615 Security Sme jobs in Vietnam
Information Security Expert/specialist
Posted today
Job Viewed
Job Description
**Cloud Cybersecurity risk and compliance framework and management**:
- Accountable for development of the Cloud Security Design framework for new technology solutions
- Responsible for embedding best practice security through evaluation of suppliers
- Responsible for establishing security requirements needed to provide services securely
- Ensure compliance to current standards ISO27001, 27017-27018, PCI-DSS
- Defining requirements for risk and security and ensuring they are achieved
- Drive cyber security strategy compliance
- Align activities to current BAU audit activities from legacy business to ensure consistency in approach
- Manage and liaise with regulators
- Identify, highlight and remediate information security risk in the Bank
**Policy, Standards and Processes**
- Planning, studying and then designing a resistant security architecture for various IT/IT Security projects (clould/onpremise)
- Test and evaluate new security solution/new security technology
- Make sure that all workers follow the necessary corporate security policies and procedures that are defined, developed, implemented, and maintained for a seamless workflow.
- Create standards for all IT assets, such as routers, firewalls, LANs, WANs, VPNs, and other network devices. You have to determine their efficacy and efficiency.
- Comply with the Bank’s Information Security Policy, Regulations, Standards, and Process
- Provide feedback to enhance the current policies, regulations, standards and processes where necessary
- Communicate and ensure all staff understands and comply with the Information Security Policy, Regulations, Standards and Processes
**Operations, Reporting and Administration**
- Ensure that the Information Security Strategy and Plans are implemented as planned.
- Ensure that Information Security process are followed diligently. This may include Risks Management, Operating Security Services/Tools to support the Information Security Program of the Bank.
- Control approve the request/changes related to security, control activities of IT security: implementing, operating, vulnerabilities management
- Contribute to the IT Security Dash Board for Management
- Work with both internal/external audit during audit programs
- Training IT security awareness
- Collect, analyze and produce report for IT Security every month
**Area of Information Security Specialization**
- Provide the appropriate guidance and advisory in the area of specialization
- Be able to contribute to the Bank in terms of documentation, transfer of ideas and implementing the plans in the area of specialization
**REQUIREMENTS**:
**Educational Qualifications**
- Bachelor's or Technical Degree Required (IT, Cryptography, computer science, information systems, business administration or other industry-related curriculum)
**Relevant Knowledge/ Expertise**
- Have at least a minimum of 5 years of experience in the area of specialization
- Have a good knowledge international IT security standards (ISO 270001, PCI-DSS, ), ITIL
- Work experience with one or more cloud service providers
- Deep understanding of cloud service architecture with emphasis on security in the cloud
- Solid understanding of modern information security methodologies and standards, especially in cloud environment
- Cloud/Security certification desired
- Knowledge and experience supporting IAM, security operations and threat response
- Practice with modern DevSecOps with automation (nice to have)Ability to automate repetitive tasks (scripting skills in Bash/PowerShell/ Python)
- Expert with architect, security technology, integration
- Have good knowledge with pen test with OWSAP Standard and ability discovery & exploit vulnerabilities, cyber attack
- Good knowledge some tools for hacking: VA, APPScan, Metaexploit, kalilinux
- Experienced in implementing ISO27000/PCI-DSS is preferred
- Have good knowledge with secure coding with some languages: Python, Shell, PHP and have good knowledge with encryption, cryptography techniques
**Skills**
- Have ability to read and understand the professional documents in English.
