[Order ID: 700050]
Responsibilities:
- Review and development of security framework, information security policies, processes / procedures and guidelines on an ongoing basis.
- Work with vendor to conduct security assessments and penetration tests.
- Identify security gaps, perform threat risk assessments in current setup and propose mitigating measures.
- Standardize and refine security incident response and escalation processes.
- Mitigate and contain threats when detected.
- Escalate security incidents and non-compliances on a timely basis.
- Work with IT infrastructure team to evaluate, implement and enhance the network perimeter security, endpoint security, SIEM, secured remote access, MFA, Identity Access Management and Privileged Access Management.
- Monitor information security alerts, triage, mitigate, and escalate issues as needed.
- Provide security advisory to end users on a regular basis.
- IT Security Management of various aspects, e.g. network security, server security, application security, end point security, email security, physical access security, logical access security, etc.
- Keep abreast of industrial IT security advancements and introduce appropriate security enhancements to IT infrastructure and systems.
- Attend to any other reasonable duties as assigned by the Senior Cyber Security & IT Governance Manager and IT Director.
Requirements:
- 5 years of related work experience in cybersecurity management and security governance.
- Good working knowledge of security risk management, security governance framework and compliance (IT Security Audit / log review), technical vulnerability management (vulnerability assessment, penetration testing), application security, security technologies (system hardening, IDS/IPD, firewall), security incident response and security assessment.
- Understanding of ISO27001 standard.
- Hands-on experience with any 4 of the following IT Security Tools:
- Next Generation Firewall (e.g., FortiGate, Palo Alto, Cisco FirePower)
- SASE (Zscaler, Netskope, Skyhigh)
- Tenable Security Center Continuous View
- Endpoint Protection (e.g., Symantec, Trend Micro, Sophos Endpoint)
- Email Security (e.g., Mimecast, ProofPoint, Cisco Email Security)
- Data Loss Prevention (e.g., Symantec, ForcePoint, Digital Guardian)
- SIEM (e.g., Splunk, QRadar)
- CyberArk PAM and IAM
- Understand Risk Management, Disaster Recovery, Business Continuity and IT Regulatory Compliance.
To Apply, please kindly email your updated resume to cv_victoria@goodjobcreations.com.sg.
We regret that only shortlisted candidates will be notified. However, rest assured that all applications will be updated to our resume bank for future opportunities.
Please kindly refer to the Privacy Policy of Good Job Creations for your reference: Privacy Policy.
EA Personnel Name: Victoria Loh Jie Li
EA Personnel Reg. No.: R1330197
EA Licence No.: 07C5771
#J-18808-Ljbffr