Cybersecurity specialist
Employer Ministry of Health
|
Information on vacancy |
Period of publication |
05.06.2025 - 04.07.2025 |
Field of activity / position: |
IT and WEB projects / Specialist |
Duties |
The scope of the services required from Cybersecurity specialist will include: 1. Cybersecurity strategy and implementation: a. Develop and implement comprehensive cybersecurity strategies to protect the integrity and confidentiality of DHMU's digital systems and data, aligning with relevant national and international standards. b. Regularly review and update cybersecurity strategies to address emerging threats and evolving regulatory requirements. 2. Risk assessment and management: a. Conduct regular risk assessments to identify potential vulnerabilities and threats to DHMU's IT infrastructure and data assets. b. Develop risk management plans that prioritize remediation efforts based on the severity of identified risks. c. Continuously monitor and reassess the cybersecurity posture to ensure that risk mitigation strategies are effective. 3. Security controls and measures: a. Implement appropriate security measures, such as firewalls, intrusion detection systems, antivirus software, intrusion prevention systems, data loss prevention, and access controls, to mitigate identified risks. b. Perform regular testing and evaluation of security controls to ensure they are functioning effectively. c. Coordinate with IT teams to ensure system updates, patches, and vulnerability scans are conducted regularly to prevent potential exploits. 4. Cybersecurity policies and procedures: a. Develop and enforce cybersecurity policies and procedures to ensure compliance with relevant regulations and industry best practices (e.g., NIST Cybersecurity Framework, ISO 27001). b. Conduct regular audits and reviews of cybersecurity policies to ensure continued relevance and effectiveness. c. Collaborate with legal and compliance teams to align cybersecurity policies with national healthcare regulations and data protection laws. 5. Threat monitoring and incident response: a. Monitor IT systems and networks for suspicious activity, promptly investigating and responding to security incidents and breaches. b. Implement incident response plans to effectively contain and mitigate the impact of security breaches. c. Establish post-incident analysis processes to identify root causes and update security measures accordingly. 6. Security awareness training: a. Conduct security awareness training for DHMU staff to promote a culture of cybersecurity and empower employees to identify and report potential threats. b. Develop customized training programs based on specific roles within DHMU, ensuring that staff are aware of their unique cybersecurity responsibilities. c. Regularly update training content to reflect new threats, tools, and best practices in cybersecurity. 7. Emerging threat management: a. Stay up-to-date on emerging cybersecurity threats and vulnerabilities, continuously adapting security measures to address evolving risks. b. Participate in cybersecurity forums and collaborations with industry peers to share knowledge on the latest threats and mitigation strategies. c. Engage with cybersecurity solution providers to explore and implement new technologies that enhance DHMU's security posture. |
Requirements to the candidate |
Age: |
25+ |
Gender: |
Irrelevant |
Residence: |
Uzbekistan |
Education: |
Higher |
Professional requirements |
The successful offeror shall meet the following minimum qualification criteria. Not meeting these criteria automatically leads to disqualification from the recruitment process: ● Master's degree in relevant field. ● Proficiency in Uzbek and English. ● Minimum of 5 years of experience in relevant field.
EVALUATION CRITERIA:
General qualification: ● Master's degree in Cybersecurity, Information Technology, Computer Science, or a related field (holding additional professional education or advanced training programs in relevant fields is beneficial). ● Years of experience in cybersecurity, information security, or a related field. ● Knowledge of relevant cybersecurity regulations and compliance requirements within the healthcare sector. ● Relevant cybersecurity certifications (e.g., CISSP, CISM, Security+, CEH, OSCP) are highly desirable.
Other experience: ● Strong understanding of cybersecurity principles, threats, vulnerabilities, and risk management methodologies. ● Experience in implementing and managing security solutions, such as firewalls, intrusion detection systems, and access controls.
Other skills: ● Proven ability to identify, analyze, and respond to security incidents and breaches effectively. ● Excellent analytical and problem-solving skills to assess risks and develop appropriate mitigation strategies. ● Strong communication and interpersonal skills to effectively collaborate with stakeholders and promote cybersecurity awareness. ● Ability to work independently and as part of a team, demonstrating initiative and a commitment to maintaining a secure digital environment. |
Working conditions |
Region |
Tashkent |
Employment |
Full |
Salary offered |
Up to 3,000 EUR |
Additional information |
Additional information: |
FOR YOUR APPLICATIONS TO BE ELIGIBLE GO THROUGH THE FOLLOWING LINK AND FILL IN ALL APPLICATION FORMS AFTER READING THE REQUIREMENTS IN DETAIL:
https://gov.uz/en/ssv/sections/view/58738
Deadline is June 20th, 5:00pm 2025 |
|
|
 |
Personal account |
|