Responsibilities:
- Support and maintain security solutions, including antivirus, vulnerability scanner, application scanning & testing, endpoint encryption, log analysis tools
- Work with IT operation to monitor and identify security issues
- Conduct regular security assessment on IT systems
- Create and maintain security standards and guidelines for technical platforms, including IoT, web application platform and network devices
- Keep tabs on latest security threats, attacks and updates
- Assist the Information Security Manager on the following tasks
- Information security incident response
- Administration of security awareness training program
- Conduct research and study on security solutions
- Identify and manage security risks of business functions and processes
Requirements:
- Degree in Computer Science or the equivalent with minimum 3 years of relevant experience in IT, cybersecurity and risk management
- Holder of security certifications, e.g. CISSP, CISA, CCSP, CCSK, CEH, CompTIA, is preferred
- Solid experience in security configuration for Windows, Linux and network security product (such as Firewall, WAF, EDR)
- Sound knowledge in TCP/IP, modern web application & service, OWASP Top 10 for web application security
- Good analytical and communications skills
- Experience with IT audits, cloud computing, IT/security frameworks (e.g. ISO27001) is an advantage
- Less experience will be considered as Information Security Engineer