INFORMATION SECURITY ANALYST
Website Eswatini Civil Aviation Authority
VACANCY ANNOUNCEMENT
INFORMATION SECURITY ANALYST
1. JOB PURPOSE:
KEY RESPONSIBILITIES
-
Design and implement enterprise security architectures, integrating security controls across cloud, hybrid, and IoT environments.
-
Translate regulatory requirements (e.g., GDPR, ISO 27001, NIST CSF) into actionable technical controls and lead compliance audits.
-
Develop identity and access management frameworks, encryption strategies, and network segmentation.
-
Conduct enterprise risk assessments, manage cybersecurity risk registers, and develop mitigation strategies.
-
Evaluate vendor and third-party security postures and ensure SLAs comply with security standards.
-
Lead disaster preparedness, response, recovery, and resilience (DPR3) and business continuity planning (BCP).
-
Collaborate with executive leadership and train internal teams on security-by-design principles and cybersecurity awareness.
-
Provide general IT support to ESWACAA systems and users as needed.
2. QUALIFICATIONS AND EXPERIENCE:
(i) Qualification
-
BSc in Computer Science, Cybersecurity, or equivalent
(ii) Added Advantage
-
Security certifications such as CISSP, CISM, CISA, CCSP
-
ISO 27001 Lead Auditor certification
-
ITIL Foundation certification
-
Computer forensics training
(iii) Work Experience
-
5 years’ relevant experience in information security.
-
Proven experience in cloud security (AWS, Azure), DevSecOps, or threat intelligence platforms.
-
Enterprise firewall experience (e.g., Cisco ASA, Sophos, SonicWALL).
-
Strong background in network security management and business continuity strategies.
-
Advanced troubleshooting techniques.
(iv) Other requirements
-
Full Aviation Security Clearance.
3. SKILLS, KNOWLEDGE, AND PERSONAL ATTRIBUTES:
-
Mastery of security frameworks (NIST, ISO 27001, CIS)
-
Proficiency in SIEM and IAM tools, firewalls, IDS/IPS, and encryption protocols
-
Understanding of global data privacy laws (GDPR, HIPAA, PCI-DSS, SOX)
-
Familiarity with scripting languages (Python, PowerShell, Bash) for automation
-
Forensic investigation and ethical hacking
-
Threat detection and security log analysis
-
Risk modelling, audit management, and effective communication skills
-
High integrity, teamwork, and discretion in handling confidential data
-
Ability to work under pressure and make decisive decisions
APPLICATION INSTRUCTIONS
-
Only emailed applications will be admissible.
-
Only shortlisted candidates will be contacted.
-
All applications should be in PDF format not exceeding 11MB. Zipped or compressed files are not admissible.
To apply for this job email your details to recruitment@eswacaa.co.sz.