- Strong interpersonal and communication skill
- Be able to catch up and manage works quickly and effectively
- Be able to work independently with high pressure, good in teamwork
- Careful, responsible, and secure in protecting information/data belong to Bank
- Good knowledge of risk management principles, methodology and practice
- Preferred Fluent in English
**Relevant Experience**
- Stakeholder expectation management
- People Management
- Risk Management
- Budget Management
**Others**
- Strong Logical Thinker and Planner
- Management, Leading ability
- Implementation and Deliver ability
**For more information, please contact**:
- Ms. Nguyen Thi Hoai (84) 24 3936 7618 - Ext: 163
Cyber Security Expert
Posted today
Job Viewed
Job Description
(Mức lương: Thỏa thuận)
1. Advise and consult the Board of Directors and develop strategies, policies, and security tools:
- Develop strategies and operational plans related to information security and safety system administration
- Develop security policies for the system and monitor policy implementation at units
- Deploying advanced technologies, building and updating security and information security systems
2. Monitor and handle information security incidents:
- Monitor the operation of devices in the security system
- Review, evaluate, detect and make statistics of information security risks of information systems in TNEX
- Develop processes and scenarios for responding to information security incidents and handling incidents, requesting support related to information security
3. Implement reports, periodically evaluate the information security level of the system
4. Perform other duties as assigned by superiors
**Chức vụ**: Nhân Viên/Chuyên Viên
**Hình thức làm việc**: Toàn thời gian
**Quyền lợi được hưởng**:
- Laptop
- Chế độ bảo hiểm
- Chế độ thưởng
- Chăm sóc sức khỏe
- Đào tạo
- Tăng lương
**Yêu cầu bằng cấp (tối thiểu)**: Đại Học
**Yêu cầu công việc**:
- Qualification: University or higher
- Foreign language requirement: EnglishLevel 3: TOEFL 79-93/IELTS 6.5-7.5/TOEIC 785-900 or equivalent
- Other certificates (if any):Microsoft office: Proficiency
- Experience: Professional experience: at least 10 years in the field
- Knowledge
- General knowledge
- Understanding of the organization: Understanding of the companies in technology/digital transformation, digital bank
- Understanding of the area/industry:
- Professional knowledge
- Understanding of the expertise of the positions (policy/procedure/process, etc.): State-of-the-art security, cybersecurity tools worldwide
- Understanding of the relevant legal regulations in relation to cyber security, information security
**Yêu cầu giới tính**: Nam/Nữ
**Ngành nghề**: An Ninh Mạng,SQL
Đại Học
Không yêu cầu
Systems Security Expert
Posted today
Job Viewed
Job Description
- 125 Minh Khai, Hai Ba Trung, Ha Noi- Hybrid- Posted 11 hours ago- Skills:
- Linux- Java- .NET**Top 3 reasons to join us**:
- Competitive Package (Annual Bonus, Profit Sharing)
- English Working Environment, Mental & Healthcare
- Free in-house gym & game room, Pet-friendly space
**Job description**:
We are looking for a Systems Security Expert with emphasis on. You must be passionate about security and staying ahead of all possible threats to the system. You will be working with our development team to ensure that our network and technology stack is watertight. You will become thoroughly familiar with our architecture, helping to direct its development. You will provide regular reports of potential vulnerabilities and risk profiles. Good communication skills are critical to efficiently coordinating with our team and building a secure end product.
As the systems Security Expert you will be required to:
- Design and maintain our security infrastructure.
- Protect systems by defining access privileges, control structures, and resources;
- Recognize problems by identifying abnormalities and reporting violations;
- Implements security improvements by assessing the current situation; evaluating trends; anticipating requirements;
- Determine security violations and inefficiencies by conducting periodic audits;
- Upgrade the system by implementing and maintaining security controls;
- Keep users informed by preparing performance reports; communicating system status;
- Maintain quality service by following organization standards.
**Your skills and experience**:
- Thorough understanding of potential attack vectors such as XSS, injection, hijacking, social engineering, etc.
- Knowledge of patch management, firewalls, and intrusion detection/prevention systems (e.g. Fortigate);
- Familiarity with public key infrastructure (PKI) and cryptographic protocols (e.g. SSL/ TLS)
- Thorough understanding of networking protocols, such as TCP/IP;
- Thorough understanding of HTTP and HTTPS, as well as their underlying implementations;
- Basic programming proficiency, sufficient to write and execute scripts from the command line;
- Knowledge of multiple hosting services and third parties such as AWS, Azure;
- Have knowledge of Access Control Models: MAC, DAC, RBAC, PAM;
- Possess an understanding of managing endpoint devices and mobile devices through Mobile Device Management (MDM).
