Assistant Vice President, IT Security VN
Summary
Lead the Blue Team to monitor, detect, and respond to cybersecurity threats using SIEM and SOAR tools in a large bank’s IT environment.
Key Responsibilities
Blue Team/ SecOps
• Develop a complete understanding of a company’s technology and information systems.
• Responsible for security information and event management (SIEM), incident tracking, and threat intelligent
• Responsible for security operation automation using SOAR (Security Orchestration, Automation, and Response) for detecting vulnerability, threats and response automatically.
• Identify security threats and risks in the operating environment, and in cooperation with the other teams, analyzes the network environment and its current state of security readiness
• Constantly monitoring for attacks and intrusions.
• Analysis our current security measures to detect potential threats, recommending enhancements, identifying areas of weakness, and responding promptly to possible security breaches.
• Write/configure necessary scripts/ rules for vulnerability/ threats analysis and detection
• Regularly communicate vital information, security needs and priorities to upper management
• Support to prepare management updates on security risks, compliance to relevant local and group stakeholders.
Respond to and investigate cybersecurity incidents
• Investigate security breaches and other cyber security incidents. Document security breaches and assess the damage they cause.
• Analyze system logs, define attacking methods, collect attacker’s traces and start searching for suspect. Other tasks assigned by line manager.
Job Specification
Certification in such as CEH/CISSP/BlueTeam is the plus.
Working experience in banks/ Financial service company is a plus
Technical/Functional skills
• Proficient in Incident Management and Response
• Have knowledge of security concepts such as cyber-attacks and techniques, threat vectors, risk management, incident management etc.
• Familiar with regulatory guidelines such as SBV’s Circular 18, Cir 35, 47.
• Familiar with security solution such as SIEM, SOAR
• Knowledge of information security controls, guidelines and standards, ISO, CIS, NIST, OWASP is the plus.
• Familiar/ Experience in penetration testing.
Personal skills
• Delivers Result
• Builds Relationships
• Security mindset
• Inquisitive approach and Inquisitive approach and attention to detail attention to detail
• Good command of English