Search by job, company or skills

This job is no longer accepting applications

Job Description

Key responsibilities

  • Performing regional internal audit in compliance with ISO/IEC 27001 (ISMS) requirements
  • Planning, organizing and reviewing all Information Security Management System (ISMS) related activities in the region
  • Responsible for coordinating and implementing regional IT Infrastructure & Security projects
  • Reviewing and develop IT governance & control key metrics for the IT security performance measurement
  • Responsible for Network Security and managing of Firewall
  • Responsible for Server and Endpoint Security
  • Responsible for the carry-out of yearly BCP and Backup Restoration Test exercise
  • Identifying IT risks and evaluating the countermeasures, and driving the IT risk assessment processes
  • Responsible for the follow-up of Security or Vulnerability findings of the Servers and Network
  • Performing IT compliance checks and conduct reviews periodically. Performing Vulnerability Assessment and Penetration Test for the region
  • Reviewing security logs periodically and undertaking necessary corrective and preventive actions
  • Reviewing Security Incident Reports in the region and submitting monthly report to the management
  • Collaborate with service providers / third party vendors for daily operations and issues reported from users

Key Skills/Knowledge

ISO 27001 practitioner and Strong understanding of various Security concepts such as Application security, Vulnerability Management, Policies, standards, Risks, Security Operations, Security Incident Management, ITIL, Agile

Experience required

  • 8-10 years of Experience in designing, developing, and deploying technical controls for servers, and network equipment.
  • Understanding of Network & System concept including Virtualization, Firewall, IPS, ATP.
  • Good knowledge in IT risk analysis.
  • Knowledge of generally accepted IT audit standards, statements and practices, and IT security and control practices is a plus.
  • Knowledge of ISO 27001 - Information Security Management System (ISMS) and Risk Management methodologies is a plus.
  • Good understanding of IT GRC and IT controls is a plus.
  • Excellent analytical, problem solving and time management skills.
  • A desire to thrive in a hard-working, fast-paced and collaborative team.
  • Great communication skills and team-player

Job ID: 104345479

Beware of Scammers

We don’t charge money for job offers