**Advantages**:
- Have experience implementing ISO 27001;
- Possess good knowledge of Linux and Bash shell;
- Have an understanding of Windows Server Active Directory, LDAP, and Radius;
- Have experience or knowledge in deploying Azure Active Directory Domain Services (Azure AD DS), Microsoft Sentinel, and Intune;
- Have experience or knowledge in deploying Jamf Pro and Jamf Connect;
- Strong scripting and automation abilities;
- Strong programming experiences such as Java,.Net or Python;
- Experience with dealing with security breaches on live products.
**Why you'll love working here**:
**1. Salary and Benefits**
- **Attractive salary and benefits **(Competitive Basic Salary, Lunch allowance, 13th Salary, Additional Bonus, Profit Sharing) and annual salary review.
- **Full-fill package**: 100% salary in probation, 100% compulsory insurance covered by the company after the probation.
- **Premium Healthcare and Mental Healthcare service** for you, 100% covered by the company.
- **Extra bonus **per personal events (Wedding, Funeral, Hospitalization, Newborn baby) and very cute baby box for staffs who is going to welcome a new baby angel to the world.
- Annual health check, annual flu vaccination.
- Annual company trip, monthly fantastic internal events.
- **Summer vacation (Paid days off and bonus).**:
- Paid leave (12 days/year).
**2. Working Environment**
- **Flexible working hours**, we work 40 hours per week (Monday-Friday).
- International, fun and professional working environment: Working closely with both experienced Vietnamese and foreign experts.
- Standing desks if you like, Modern hardware, No dress code, Free drinks (coffee, tea, etc.)
- **English working environment**: Work closely with foreign colleagues on big game development projects.
- **Internal English/Vietnamese Class** full sponsored by the Company with a native teacher during working time.
- Training and career development opportunities.
- Pet-friendly working space (we have 4 cats and dogs).
- **Free in-house gym and game room for everyone**. We love board games, video games, PS5, ping pong, football tables, and VR games.
**Gear Inc.**:
Where Work is Play!
- Company type
- Outsourcing
- Company size
- 301-500 employees
- Country
- United States- Working days
- Monday - Friday
- Overtime policy
- No OT
Information Security Analyst
Posted today
Job Viewed
Job Description
Information Security Analyst
Posted today
Job Viewed
Job Description
Key Responsibilities:
- Monitor security infrastructure, including firewalls, intrusion detection/prevention systems (IDS/IPS), and security information and event management (SIEM) systems.
- Analyze security alerts and logs to detect and respond to potential security incidents.
- Conduct vulnerability assessments and penetration testing to identify weaknesses in systems and networks.
- Develop and implement security policies, procedures, and guidelines.
- Assist in the development and execution of incident response plans.
- Provide security awareness training to employees.
- Stay current with emerging threats, vulnerabilities, and security technologies.
- Collaborate with IT teams to ensure the implementation of security best practices across all systems.
- Manage and maintain security tools and technologies.
- Participate in security audits and compliance reviews.
- Document security configurations, processes, and incident reports.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- Minimum of 3-5 years of experience in information security or cybersecurity roles.
- Strong understanding of network security principles, firewalls, IDS/IPS, and SIEM technologies.
- Experience with vulnerability assessment tools (e.g., Nessus, Qualys) and penetration testing methodologies.
- Knowledge of security frameworks and compliance standards (e.g., ISO 27001, NIST).
- Excellent analytical, problem-solving, and critical thinking skills.
- Strong communication and interpersonal skills, with the ability to explain technical concepts to non-technical audiences.
- Relevant security certifications such as CompTIA Security+, CEH, CISSP, or CISM are highly desirable.
- Ability to work independently and manage time effectively in a remote environment.
- Experience with scripting languages (e.g., Python, PowerShell) is a plus.
Information Security Analyst
Posted today
Job Viewed
Job Description
Information Security Analyst
Posted today
Job Viewed
Job Description
Be The First To Know
About the latest Security sme Jobs in Vietnam !
