1 - 4 of 4 job positions
for keyword head of it security
Order by
Please select
- No elements found. Consider changing the search query.
Upload your resume Our AI will read it and recommend you best jobs
Experience:
3 years required
Skills:
System Security, Windows Server
Job type:
Full-time
Salary:
฿60,000 - ฿80,000, negotiable
- Provide input and security consultation in a project-based environment as well as assisting operational of IT Security components with functional security requirements.
- Evaluate new projects and applications as they relate to security architecture and design; audit existing deployments and analyse gaps against security practices and standards.
- Conduct application vulnerability assessment, secure code review, and security penetration testing for new projects, enhancement projects, and periodic assurance to com ...
- Implement and operate DevSecOps on projects/applications that use DevOps process.
- Track, enforce, and consult to resolution the closure of security risks including review plans and monitor progress or remedial actions according to security requirements, security design, application vulnerability, and penetration testing issues.
- Periodically review security requirements to align with Bank s policies and regulations.
- Support periodic security audits.
- Manage third parties involved in IT Security Advisory and Assurance.
- Bachelor's or Master s Degree in Computer Science, Engineering, Information Systems or equivalent.
- Minimum 3 years in IT Security Advisory, Security Assurance, Threat Hunting plus experience working in or closely with IT Application, Enterprise Architect, and IT Risk management.
- Knowledge of Security Framework and Concepts, Compliance, Risk and Regulations, PCI DSS, OWASP, COBIT.
- Experience in performing comprehensive and authoritative technical analysis of the security readiness and compliance of applications.
- The ability to oversee pentesting to find vulnerabilities in all elements of a security system, understand security vulnerabilities, secure code review and remediation.
- Data and information management, including classification, retention and destruction. It also means keeping corporate and personal data both private and secure while needed, and destroyed when it is no longer needed.
- Knowledge of all applicable laws and compliance frameworks to enforce compliance.
- Remark: The Bank requires the verification of criminal records prior consideration for employment to ensure secured and maintain standards of the organization.
3 days ago
See morekeyboard_arrow_down
SAVE JOB
UNSAVE JOB
Experience:
5 years required
Skills:
Problem Solving, English
Job type:
Full-time
Salary:
negotiable
- Design, implement and maintain the IT Security of the organization which involves developing and executing security strategies, standards and procedures to protect IT assets from cyber threats and vulnerabilities.
- Develops solution conceptual designs and solution blueprints for IT projects.
- Design security architecture elements to mitigate emerging threats.
- Reviewing security measures and recommending to implementing enhancements.
- Review and advise security solution architect for the proposed system such as: Network Segmentation, Application protection, Defense-in-depth, Remote Access, Encryption Technologies.
- Conducting security advisory consultancy and working with RED and BLUE team for security testing along the pipeline of the system delivery.
- Bachelors or Masters Degree in Computer Engineering, Computer Science or related field.
- At least 5 years of experience of IT Security Advisory, Penetration tester or Enterprise Architect or related role.
- Comprehensive understanding of the IT Security Concept, Security Architect, Risk assessment.
- Ability to analyst finding form Offensive and Defensive Security team.
- Ability to analyze end-to-end security processes and provide advice in order to reduce risk to acceptable levels.
- Strong analytical and problem solving.
- Rapid learning capability and able to work under pressure.
- Good command in written and spoken Thai and English language.
- Ability to present technical solutions with stakeholders in an easy way.
- Knowledge of International Security frameworks, Standards, and Guidelines e.g., NIST-800-53, PCI-DSS, OWASP, and etc.
- Professional Certificated related to work e.g. (CISSP, CSSLP, CDPSE, OSCP, TOGAF) is desirable.
- Location: True Digital Park, Punnawithi.
2 days ago
See morekeyboard_arrow_down
SAVE JOB
UNSAVE JOB
Huai Khwang, Bangkok, Purchasing
,IT / Programming
,Senior Management
Purchasing,IT / Programming,Senior Management
Skills:
Contracts, Compliance, Legal
Job type:
Full-time
Salary:
negotiable
- Oversee the procurement of IT products and service, ensuring that contracts are negotiated effectively and the suppliers meet the organisation's need.
- Major Tasks / Responsibilities.
- Drive Cost Saving and Develop sourcing strategies for IT Hardware and Software products and corporate services.
- Maintain strong relationships with business stakeholders and strategic supply partners to improve business outcomes.
- Mitigate supply chain risk and ensure full compliance with legal and regulatory requirements in purchasing activities.
- Initiate process improvement for maximizing business efficiency.
- Bachelor's or Master's in Supply Chain Management or any related field.
- A minimum of 10 years of professional experience in indirect procurement or related fields. Preference given to those with experience in the Oil & Gas or Quick Service Restaurant (QSR) industry.
- Procurement expertise with IT knowledge.
- Good interpersonal skill and time management.
- Able to work under pressure.
- Full working rights for Thailand only.
1 day ago
See morekeyboard_arrow_down
SAVE JOB
UNSAVE JOB
Experience:
3 years required
Skills:
Risk Management, Big Data, Compliance, English
Job type:
Full-time
Salary:
negotiable
- Providing effective 2nd line of defense on oversight of Technology related risk involving in assessing, in depth, the risks in IT Infrastructure, Cloud strategy, Data Management, IT Outsourcing, IT Operations, and Big Data.
- Assisting to update Ascend Money/True Money s risk appetite for approval by the board.
- Facilitating Risk and Control Self-Assessment (R&CSA) and monitoring the design and testing the operational effectiveness under Key Control Testing (KCT) and incident m ...
- Coordinating and supporting the Country Risk Management team for facilitating Risk and Control Self-Assessment (R&CSA), performing Key Control Testing (KCT), setting and reviewing Key Risk Indicators (KRIs) and Incident Management.
- Challenge business units in implementing a secured architecture aligned with the business goals and future plans, including company policy and regulatory requirements.
- Analysing IT incidents reported by staff and report lessons learned to the Head of International Risk and Fraud Management and the Committee.
- Delivering the oversight, advisory and guidance on new technology risk and emerging risk.
- Investigation, root-cause analysis, and coordination with relevant parties for data loss prevention monitoring and management.
- Assisting the Head of International Risk and Fraud Management to bring together a holistic picture of the technology risk across the company.
- Tracking progress status with the Country Risk Management team around remediation activities to close gaps from policy compliance assessments and various other risk assessments.
- Providing IT & Cyber Risk dashboard for Committee and Senior Management.
- Ad-hoc assignment.
- Bachelor s or Master s Degree in Economic, Finance, IT or related fields.
- Minimum 3 years of professional experience in the IT Risk Management, IT Security or IT Audit with relevant experience in the Financial Services Industry.
- Strong organization, good presentation, communication, writing, interpersonal and teamwork skills.
- Demonstrated ability to complete assigned projects in a timely manner and in a fast-paced, high pressure environment.
- Multiple industry recognized certifications like CISSP, CRISC, CSSP (Cloud), CPT, ISO27001 is a plus.
- Strong analytical and quantitative skills.
- Thorough knowledge of IT governance and control frameworks.
- Understanding of complex IT environments including legacy, hybrid cloud, virtualization, software defined networking is a plus.
- Good command in both oral and written in English communication.
- Able to travel in regional countries (i.e. Myanmar, Vietnam, Cambodia, Indonesia, Malaysia, the Philippines).
2 days ago
See morekeyboard_arrow_down
SAVE JOB
UNSAVE JOB
Send me latest jobs forhead of it security
- 1