Roshan (Telecom Development Company Afghanistan Limited Liability Company) is Afghanistan’s leading total communications provider, covering all 34 provinces with approximately 6 million active subscribers and a deep commitment to the country’s reconstruction and development. Roshan is a true Afghanistan success story, actively contributing to the country’s long-term development with more than $750 million invested in Afghanistan to date. We directly employ around 900 people – 99% Afghan nationals and 15% women – and provide indirect employment to around 45,000 people. This telecommunication network is a true Afghanistan success story, actively contributing to the country’s long-term development with more than $700 million invested in Afghanistan to date. We directly employ around 900 people – 99% Afghan nationals and 15% women – and provide indirect employment to around 45,000 people.
Monitor SIEM alerts, investigate anomalies, and provide timely responses to potential security threats.
2. Security Policy Development:
- Develop and enforce security policies and procedures to protect against security threats.
- Stay updated on industry best practices and emerging threats to continuously enhance security policies.
4. Vulnerability Assessment and Penetration Testing
- Conduct regular vulnerability assessments to identify and address potential weaknesses in the network.
- Perform penetration testing to simulate cyber-attacks and identify vulnerabilities that could be exploited by malicious actors.
5. Security Awareness Training
- Provide training and awareness programs to educate employees on security best practices.
- Collaborate with other departments to ensure a culture of security throughout the organization.
The Engineer - Network Security Job at Roshan in Kabul will have responsibilities that include:
Security Compliance
- Ensure adherence to pertinent industry regulations and standards such as ISO 27001 and NIST.
- Work with auditors to demonstrate and verify compliance with security policies.
7. Network Monitoring and Optimization
- Implement and manage security information and event management (SIEM) systems for real-time monitoring.
- Optimize network performance while maintaining a high level of security.
Bachelor’s degree required.
CCNA, CCNP Security, OSCP or equivalent required.
EXPERINCES
Minimum 4 years of experience in information security, information technology or related field.
SKILLS AND COMPETENCES
- Bachelor's or master's degree in Computer Science, Cybersecurity, or a related field.
- Extensive experience in penetration testing, ethical hacking, or red teaming engagements.
- Deep knowledge of common cybersecurity vulnerabilities, attack vectors, and exploitation techniques.
- Proficiency in endpoint protection, Endpoint Detection and Response (EDR), and Extended Detection and Response (XDR).
- Proficiency in using a wide range of penetration testing and vulnerability assessment tools (e.g., Metasploit, Burp Suite, Nessus, Nmap).
- Strong understanding of network protocols, operating systems, and web application security.
- Familiarity with industry-standard frameworks and methodologies such as OWASP, MITRE ATT&CK, and PTES.
Excellent problem-solving and analytical skills, with the ability to think creatively and tactically to identify vulnerabilities and devise exploitation strategies.
- Strong documentation and reporting skills, with the ability to communicate technical information effectively to both technical and non-technical stakeholders.
- Continuous learning mindset and a passion for staying updated on emerging threats, vulnerabilities, and security technologies.
- Relevant certifications such as OSCE, GPEN, or GXPN are highly desirable.
Afghanistan
Kabul