Information Security Analyst
Posted today
Job Viewed
Job Description
The ideal candidate will have a strong foundation in cybersecurity principles, threat intelligence, and risk management. Your responsibilities will include conducting regular security assessments, performing penetration testing, and developing incident response plans. You will analyze security alerts, investigate potential breaches, and coordinate remediation efforts to mitigate risks. Experience with security tools such as SIEM, IDS/IPS, firewalls, and endpoint protection platforms is crucial. A relevant Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field is required, along with relevant certifications like CompTIA Security+, CEH, or CISSP. You should possess excellent analytical and problem-solving skills, a keen attention to detail, and the ability to work effectively under pressure. Strong communication skills are essential for collaborating with IT teams and reporting on security matters. This is an exciting opportunity to contribute to the security of a growing organization.
Responsibilities:
- Monitor security systems and analyze security alerts.
- Identify and assess information security vulnerabilities.
- Implement and manage security controls and measures.
- Conduct penetration testing and vulnerability assessments.
- Develop and maintain incident response plans.
- Investigate security incidents and coordinate remediation.
- Ensure compliance with security policies and regulations.
- Provide security awareness training to staff.
- Bachelor's degree in Cybersecurity, IT, or Computer Science.
- 2+ years of experience in information security.
- Proficiency with security tools (SIEM, firewalls, IDS/IPS).
- Knowledge of cybersecurity frameworks and best practices.
- Strong analytical and problem-solving skills.
- Relevant security certifications are a plus.
- Excellent communication and reporting skills.
Information Security Analyst
Posted today
Job Viewed
Job Description
Responsibilities:
- Monitor security systems and networks for potential threats and vulnerabilities.
- Investigate and respond to security incidents, including data breaches and unauthorized access.
- Conduct regular security risk assessments and vulnerability scans.
- Implement and maintain security controls, firewalls, and intrusion detection systems.
- Develop, update, and enforce information security policies and procedures.
- Provide security awareness training to employees.
- Analyze security logs and event data to identify suspicious activities.
- Assist in the development and implementation of disaster recovery and business continuity plans.
- Stay current with emerging cybersecurity threats and technologies.
- Collaborate with IT teams to ensure security is integrated into all systems and processes.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- Minimum of 3 years of experience in information security or cybersecurity operations.
- Strong knowledge of cybersecurity principles, best practices, and frameworks (e.g., NIST, ISO 27001).
- Experience with security tools such as SIEM, IDPS, vulnerability scanners, and antivirus software.
- Proficiency in network security, endpoint security, and data loss prevention (DLP).
- Excellent analytical and problem-solving skills.
- Strong communication and report-writing abilities.
- Relevant security certifications (e.g., Security+, CEH, CISSP) are a plus.
- Ability to work effectively in a hybrid work environment.
Information Security Analyst
Posted today
Job Viewed
Job Description
Responsibilities:
- Monitor security alerts and events from various security systems (e.g., SIEM, IDS/IPS).
- Analyze security logs and network traffic to detect and investigate suspicious activities.
- Conduct vulnerability assessments and penetration testing to identify weaknesses.
- Respond to and manage security incidents, including containment, eradication, and recovery.
- Implement and maintain security controls and technologies to protect systems and data.
- Develop and update security policies, procedures, and guidelines.
- Participate in security awareness training programs for employees.
- Collaborate with IT teams to ensure security best practices are integrated into system design and operations.
- Stay current with emerging threats, vulnerabilities, and security technologies.
- Perform risk assessments and recommend mitigation strategies.
- Assist in the development of incident response plans and disaster recovery procedures.
- Conduct regular security audits and compliance checks.
- Manage and configure security tools and software.
- Analyze malware and forensic data to understand attack vectors.
- Provide technical guidance on security best practices.
Qualifications:
- Proven experience in information security or a related field.
- Strong understanding of cybersecurity principles, frameworks, and best practices (e.g., NIST, ISO 27001).
- Proficiency in using security tools such as SIEM, vulnerability scanners, and firewalls.
- Experience with incident response and forensic analysis.
- Knowledge of network protocols and security concepts.
- Excellent analytical and problem-solving skills.
- Strong communication and interpersonal skills, with the ability to explain complex technical issues to non-technical audiences.
- Relevant certifications such as Security+, CySA+, or CISSP are highly desirable.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field, or equivalent practical experience.
- Ability to work effectively both independently and as part of a team.
- Detail-oriented with a commitment to accuracy.
This is a fantastic opportunity to make a significant impact on our organization's security posture and to grow your career in the cybersecurity domain.