Work with headquarter to implement group level security controls to the local offices.
Support and maintain security tools including Anti-Virus, SIEM, IPS, Email Security, NGFW, DLP, pen-test, security assessment tools.
To administrate various types of information security systems and devices and work with IT teams to review audit logs and security alerts.
Investigate security incidents and work with IT teams to resolve or mitigate the security incidents in a timely manner.
Work with internal parties and vendors to conduct penetration tests and vulnerability assessment.
Follow up with IT infrastructure teams to remediate identified vulnerabilities.
Follow up with application development teams to ensure IT security best practice is incorporated into the system development and maintenance processes.
Work with MDR/SOC providers to detect and follow up for cyberattacks.
Assist in the generation of various metrics, reports, review of remediation progress & compliance status.
Support ISO27001, liaise with internal and external auditors and perform self-assessment in compliance with policy and regulatory requirements.
Assist in security assessment and compliance check of third-party vendors.
Assist in the development and maintain an information security awareness program.
Coordinates the implementation of the other projects when necessary.
Job Requirements:
Bachelor’s degree or Diploma in computer science, information systems, or related technical discipline
Relevant security-related certifications is a plus : CISSP, GCIH, GCIA, GCED, GCFA, CySA+
Minimum 3 years of related experience in cyber security or computer network defense role
Experience with security related solutions (Endpoint Security, VPN, Firewall, etc.) and handling of cyber security incidents and associated incident response tools.
Proven subject matter ability in relevant areas, such as incident response, intrusion analysis, malware analysis, web application security or security engineering.
Strong knowledge of malware families and network attack vectors.
Solid understanding of TCP/IP and internetworking technology including packet analysis, routing, and network security defenses.
Strong knowledge of operating systems, network services and applications.
Good understanding of Web Application Security risks.
Strong interpersonal and leadership skills to influence and build credibility.
Strong understanding of cloud technologies and related security best practices