Mauritius Network Services Limited was incorporated in 1994 on a public private partnership model and has evolved over the years to be a trusted partner to Government, Businesses and Citizens for trade and business facilitation. Our purpose is to implement, operate and maintain digital systems and services to enable secure, cost-effective and reliable interactions with government agencies, businesses and citizens, anywhere, anytime.
Perform penetration testing on internet-facing web application servers.
Conduct vulnerability assessment on internal systems and workstations.
Monitor automated endpoint security solutions; analyze the need for enhancements
Ensure systems hardening against CIS benchmarks reducing attack vectors ultimately aiming at shrinking attack surface to the minimum.
Further strengthen existing perimeter defence firewall rules, WAF capabilities of Load Balancers, IPS/IDS, DLP, Least Privilege Access, etc.
Assist ISO27001 team and actively participate in ISMS implementation across MNS.
Encourage staff members to adhere to established ISO27001 policies and procedures.
Apply security patches or corrective measures on LIVE systems after thoroughly testing same.
Develop security awareness training for employees adopt proper cyber hygiene to protect organisation’s data, systems, network from malicious intents.
Make use of appropriate tools such as:
Wireshark or any other to ensure clean and encrypted LAN/WAN data packets,
Nessus, Metasploit for Vulnerability Assessment and Penetration Testing,
OWASP ZAP or Burp Suite for application security testing,
Wi-Fi hacking – Air cracking or equivalent software.
Manage, monitor Office365 cloud security and respond to threats.
Understand the security requirements of clients’ projects developed by MNS and perform VAPT, security hardening prior to delivery.
Ability to frame threats & exposures in a business context recognized by non-technical staff and executives.
Draft reports with statistics on threats & vulnerabilities detected and responses to security incidents.
Stay current with IT security trends and standards through CERTs or other means; regularly refer to Common Vulnerabilities & Exposures (CVEs)
Any other duties relating to Information Security role and as required by the needs of the business.
Qualifications:
BSc in Computer Science with Network Security or BSc in Cyber Security.
Any professional information security certification would be an advantage.
Knowledge/ Skills/ Experience:
At least three (3) years post-qualification experience in an information security role.
Familiarity with various security scanning and enumeration tools.
Knowledge and/or experience with common information security management frameworks, such as ISO270001, GDPR, NIST, MITRE ATT&CK.
Broad understanding of Windows and Linux operating systems.
Mauritius Network Services Ltd reserves the right to change, update, or withdraw any job vacancy without prior notice. Posting a position on this website does not guarantee employment. Only candidates selected for further consideration will be contacted.