable when tracking alerts, vulnerabilities, patches, updates, and follow-up actions.
Education and Experience
- Degree, diploma, or equivalent practical experience in IT, Computer Science, Cybersecurity, or a related field.
- Strong self-taught candidates with a demonstrable track record are encouraged to apply.
- 1-3 years of IT or cybersecurity experience; internships, junior roles, and hands-on personal projects are relevant.
- Exposure to fintech, startups, financial products, or sensitive customer data is an advantage, not a requirement.
Cybersecurity Specialist | ACBAR-ready vacancy draft Page 4
Key Performance Indicators
- Device patch compliance and the proportion of company systems kept up to date.
- Number and severity of vulnerabilities identified and remediated before release.
- Cybersecurity awareness sessions delivered and staff completion rates.
- Reduction in phishing and other preventable security incidents over time.
- Response time to flagged issues on monitored endpoints and systems.