Cybersecurity Engineer, Technology Onsite(BRAC)

Job Description

Title: Cybersecurity Engineer, Technology Onsite(BRAC)

Company Name: BRACNet Limited

Vacancy: --

Age: Na

Job Location: Dhaka

Salary: Negotiable

Experience:

  • 4 to 7 years
  • The applicants should have experience in the following business area(s): ISP


Published: 2025-08-04

Application Deadline: 2025-08-20

Education:

Requirements:
  • 4 to 7 years
  • The applicants should have experience in the following business area(s): ISP


Skills Required: Certified Ethical Hacker Certification (CEH)

Additional Requirements:

CEH (Certified Ethical Hacker)

CSA (Certified SOC Analyst)

OSCP (Offensive Security Certified Professional)

CPENT (Certified Penetration Testing Professional)

ECIH (EC-Council Certified Incident Handler)

Burp Suite Certified Practitioner

Proven expertise in VA/PT using tools such as Nessus, Burp Suite, OWASP ZAP, Nikto, Nmap, Hydra, Metasploit, Kali Linux.

Good grasp of OWASP Top 10, MITRE ATT&CK, and threat modeling.

Strong hands-on experience with CI/CD tools (GitLab, Jenkins, GitHub Actions).

Solid understanding of Docker and Kubernetes security practices.

Experience managing PAM platforms and enforcing access control policies.

Proficient in Microsoft Sentinel (or equivalent SIEM tools), including KQL query development and custom rule creation.

Understanding of log ingestion, correlation rules, and incident triage.

Scripting knowledge (PowerShell, Bash, or Python) for security task automation.

Strong knowledge of networking protocols (TCP/IP, HTTP/S, DNS, SMTP, VPN, NAT, ACLs).

Experience with packet analysis, log interpretation, and cloud security (preferably Google Cloud Platform).

Familiarity with WAF solutions (e.g., Cloud Armor) and cloud-native security controls.



Responsibilities & Context:

Plan and execute regular vulnerability assessments on internal and external assets (web applications, networks, cloud, servers, and endpoints).

Conduct penetration testing to simulate real-world attacks and evaluate system resilience.

Conduct vulnerability assessments of containers, infrastructure as code, and cloud environments.

Generate detailed reports outlining vulnerabilities, severity levels, and actionable remediation recommendations.

Coordinate with project managers and development teams to prioritize and track remediation efforts.

Validate fixes and ensure secure configurations are maintained.

Administer, configure, and maintain PAM platforms to ensure secure, role-based access to critical infrastructure.

Enforce least privilege policies and monitor privileged sessions for anomalies or policy violations.

Review access rights and session logs regularly to maintain compliance and operational security.

Configure and manage SIEM for real-time monitoring, log correlation, and incident detection.

Monitor runtime environments (containers, Kubernetes) for suspicious behavior.

Develop custom analytics rules, workbooks, alerts, and response playbooks to enhance threat visibility and automation.

Integrate Sentinel with various log sources, including firewalls, cloud workloads, servers, and third-party security tools.

Perform proactive log analysis and threat hunting to detect and mitigate risks.

Threat Hunting & Incident Response

Identify hidden threats and unusual behavior across systems and networks.

Analyze packet captures (PCAPs), logs, and indicators of compromise (IOCs).

Assist in incident response activities and forensic investigations.

Information Security Management (ISMS)

Maintain and update ISMS documentation, including risk registers, asset inventories, audit logs, and policies.

Support internal audits and continuous improvement efforts to comply with ISO/IEC 27001:2022 requirements.

Proven expertise in VA/PT using tools such as Nessus, Burp Suite, OWASP ZAP, Nikto, Nmap, Hydra, Metasploit, Kali Linux.

Good grasp of OWASP Top 10, MITRE ATT&CK, and threat modeling.

Strong hands-on experience with CI/CD tools (GitLab, Jenkins, GitHub Actions).

Solid understanding of Docker and Kubernetes security practices.



Job Other Benifits:
  • T/A,Mobile bill,Insurance,Gratuity,Provident fund,Weekly 2 holidays,Profit share
  • Salary Review: Yearly
  • Festival Bonus: 2


Employment Status: Full Time

Job Work Place: Work at office

Company Information:

Gender: Male and Female can apply

Read Before Apply: Please apply only who are fulfilling all the requirements of this job

Category: IT & Telecommunication

Interested By University

University Percentage (%)
Daffodil International University (DIU) 6.51%
4.89%
Bangladesh University of Professionals 3.91%
University of Dhaka 3.58%
American International University Bangladesh (AIUB) 3.26%
Southeast University 2.93%
North South University 2.61%
Jahangirnagar University 2.61%
BRAC University 2.61%
Daffodil International University 2.61%

Interested By Age Range

Age Range Percentage (%)
20-30 67.75%
31-35 17.92%
36-40 5.54%
40+ 3.91%

Interested By Salary Range

Salary Range Percentage (%)
0-20K 13.07%
20K-30K 19.28%
30K-40K 19.28%
40K-50K 12.75%
50K+ 35.62%

Interested By Experience Range

Experience Range Percentage (%)
0 years (Freshers) 26.06%
0.1 - 1 years 14.66%
1.1 - 3 years 20.20%
3.1 - 5 years 14.98%
5+ years 24.10%

Similar Jobs