Cyber Security Specialist – On Site
Job description
IO Solutions is looking for a Cyber Security Specialist to strengthen its cybersecurity and data protection programs, with a focus on SOC 2 and Privacy. Reporting to the Director of IT, this role works closely with cross-functional teams to assess, implement, and improve technical security controls.
We are looking for a technically skilled and proactive professional who can conduct vulnerability assessments, analyze risks, and help protect systems and data across the organization.
Responsibilities
Vulnerability Management & Data Security
- Coordinate penetration testing and remediation activities.
- Perform internal and external security testing using tools such as Fortinet products and vulnerability scanners.
- Collaborate with stakeholders to implement and track security remediation plans.
Security Operations
- Operate and monitor security tools (IDS, EDR, firewalls, DNS filtering, SIEM, audit logging, etc.).
- Review patch management activities and coordinate testing and deployment with IT teams.
- Support SOC 2 and Privacy-related security controls in collaboration with Governance and Privacy teams.
- Conduct risk assessments and third-party vendor/software evaluations.
Incident Detection & Response
- Identify, analyze, and respond to security incidents.
- Investigate threats, vulnerabilities, and system misconfigurations.
- Perform root cause analysis, document incidents, and support remediation efforts.
- Monitor DLP tools and respond to alerts.
Security Awareness & Documentation
- Develop and deliver security awareness and training initiatives.
- Maintain security documentation, policies, playbooks, and audit materials.
- Contribute to SOC 2 compliance, risk assessments, and audit activities.
- Participate in business continuity and disaster recovery planning.
Qualifications
- Bachelor’s degree in Cybersecurity, Information Technology, or a related field, or equivalent practical experience.
- Minimum of 4 years of hands-on experience in Information Security or Cybersecurity.
- Experience with vulnerability management, network security, and/or application security.
- Familiarity with security frameworks such as SOC 2, NIST, and ISO 27001.
- Strong understanding of networking, system hardening, and common attack vectors.
- Experience with Azure and Microsoft 365 security tools (Microsoft Defender, DLP, etc.).
- Knowledge of cloud and on-premise data protection.
- Experience with scripting or automation tools is an asset.
- CompTIA Security+, CEH, GSEC, CYSA+, Network+, A+, or equivalent certifications.
Benefits
- Competitive salary plus stability of employment
- Dynamic and challenging work environment
- Career Advancement program
- Permanent
- Full time
- English
- French
- Casablanca, Morocco
- Rabat, Morocco
- I.T.
To be discussed
As soon as possible