Collaboration Betters The World

PD | Senior Security Analyst (HCM)

Location Vietnam, Ho Chi Minh City
Category
Consultancy
Position Type
Regular Full-Time
Working Model
Hybrid

Overview

As a Security Analyst, you will work closely with the delivery and infrastructure teams to deliver security capabilities, tools, processes, and awareness to uplift information security and privacy maturity. In addition, the Security Analyst will work with our external vendors, as well as our key partners and business customers to ensure to remains compliant with all the regulatory and industry-standard information security requirements. 

Qualifications

  • Extensive professional experience as DevOps, SecOps or similar roles in a customer-facing cloud business consisting of APIs, Native Apps and Web products.
  • Experience with a range of Cloud Services including security, networking, and infrastructure.
  • Good understanding of encryption including certificate management practices.
  • Hands-on experience selecting and managing a range of security tools involving detection and prevention (WAF, BotNets, IDM,IPM, Vulnerability Assessments, DDOS Protection, etc).
  • Experience with infrastructure, Logfile and APM monitoring tools (Datadog would be a
    bonus).
  • A Computer Science or Software Engineering degree or commensurate commercial experience.
  • Practical experience working in agile environments.
  • Strong English communication skills (both verbal & written), especially in the global software development environment

Responsibilities

  • Hands-on deployment and day-to-day management of security tools with necessary training and onboarding to operations staff where appropriate
  • Support the broader security and tech teams in their pursuit to achieve organisational objectives
  • Implement security processes/controls, and monitor, and update them regularly to ensure their ongoing effectiveness
  • Research latest security trends, and recommend security enhancements to the broader security and tech team members
  • Incident Management: Work with tech teams and vendors to investigate security-related alerts, including getting hands-on with forensic analysis using log files, transaction information and information available from security tools
  • Third-party risk management
  • Develop playbooks for the Ops and customer care teams. Develop comms templates for security events
  • Assess 3rd parties, and respond to 3rd party RFIs
  • Work with the IT service provider to ensure a secure end-user operating environment is maintained
  • Work with all the third-party service providers' IT teams to ensure their end-user operating environment meets security and privacy requirement

Options

Sorry the Share function is not working properly at this moment. Please refresh the page and try again later.
Share on your newsfeed