freehire launches on Product Hunt on 26 August.

Follow →

Assistant Vice President, IT Security VN

Summary

Lead the Blue Team to monitor, detect, and respond to cybersecurity threats using SIEM and SOAR tools in a large bank’s IT environment.

Key Responsibilities

Blue Team/ SecOps

• Develop a complete understanding of a company’s technology and information systems.

• Responsible for security information and event management (SIEM), incident tracking, and threat intelligent

• Responsible for security operation automation using SOAR (Security Orchestration, Automation, and Response) for detecting vulnerability, threats and response automatically.

• Identify security threats and risks in the operating environment, and in cooperation with the other teams, analyzes the network environment and its current state of security readiness

• Constantly monitoring for attacks and intrusions.

• Analysis our current security measures to detect potential threats, recommending enhancements, identifying areas of weakness, and responding promptly to possible security breaches.

• Write/configure necessary scripts/ rules for vulnerability/ threats analysis and detection

• Regularly communicate vital information, security needs and priorities to upper management

• Support to prepare management updates on security risks, compliance to relevant local and group stakeholders.

Respond to and investigate cybersecurity incidents

• Investigate security breaches and other cyber security incidents. Document security breaches and assess the damage they cause.

• Analyze system logs, define attacking methods, collect attacker’s traces and start searching for suspect. Other tasks assigned by line manager.

Job Specification

Certification in such as CEH/CISSP/BlueTeam is the plus.

Working experience in banks/ Financial service company is a plus

Technical/Functional skills

• Proficient in Incident Management and Response

• Have knowledge of security concepts such as cyber-attacks and techniques, threat vectors, risk management, incident management etc.

• Familiar with regulatory guidelines such as SBV’s Circular 18, Cir 35, 47.

• Familiar with security solution such as SIEM, SOAR

• Knowledge of information security controls, guidelines and standards, ISO, CIS, NIST, OWASP is the plus.

• Familiar/ Experience in penetration testing.

Personal skills

• Delivers Result

• Builds Relationships

• Security mindset

• Inquisitive approach and Inquisitive approach and attention to detail attention to detail

• Good command of English

See also