CTO/Technical Lead
- Industry Other
- Category IT&Telecommunication
- Location Kathmandu, Nepal
- Expiry date Jan 19, 2038 (4555 days left)
Job Description
We are hiring CTO/Technical Lead for one of our client. Major Job duties for this position:Team Leadership
- Lead, mentor, and develop a team of cybersecurity professionals, providing guidance, technical expertise, and support in their career development.
- Oversee team members related to departments like audit, application security and network infrastructure security.
- Enhance team capabilities by offering a clear path for continuous learning, knowledge expansion, and technical skills improvement.
- Ensure efficiency, high-quality output, and timely completion of tasks by setting clear goals and monitoring team performance.
- Foster an innovative, collaborative, and positive work environment.
- Oversee comprehensive security audits, vulnerability assessments, penetration testing, incident response, and digital forensics across client environments.
- Lead the development and refinement of internal methodologies and processes to continuously improve service offerings.
- Ensure the team stays current with the latest industry standards, methodologies, tools, and frameworks, such as ISO, OWASP, NIST, PTES, and others.
- Design and implement technical solutions internally to improve team efficiency, performance, and service quality.
- Analyze and guide the technical team members in security incidents, investigation of root causes and implementation corrective actions.
- Facilitate knowledge sharing within the team, ensuring everyone stays updated on emerging cybersecurity threats, vulnerabilities, and best practices.
- Develop and maintain comprehensive security documentation, including policies, procedures, and standards.
- Contribute to the development of security strategies and initiatives.
- Participate in security awareness training for internal stakeholders.
- Provide guidance on enhancing and expanding our services to include cutting-edge solutions in cybersecurity.
- Ensure compliance with relevant security standards, regulations, and industry best practices in the work that the teams do and also internal compliance as per required. (e.g., ISO 27001, NIST, OWASP, PTES, PCI DSS, HIPAA etc.).
- Develop, regularly review and improve internal security policies, procedures, and standards.
- Oversee regular internal audits and assessments to ensure the highest level of security posture.
- Communicate gaps, security findings, recommendations, and progress to senior management.
- Collaborate with internal stakeholders, including the IT team, business development team, and other business units.
- Communicate effectively with technical and non-technical stakeholders.
- Maintain strong relationships with clients and external partners to provide expert technical guidance and support.
- Act as a technical advisor during client interactions, providing expert input during audit results, recommendations, and remediation discussions.
- Proven experience leading and managing a team of security professionals.
- 5+ years of experience in security auditing, vulnerability assessment and penetration testing.
- Bachelor's degree in computer science, Information Security, or a related field, Masters preferred.
- Strong technical knowledge across a variety of domains under cyber security, including network security, application security, compliance frameworks etc.
- Proficiency in tools and methodologies used in cybersecurity, such as Nessus, Qualys, Metasploit, Burp Suite, SIEM systems, incident response tools, etc.
- Excellent leadership, communication, and interpersonal skills to lead a team and interact with clients.
- Ability to work independently and as part of a team.
- Strong problem-solving and analytical skills.
- Certification in relevant security fields (e.g., CISSP, CISM, OSCP, CEH) is highly preferred.