SJAC is looking for a Cybersecurity Consultant to to enhance the security and deployability of its open-source software.
Cybersecurity Consultant – Syria Justice & Accountability Centre
SJAC is seeking to enhance the security and deployability of its open-source software, Bayanat. The Security Consultant will provide support to the Legal Director and IT team to improve current security features, develop new features and ensure the security of deployment methods and tools.
SJAC anticipates extending a consultancy agreement through August 2026 (approximately 30-40 hours/month) with possibility of renewal, pending funding and performance.
General Duties and Responsibilities
- Evaluate the security properties of Bayanat and provide expert advice on improvements
- Advise SJAC’s IT Team on security concerns when building new features and deployment tools
- Contribute to creating and maintaining secure Docker images of Bayanat
- Test prototypes and analyze source code and tools for vulnerabilities
- Develop documentation for secure cloud and on-premise deployment of Bayanat
- Develop documentation on the technical and operational threats that human rights organizations experience when using Bayanat
- Develop a threat model for Bayanat, identifying specific areas to enable security experts to evaluate the database’s technical properties
- Attend team calls
Skills and Experience
- Bachelor’s degree in computer science or related field, focus on cyber security is a plus. Significant work experience in cyber security may be acceptable in lieu of a formal degree in these areas
- 3-5 years’ experience working in a cyber security capacity
- Experience with Linux OS security
- Experience with Docker and its security
- Extensive knowledge of web applications and network security
- OWASP Top 10, threat modelling, intrusion prevention and detection
- Knowledge of Bayanat tech stack or similar technologies
- Extensive experience in Python, JavaScript and HTML a must
- Other desirable experience:
- Knowledge of FIDO2
- Experience working with open-source solutions and projects, programs or research related to the human rights and justice sector
- Knowledge of risks and mitigation of state-sponsored cyber-attacks
About SJAC:
SJAC is a diverse organization made up of 40+ team members around the globe. They pride themselves in their ability to implement programming that is inclusive and responsive to the needs of all Syrians, and believe that their own team’s diversity of viewpoints and experiences helps them to achieve that goal. SJAC encourages all interested applicants to apply, regardless of race, religion, national origin, gender, gender identity, sexual orientation, disability, or age.
Click the link to learn more about how to apply!