
本公司职位空缺
您有机会成为我们大家庭中的一员,共同实现美好愿景。
我们正在寻找有志之士,不畏惧挑战,加入我们团队,为客户提供优质、专业的服务;推行稳固、健全的风险管理;塑造一个和谐、互动的企业文化,并造福社会。
您有机会成为我们大家庭中的一员,共同实现美好愿景。
我们正在寻找有志之士,不畏惧挑战,加入我们团队,为客户提供优质、专业的服务;推行稳固、健全的风险管理;塑造一个和谐、互动的企业文化,并造福社会。
Job Responsibility:
Responsible to ensure the security and resilience of our company's IT infrastructure. It is responsible for safeguarding against cyber threats, managing incident responses, ensuring regulatory compliance, and maintaining the integrity and availability of IT systems.
1. Design and Implementation of Secure Infrastructure
- Design and architect secure, scalable, and resilient IT infrastructure solutions that align with company’s business objectives and regulatory requirements.
- Ensure infrastructure design integrates security best practices, including zero trust architecture, segmentation, and encryption.
- Collaborate with IT teams to implement secure network, server, and storage solutions.
2. Security Assessment and Risk Management
- Conduct security assessments of existing and proposed infrastructure to identify vulnerabilities and risks.
- Develop risk mitigation strategies to address gaps in security posture.
- Work with the IT Risk Management team to align infrastructure security with company's overall risk appetite.
3. Collaboration with Cross-Functional Teams
- Partner with cybersecurity, compliance, and IT operations teams to ensure infrastructure security aligns with organizational goals.
- Provide technical expertise in incident response and forensic investigations related to infrastructure breaches.
4. Threat Management and Incident Response
- Monitor infrastructure for security threats and implement measures to prevent, detect, and respond to cyberattacks.
- Develop and maintain incident response plans for infrastructure-related security incidents.
5. Compliance and Regulatory Reporting
- Ensure infrastructure security measures comply with relevant regulations and standards.
- Provide technical expertise for audits and regulatory inspections, ensuring Company meets all compliance requirements.
- Maintain documentation of security controls and configurations for audit and reporting purposes.
- Generate reports on infrastructure security posture, risks, and mitigation efforts for senior management and stakeholders.
6. Vendor and Third-Party Management
- Evaluate and manage infrastructure security risks associated with third-party vendors and cloud service providers.
- Ensure vendor solutions align with Company's security standards and requirements.
Requirements: