- No elements found. Consider changing the search query.
Skills:
Risk Management, Software Development, Kubernetes
Job type:
Full-time
Salary:
negotiable
- Design, develop, and maintain security systems, tools, and best practices across the stack (frontend, backend, mobile, and infrastructure).
- Identify, assess, and mitigate security vulnerabilities through proactive risk management and threat modeling.
- Collaborate with product managers and developers to embed security into the software development lifecycle (SDLC).
- Develop and enforce policies for secure coding, data protection, and incident response.
- Implement robust authentication and authorization mechanisms.
- Conduct regular security assessments, including penetration testing and code reviews.
- Monitor, detect, and respond to security incidents using advanced tools and methodologies.
- Enhance infrastructure security using Kubernetes, Docker, and cloud platforms (GCP, AWS).
- Stay current on emerging threats, vulnerabilities, and security trends, and recommend actionable insights to improve defenses.
- Champion security awareness across the organization, including training sessions and knowledge-sharing activities.
- Ensure compliance with relevant security standards and regulations such as ISO 27001, PDPA, GDPR, SOC 2, or PCI DSS.
- Basic QualificationsProven expertise in application security, cloud security, and infrastructure security.
- Proficiency in securing systems built with technologies such as Node.js, Golang, Elixir, Python, React, Svelte, or Flutter.
- Experience with tools like Docker, Kubernetes, and cloud services (GCP, AWS).
- Strong understanding of cryptographic principles and secure communication protocols.
- Familiarity with CI/CD pipelines and secure DevOps practices.
- Hands-on experience with security tools for vulnerability scanning, penetration testing, and threat detection.
- Deep understanding of database security, especially with PostgreSQL or other relational or non-relational databases.
- Strong analytical and problem-solving skills with a security-first mindset.
- Excellent communication skills and the ability to collaborate effectively in Agile teams.
- Self-motivation, adaptability, and a strong work ethic.
- Preferred Qualifications We re especially excited if you bring:Experience leading security initiatives or mentoring other engineers in security best practices.
- Expertise in compliance frameworks such as ISO 27001, PDPA, GDPR, SOC 2, or PCI DSS.
- Advanced knowledge of security monitoring and incident response systems.
- Strong system design skills with a focus on secure architectures and long-term trade-offs.
- A proven track record of securing fast-paced, high-growth tech environments.
- A passion for securing user-centric products and contributing to their success.
- Perks & Benefits Flat Structure As we continue to grow fast, we strive to retain our culture where everyone is heard, contributes, and grows with the company..
- Work-life Harmony We believe that quality time outside of work is important to sustaining a healthy and happy lifestyle.
- Remote Work Hybrid-mode activated! It comes with the package: flexibility, focus and productivity!.
- Urban Office One breath from Phrom Phong BTS. No sweat whatsoever! The office should also feel like a second home so we dedicated a lot of care and resources into building the best environment for you to wake up to every morning.
- Fun Workshop The best relationships are built over new experiences, that s why we have workshops filled with a range of activities for you to look forward to and enjoy.
- Game Tournament It s getting fun and competitive! Challenge doesn t only have to come from work. Own the championship and show the peeps how great of a gamer (and player) you are.
- Group Insurance Health comes first, we know, don t worry, we ve got you covered.
- Health & Wellness Only a healthy army wins the war. We invest to take care of you from physical, mental and happiness-level. Adopted health & wellness applications plus activities to make sure everyone here is on cloud nine
Experience:
3 years required
Skills:
PowerShell, Python, Amazon AWS, Microsoft Azure, English, Thai
Job type:
Full-time
Salary:
negotiable
- Design, operate and maintain IT system and Infrastructure on both private cloud and public cloud in accordance with FWD standards and policies.
- Work with project owner and stakeholders to support an application hosted at on-premise data centers and public cloud providers.
- Consult with project owner and stakeholders on deployment design, implementation, monitoring and optimization within cloud platforms.
- Take a hands-on role in automating infrastructure migration to cloud environments.
- Develop scripts to automate standard activities (ie. PowerShell, Python).
- Develop, document, make recommendations, and communicate plans for investing in IT cloud infrastructure, including analysis of cost reduction opportunities.
- Anticipate, mitigate, identify, respond to, and resolve problems affecting cloud systems performance, efficiency, and availability.
- Complete all vulnerability fixing are on time and align with group policy.
- Bachelor s Degree in Computer Science or IT related fields.
- Prefer Certified Microsoft, Azure, AWS or equivalent IT industry certificate.
- Minimum 3-5 years of experience in IT Infrastructure and Cloud Infrastructure.
- Excellence communication both Thai and English.
Experience:
No experience required
Skills:
Linux, CompTIA Security+, Network Administration, English
Job type:
Full-time
Salary:
negotiable
- Oversee power, cooling, and cabling; install, configure, and maintain servers, storage, and network hardware.
- Ensure 24/7 system availability through proactive monitoring, performing routine health checks on servers, storage systems, and networks.
- Diagnose and resolve server, network, and application performance issues; escalate critical incidents and ensure swift resolution.
- Implement security protocols (firewalls, access controls) and ensure compliance with industry standards and internal policies.
- Manage data backup processes and conduct disaster recovery tests to ensure business continuity.
- Execute hardware and software upgrades for servers, networks, and storage systems, and maintain thorough documentation of configurations and processes.
- Bachelor s degree in IT, Computer Science, or related field.
- Experience in data center operations, Linux, and Microsoft system administration.
- Familiarity with ServiceNow and network administration.
- Certifications like CCNA, CompTIA Network+, or relevant Microsoft certifications (e.g., MCSA) are preferred.
- Flexible to relocation.
- Good command in English (Minimum 750 TOEIC score).
- Goal-Oriented, Unity, Learning, Flexible.
Experience:
3 years required
Skills:
System Security, Windows Server
Job type:
Full-time
Salary:
฿60,000 - ฿80,000, negotiable
- Provide input and security consultation in a project-based environment as well as assisting operational of IT Security components with functional security requirements.
- Evaluate new projects and applications as they relate to security architecture and design; audit existing deployments and analyse gaps against security practices and standards.
- Conduct application vulnerability assessment, secure code review, and security penetration testing for new projects, enhancement projects, and periodic assurance to com ...
- Implement and operate DevSecOps on projects/applications that use DevOps process.
- Track, enforce, and consult to resolution the closure of security risks including review plans and monitor progress or remedial actions according to security requirements, security design, application vulnerability, and penetration testing issues.
- Periodically review security requirements to align with Bank s policies and regulations.
- Support periodic security audits.
- Manage third parties involved in IT Security Advisory and Assurance.
- Bachelor's or Master s Degree in Computer Science, Engineering, Information Systems or equivalent.
- Minimum 3 years in IT Security Advisory, Security Assurance, Threat Hunting plus experience working in or closely with IT Application, Enterprise Architect, and IT Risk management.
- Knowledge of Security Framework and Concepts, Compliance, Risk and Regulations, PCI DSS, OWASP, COBIT.
- Experience in performing comprehensive and authoritative technical analysis of the security readiness and compliance of applications.
- The ability to oversee pentesting to find vulnerabilities in all elements of a security system, understand security vulnerabilities, secure code review and remediation.
- Data and information management, including classification, retention and destruction. It also means keeping corporate and personal data both private and secure while needed, and destroyed when it is no longer needed.
- Knowledge of all applicable laws and compliance frameworks to enforce compliance.
- Remark: The Bank requires the verification of criminal records prior consideration for employment to ensure secured and maintain standards of the organization.
Skills:
Compliance, Industry trends, DevOps, English
Job type:
Full-time
Salary:
negotiable
- Design, implement, and manage IT infrastructure solutions in the ADMS environment.
- Collaborate with cross-functional teams to ensure seamless integration of infrastructure with software applications.
- Monitor system performance, troubleshoot issues, and implement necessary fine tuning to optimize performance.
- Ensure the security and integrity of the infrastructure, adhering to best practices and compliance requirements.
- Incident, problem & change management.
- Develop and maintain documentation for systems, processes, and procedures.
- Provide technical support and training to team members and end-users when required.
- Stay updated with emerging technologies and industry trends to enhance infrastructure capabilities.
- Bachelor's degree in Computer Science, Information Technology, Computer Networks, or a related field.
- More than 5 years' experience working as an IT Infrastructure Engineer or similar role.
- Strong knowledge of network protocols, server management, and virtualization technologies.
- Excellent problem-solving skills and the ability to work under pressure.
- Good command in English, strong communication and interpersonal skills to collaborate effectively with team members and stakeholders from different parts of the APAC region.
- Proficiency in cloud services (e.g., AWS, Azure) and experience with DevOps practices is a plus.
- Relevant certifications (e.g., Cisco Certification, Microsoft Certification, Azure, AWS) are a plus.
- Experience in implementing or working in ITIL processes and methodologies environment.
- Knowledge of cybersecurity best practices.
- Competitive salary and performance-based bonuses.
- Opportunities for professional development and certification.
- Primary Location: TH-10-Bangkok.
- Schedule: Full-time Unposting Date: Ongoing
Skills:
Risk Management, English
Job type:
Full-time
Salary:
negotiable
- Plan and support internal audit strategies in Cyber Security part (Cyber Security is the practice of defending computers, servers, mobile devices, electronic systems, networks, and data from malicious attacks).
- Lead a Cyber Security Audit team to ensure output through implementation of work standards and report to top management.
- Identify potential Cyber Security Risk and convince others in the organization to accept complete proposals and recommendation.
- Master s degree in Computer Engineering, Computer Science, Information Technology.
- Experience At least 7 years such as Information Security Management, Information Risk Management, IT Audit Management, ICT Security, Cloud Security, or in a related field.
- Professional certificates of CISA (Certified Information Systems Auditor), CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager) are advantage.
- Background in technical knowledge of Cyber Security Audit.
- Good command in English.
Experience:
3 years required
Skills:
PHP, Database Development, SQL, Python, English
Job type:
Full-time
- Develop functionality for integration of forecast and observation information from local and international agencies to RIMES data warehouse.
- Implementing automated data integration functionality to streamline processes for data integrated platforms.
- Managing databases and data warehouses, ensuring data integrity, security, and availability.
- Supporting the development and design of both back-end and front-end systems to meet project objectives.
- Assist in the development of the technical design framework and specifications (e.g., function, system architecture, data flow, etc.).
- B. Web Portal and Interface Development.
- Design/development/customization the data visualization platform with user-friendly web portals/websites.
- Creating dashboards and visual interfaces for the DSS, enhancing usability and accessibility.
- Creating and maintaining efficient script for web portals, websites, dashboards, and visual interfaces.
- Planning, design, development, testing, and validation of new systems, solutions, and processes to meet user needs and requirements effectively and efficiently.
- Analyses of users need to identify critical points where sectoral platform could be used effectively.
- Lead the development of system mock-ups and its iterations based on the design framework and specification, and users feedback.
- C. IT Infrastructure and Support.
- Ensuring seamless integration of IT systems with web applications and DSS.
- Providing technical support and troubleshooting to resolve any project-related IT issues.
- Implementing and managing security measures and backup solutions to protect project data.
- D. Other tasks.
- Conducting regular system reviews and maintaining optimal functionality and relevance.
- Scoping up the needs, requirements and recommending the implementation to enhance system performance and user experience.
- Participate in project planning and capacity-building activities.
- Perform other duties as may be required by the Project.
- Bachelor s degree in Information technology, Software Engineering, Computer Science or any related field.
- At least three (3) years of work experience in programming using Python, PHP, and the backend framework of Python or PHP.
- Or at least three (3) years of work experience in JavaScript, or modern JavaScript frameworks (e.g., React, Angular, Vue.js).
- Or at least three (3) years of combined work experience in systems design and database management.
- At least two (2) years of work experience in designing and implementing APIs and integrating systems using web services (e.g., REST, SOAP), including API documentation.
- Involvement in at least two (2) web and/or mobile app development projects in the last five years would be an advantage.
- Familiarity with the institutions/organizations as well as approaches and concepts in disaster risk reduction and management (DRRM), early warning, and/or climate change adaptation (CCA) would be an advantage.
- Excellent understanding of system development methodologies and lifecycle.
- Expert in relational databases and SQL.
- Proficient with software testing principles and methodologies.
- Excellent critical thinking, problem-solving, and planning skills.
- Strong communication, interpersonal, and writing skills.
- Ability to work amicably in a multicultural and multidisciplinary work environment.
- Excellent knowledge of English (both oral and written).
- Self-motivated, flexible, and able to work effectively and independently.
- Excellent work ethic and aptitude to work with a constructive attitude.
- Conscientious and efficient in meeting commitments, observing deadlines, and achieving results.
- Shows persistence when faced with difficulties or challenge.
- Interested candidates should send your application letter, resume, salary expectation and 2 references in PDF format to [email protected] by midnight of 8 January 2024, Bangkok time. Please state Full Stack Developer-HQ: Your Name the Subject line of the email. Only short-listed applicants will be contacted..
- Ms. Dusadee Padungkul.
- Head-Operational Support.
- Regional Integrated Multi-Hazard Early Warning System.
- AIT Campus, 58 Moo 9 Paholyothin Rd., Klong 1,.
- Klong Luang, Pathumthani 12120 Thailand..
- RIMES promotes diversity and inclusion in the workplace. Well-qualified applicants particularly women are encouraged to apply.
Skills:
DevOps, Compliance, Industry trends, English
Job type:
Full-time
Salary:
negotiable
- Design and deploy scalable, highly available, and fault-tolerant cloud architecture solutions that meet business objectives.
- Collaborate with software developers, engineers, and stakeholders to understand requirements and translate them into scalable cloud architectures.
- Evaluate and recommend cloud technologies and services to ensure optimal performance, security, and cost-efficiency.
- Develop architecture blueprints and detailed documentation.
- Implement best practices for cloud security and ensure compliance with regulatory requirements.
- Monitor cloud infrastructure and troubleshoot issues as they arise.
- Stay current with industry trends, technologies, and best practices related to cloud computing.
- Bachelor s degree in Computer Science, Information Technology, or a related field (Master s degree preferred).
- Thai Nationality.
- Proven experience as a Cloud Architect or similar role in designing and implementing cloud solutions.
- In-depth knowledge of at least 1 cloud computing services (e.g., AWS, Azure, Google Cloud) and cloud architecture patterns.
- Strong understanding of networking, security, and data management concepts in cloud environments.
- Experience with containerization (e.g., Docker, Kubernetes) and microservices architecture.
- Excellent problem-solving skills and ability to work independently as well as in a team environment.
- Strong communication and interpersonal skills.
- DevOps Engineer - New grads are welcome!.
- Design, develop, and maintain DevSecOps toolchain, CI/CD reference pipelines.
- Frontend/Backend code development and in actual writing code, fixing errors, adapting to hardware, improving performance, developing interfaces, performing optimisation and migration to target cloud.
- Support development team for CI/CD pipeline implementation and toolchain usage.
- Ensure deployment automation display a high degree of repeatability, traceability and ease of use.
- Conceptualise, design and implement the DevSecOps architecture, Assess the interface between applications and tools to addressing gaps in DevSecOps functionality.
- Provide applicable existing documentation, application architectures, systems diagrams, integrations, infrastructure asset documentations.
- Bachelor's Degree or higher in Engineering, IT.
- 0-5 years of experience in digital transformation/cloud modernization in DevSecOps domain.
- Good command of English and English presentation skills.
Experience:
2 years required
Skills:
Software Development, UNIX, Linux, Project Management, node.js
Job type:
Full-time
Salary:
negotiable
- System implementation and operations platform.
- System maintenance platform such as Inhoue-platform, Cloud platform.
- System monitoring and problem solving for handling customer complaints.
- System operation & planning middleware platform,.
- Support deploy application and service, monitor service response time and success rate, corperate with vendor to fix application/software bug.
- Service improvement and capacity expansion.
- System integration test and prove that the software meets major architectural requirements.
- Support complaint and problem solving (Corrective, Detective and Preventive).
- Support NOC which is our 1st-tier team for 24hr during on call period.
- Collaborate with internal and external teams to achieve the company goals.
- Work with business units to lunch IT strategies and to improve current IT implementations.
- Identify opportunities for process improvements and innovation.
- Computer and operating systems(LINUX, UNIX, Windows).
- Hardware and software management.
- Cloud operations (AWS, AZURE, VMware).
- Database management.
- DevSecOps.
- Understanding of IT security, infrastructure, and governance.
- Web platforms.
- Network administration. - Project and product management.
- Problem Solving (Corrective, Detective and Preventive).
- Knowledge, Skills and Competencies.
- Bachelor s degree or Master s degree in information technology, computer science, computer engineering, software engineering, or related field.
- At least 2 year experiences in software development.
- Experience in System admin or System operation field at least 2-3 years in Cloud platform, Fundamental OS [UNIX/Linux/Windows], Database SQL, No SQL, Programming language (especially JAVA, Python, Nodejs, Angular), OTT streaming, Basic GSM network is preference.
Experience:
7 years required
Skills:
System Security, Windows Server, Linux
Job type:
Full-time
Salary:
฿60,000 - ฿90,000, negotiable
- Identify and evaluate areas for improvement in detection, prevention, and cyber incident response.
- Work closely with stakeholders to develop and follow up on remediation plans.
- Provide expert consultation on mitigating strategies and actionable remediation plans to asset owners.
- Collaborate with various teams to create, implement, and monitor effective remediation strategies.
- Apply knowledge of IT infrastructure, with experience as a system administrator or system engineer, to enhance cybersecurity measures.
- Utilize an understanding of offensive and defensive cybersecurity strategies (e.g., red and blue teams).
- Perform penetration testing or demonstrate a strong understanding of penetration testing methodologies to assess the security of IT systems.
- Use computer forensic tools to examine and analyze electronic media in suspected hacking cases.
- Conduct tasks related to malware analysis and reverse engineering to identify and mitigate threats.
- Define a course of action if a security problem exists and explain in detailed technical reports what occurred when an incident happens, including the reasons it occurred, and the response taken.
- Document incidents thoroughly, providing detailed technical reports that include the cause of the incident, and the response measures implemented.
- Build relationships with other entities responsible for conducting cyber threat analyses, ensuring effective collaboration and information sharing.
- Bachelor s degree / master s degree or higher in Computer Engineering, Information Technology, Computer science or related field.
- Proficiency with SIEM, UBA, and SOAR tools.
- Experience with system monitoring tools.
- Coding ability in C, C++, C#, Java, ASM, PERL, PHP, and PowerShell.
- Knowledge of backup and archiving techniques.
- Use of enterprise system monitoring tools.
- Understanding of cloud computing.
- Proficiency in UNIX.
- Knowledge of network communication (IP/TCP).
- Familiarity with computer hardware systems.
- Experience with web-based application security.
- Strong knowledge of Windows and Linux Operating Systems.
- Experience in identifying and evaluating cybersecurity risks and providing actionable insights.
- Previous experience as a penetration tester (pentester) is highly beneficial.
- Experience as a system administrator/system engineer is advantageous.
- Familiarity with computer forensic tools and techniques.
- Experience in malware analysis and reverse engineering.
- Ability to work well under pressure while handling multiple tasks.
- Remark: The Bank requires the verification of criminal records prior consideration for employment to ensure secured and maintain standards of the organization.
Skills:
Research, Automation
Job type:
Full-time
Salary:
negotiable
- Lead the Cyber Security Incident Response (CSIR) team in day-to-day operations, managing complex incidents, and communicating progress to senior management.
- Ensure clear incident documentation and oversee the implementation and follow-up of realistic remediation plans.
- Detect and independently respond to security incidents across the organization.
- Assume the role of an Incident Manager during major security events.
- Collaborate with management to execute and iterate on the incident response process.
- Develop the threat-response matrix, incident-response playbook, and processes. Design and implement metrics for incident response, continually improving efficiency and effectiveness.
- Stay informed of emerging threats, security technologies, and relevant research for continuous improvement.
- Identify and mitigate complex security threats before exploitation.
- Implement and monitor security measures for infrastructure protection.
- Utilize log analysis platforms for security analytics and threat detection.
- Perform root cause analysis (RCA) and incident reviews.
- Mentor other members of the Security Incident Response Team.
- Help the team grow their skills and experience.
- Provide security recommendations to security architecture, issues, and features.
- Create a supportive environment for team members.
- Build strong partnerships with the other departments as a supporter of the cyber security incident response team. (CSIRT).
- Train team members to prioritize efforts and ensure alignment with company direction.
- Be a role model for positive thinking, and conflict resolution.
- Draft and successfully deliver on quarterly OKRs (Objectives and Key Results).
- Bachelor's degree or higher in Computer Engineering, Computer Science, IT, or related fields.
- A minimum of 5 years of working experience in Security Operations (SecOps), incident response, threat analysis, incident management, or relevant investigations during medium and large-scale security events.
- Robust understanding of security issues, mitigations, and a solid grasp of the current global threat landscape.
- Experience in security solutions, secure network design, firewalls, authentication, authorization systems, log analysis platforms, security incident response, monitoring, and intrusion detection.
- Profound knowledge of attacks, mitigation methods, and threat modeling.
- Experience in digital forensics, SOAR automation, and cloud providers like GCP, AWS, and Azure is advantageous.
- Strong written and verbal communication skills are required, including conducting presentations and creating security reports. Experience with executive-level communications is a plus.
- Substantial engineering mindset.
- Capability to build working relationships with key stakeholders.
- Capability to make concrete progress in the face of ambiguity and imperfect knowledge.
- Hold the certificate of CompTIA Security +, CompTIA CySA+, and others would be an added advantage.
Skills:
Oracle, VMware, Linux, English
Job type:
Full-time
Salary:
negotiable
- Perform daily system and network monitoring, verifying the integrity and availability of all hardware, server resources, systems and key processes, reviewing system and application logs and verifying completion of scheduled jobs such as backups for both on premise and on cloud platform.
- Cloud Management (Oracle, AWS and Azure) and Upgrade OS version and hardening KVM Host and VM.
- Perform Cloud based infrastructure operation management and system on.
- Provide technical consultant, support, troubleshooting and administration of all VMWare, Hyper-V, Oracle VM, Windows, Linux, Unix Storage systems.
- Troubleshoot system, storage and network problems, diagnosing and solving hardware or software.
- Ensure security through access controls, backing up system, restoring and recover system.
- Monitor performance, Manage and Maintain / troubleshoot IT systems, Storage and networks.
- Investigating, Diagnosing and solving software and hardware.
- RequirementsBachelor's or Master s degree in IT, Computer Science, Engineering, or related fields.
- Experience: 5+ years in System Administration (Unix/Linux, VMware, Hyper-V, Oracle VM, Cloud services like AWS, Azure, OCI).
- Cloud Expertise: Proficiency in cloud platforms (AWS, Oracle Cloud), cloud services (EC2, S3, Oracle Cloud Compute), and networking configurations in cloud environments.
- Operating Systems: Proficiency in Linux distributions (RHEL, CentOS, Oracle Linux) and familiarity with Windows.
- Scripting & Automation: Familiarity with scripting (e.g., Shell Script, AWS CLI, OCI CLI) and experience in automation for system operations and monitoring.
- Networking Knowledge: Understanding of networking protocols (TCP/IP, UDP, DNS, HTTP/HTTPS), AD, DNS, DHCP, and network configuration.
- Cost Management: Experience in cloud resource cost analysis and optimization.
- Cloud Solution Development: Experience in designing and maintaining cloud infrastructure and consulting with developers.
- Communication: Good English communication skills for interaction with teams and stakeholders.
Experience:
10 years required
Skills:
Research, Project Management, Management
Job type:
Full-time
Salary:
negotiable
- Manage and control project operations, analyze and design systems, and oversee system development to meet business needs.
- Analyze and define IT Business Solutions.
- Develop project plans and control timelines to ensure all parties' agreements are met, always prioritizing the organization's best interests.
- Analyze and design data integration architecture and internal systems, as well as facilitate data exchange between internal and external systems.
- Support the development or application of designed architecture to ensure effective implementation, including managing change and mitigating IT-related risks.
- Research and evaluate innovative technologies to enhance system and platform efficiency, considering processing capabilities, security, and adaptability for future changes (for IT and non-IT regulations).
- Manage stakeholder requirements effectively.
- Define company policies related to IT systems.
- Bachelor s degree in a Computer Engineering, Computer Science, Information Technology, or related fields.
- More than 10 years of experience, with over 5 years in Software Solution Architecture.
- Project management.
- Providing consultation and guidance".
Job type:
Full-time
Salary:
negotiable
Greenline Synergy provides the information security governance to the BDMS hospitals which is a framework of policies, practices, and strategies that align organizational resources toward protecting information through cybersecurity measures.
Experience:
5 years required
Skills:
Problem Solving, English
Job type:
Full-time
Salary:
negotiable
- Design, implement and maintain the IT Security of the organization which involves developing and executing security strategies, standards and procedures to protect IT assets from cyber threats and vulnerabilities.
- Develops solution conceptual designs and solution blueprints for IT projects.
- Design security architecture elements to mitigate emerging threats.
- Reviewing security measures and recommending to implementing enhancements.
- Review and advise security solution architect for the proposed system such as: Network Segmentation, Application protection, Defense-in-depth, Remote Access, Encryption Technologies.
- Conducting security advisory consultancy and working with RED and BLUE team for security testing along the pipeline of the system delivery.
- Bachelors or Masters Degree in Computer Engineering, Computer Science or related field.
- At least 5 years of experience of IT Security Advisory, Penetration tester or Enterprise Architect or related role.
- Comprehensive understanding of the IT Security Concept, Security Architect, Risk assessment.
- Ability to analyst finding form Offensive and Defensive Security team.
- Ability to analyze end-to-end security processes and provide advice in order to reduce risk to acceptable levels.
- Strong analytical and problem solving.
- Rapid learning capability and able to work under pressure.
- Good command in written and spoken Thai and English language.
- Ability to present technical solutions with stakeholders in an easy way.
- Knowledge of International Security frameworks, Standards, and Guidelines e.g., NIST-800-53, PCI-DSS, OWASP, and etc.
- Professional Certificated related to work e.g. (CISSP, CSSLP, CDPSE, OSCP, TOGAF) is desirable.
- Location: True Digital Park, Punnawithi.
Experience:
3 years required
Skills:
Industry trends
Job type:
Full-time
Salary:
negotiable
- Risk Assessment & Analysis: Conduct comprehensive assessments of clients OT environments to identify vulnerabilities and recommend mitigation strategies.
- Security Strategy Development: Design and implement tailored OT security frameworks and policies in alignment with industry standards (NIST, ISA/IEC 62443, etc.).
- Stakeholder Engagement: Collaborate with cross-functional teams, including IT, operations, and management, to foster a culture of security awareness and resilience.
- Training & Mentorship: Provide training and mentorship to junior consultants and client teams on OT security best practices and emerging threats.
- Thought Leadership: Stay abreast of industry trends, emerging technologies, and regulatory changes; contribute to white papers, presentations, and client workshops.
- Your role as a leader
- At Deloitte, we believe in the importance of empowering our people to be leaders at all levels. We expect our people to embrace and live our purpose and shared values, challenging themselves everyday to identify issues that are most important to our clients, our people and the communities, and to make an impact that matters. In addition to living our purpose, Senior Consultants across our firm are expected to:Understand objectives for stakeholders, clients and Deloitte whilst aligning own performance to objectives and sets personal priorities.
- Develop themselves by actively seeking opportunities for growth, shares knowledge and experiences with others, and acts as a strong brand ambassador.
- Seek opportunities to challenge themselves, collaborate with others to deliver and takes accountability for results.
- Build relationships and communicates effectively in order to positively influence peers and stakeholders.
- Work effectively in diverse teams within a highly inclusive team culture where everyone is supported, respected and recognized for their contribution.
- Enough about us, let's talk about youBachelor s degree in Cybersecurity, Information Technology, Engineering, or a related field; a Master s degree is a plus.
- At least 3 years of experience in cybersecurity, with a focus on operational technology and industrial control systems (ICS).
- Relevant certifications such as CISSP, CISM or GICSP,.
- Deep understanding of relevant standards and guidelines.
- Proficiency in network security, vulnerability assessment tools, and incident response methodologies specific to OT environments.
- Strong knowledge of industrial control systems, SCADA systems, and PLCs.
- Experience with network segmentation, access control, and secure communication protocols.
- Exceptional verbal and written communication skills, with the ability to articulate complex concepts to technical and non-technical stakeholders alike.
- Strong analytical and problem-solving skills, with a proactive approach to identifying and addressing potential security issues.
- Due to volume of applications, we regret that only shortlisted candidates will be notified.
- Please note that Deloitte will never reach out to you directly via messaging platforms to offer you employment opportunities or request for money or your personal information. Kindly apply for roles that you are interested in via this official Deloitte website. #LI-AA1 Requisition ID: 106367In Thailand, the services are provided by Deloitte Touche Tohmatsu Jaiyos Co., Ltd. and other related entities in Thailand ("Deloitte in Thailand"), which are affiliates of Deloitte Southeast Asia Ltd. Deloitte Southeast Asia Ltd is a member firm of Deloitte Touche Tohmatsu Limited. Deloitte in Thailand, which is within the Deloitte Network, is the entity that is providing this Website.
Skills:
Research, System Administration, Android
Job type:
Full-time
Salary:
negotiable
- Implements IT security improvements by assessing current situation; evaluating trends; anticipating requirements.
- Protects IT system by defining access privileges, control structures, and required resources.
- Process & analyze to gain insights on past IT areas on, current or potential attacks and threats that pose a risk to the organization.
- Primary point of contact with Internal Audit. Periodically review, update, implement and communicate changes to IT policies and procedures and General IT Controls. Facilitate internal and external audit processes by participating in scoping discussions and walk-throughs, delivering evidence that controls are operating as defined, remediating deficiencies, and acting on recommendations.
- Safeguards IT infrastructure and system as well as information system assets by identifying and solving potential and actual security problems.
- Research cyber security topics and promote Cyber security awareness throughout Thaioil.
- EDUCATION.
- Bachelor s degree in computer science, Information Systems, or equivalent education or work experience.
- EXPERIENCE.
- Relevant experience, especially in IT working environment.
- Understanding of TCP/IP, common networking ports and protocols, traffic flow, system administration, OSI model, defense-in-depth, and common security elements.
- Hands-on experience analyzing high volumes of logs, network data (e.g., Netflow, FPC), and other attack artifacts in support of incident investigations.
- Experience with vulnerability scanning solutions.
- Familiarity with Vulnerability Management program.
- Proficiency with any of the following: Anti-Virus, HIPS, ID/PS, Full Packet Capture, Host-Based Forensics, Network Forensics, and RSA Security.
- Have knowledge of architecture, engineering, and operations of at least one enterprise SIEM platform.
- Understanding of mobile technology and OS (i.e., Android, iOS, Windows), VMware technology, and Unix and basic Unix commands.
- OTHER REQUIREMENTS.
Experience:
5 years required
Skills:
eCommerce
Job type:
Full-time
Salary:
negotiable
- Define and develop Enterprise Architecture guiding principles, standards, policies and ensure the alignment to end-to-end digital roadmap definitions in order to support EA goal including Application, Data, Integration, Infrastructure and Cybersecurity domains.
- Provide advise and work Digital Business Partner, Project Manager, SRE and Cyber security team to develop and review solution and enterprise architect complying with EA Standards and direction.
- Review, consolidate and maintain EA document (i.e., Architect, policy, guideline) is up to date on a regular basis.
- Create, update, revise, and maintain up-to-date status of all enterprise architecture, design and relating guidelines to current developing environment in organization on a regular basis.
- Analyze technology trend and evaluate the impact on the broader Enterprise Architecture.
- Participate in EA Review Board or any other Review Board that requires EA point of view and ensure Enterprise Architect being developed adhere to Architecture guiding principles and meet business and EA performance goals.
- Connect and working with 3rd party's consultant to reshape all relating digital tech-and-trends to ensure that those direction and roadmap are align with business dynamics.
- EXPERIENCE.
- EDUCATION.
- Bachelor degree in computer science, computer engineering related technical discipline.
- OTHER REQUIREMENTS.
- 5 years Experience of defining and documenting (HL and detailed) technical enterprise-scale architectures involving applications, data, and technology.
- Solid experience with Cloud platforms and understanding of scaling, provisioning, elasticity, storage and networking.
- Deep understanding of digital solution architecture within complex IT programmers.
- The ability to understand complex business problems and commercial frameworks applying a logical, systematic approach to define an appropriate solution.
- Demonstrable experience of working on digital transformation projects involving a wide array of digital technologies, (i.e. eCommerce, Portals, Content Management platforms, Omni-Channel and Multi-device solutions).
Experience:
2 years required
Skills:
Network Infrastructure, Security Design, Big Data, English
Job type:
Full-time
Salary:
negotiable
- Perform cyber security and IT security assessments for clients (e.g. cyber security program assessment, cyber security risk assessments, IT network infrastructure reviews, system technical configurations review, information security policies and processes/procedures review etc.).
- Work on IT security design, analysis and implementation of security protection solution.
- Evaluate and analyze threat, vulnerability, system weakness, impact and risk to secu ...
- Advise clients on the security issues, including explanation on the technical details and how they can remediate the vulnerabilities in the processes, controls and systems.
- Advise client on the security incident response end-to-end process (i.e. preparation, detection, analysis, response and recovery of the security incident).
- Skills and attributes for success.
- To qualify for the role you must have.
- Bachelor's degree or Master s degree in Computer Engineering, Computer Science, Information Systems, IT Security, ICT or other related fields.
- Minimum 2 years' experience in such areas as IT security management design and implementation, IT security assessment and IT technical background.
- Familiar with leading IT security processes and tools.
- Highly proficient in both English and Thai with good written and oral communication and analytical skills.
- Ideally, you ll also have.
- Having experience in project planning and management will be a plus.
- Professional certifications such as Offensive Security Certified Professional (OSCP), Certified Ethical Hacker (CEH), Certified Information Systems Security Professional (CISSP), and / or Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM), or ISO27001 will be highly considered.
- Experience in new generation security practices (i.e. DevSecOps, iPentest, RedTeaming, System Resilience Design).
- Experience in Emerging Technologies (i.e. Cloud Computering, Blockchain, Big Data, A.I./M.L.).
- We re interested in intellectually curious people with a genuine passion for cyber security. With your specialization in attack and penetration testing, we ll turn to you to speak up with innovative new ideas that could make a lasting difference not only to us - but also to the industry as a whole. If you have the confidence in both your presentation and technical abilities to grow into a leading expert here, this is the role for you.
- What we offer.
- We offer a competitive remuneration package. Our comprehensive Total Rewards package includes support for flexible working and career development, covering holidays, health and well-being, insurance, savings and a wide range of discounts, offers and promotions.
- Continuous learning: You ll develop the mindset and skills to navigate whatever comes next.
- Success as defined by you: We ll provide the tools and flexibility, so you can make a meaningful impact, your way.
- Transformative leadership: We ll give you the insights, coaching and confidence to be the leader the world needs.
- Diverse and inclusive culture: You ll be embraced for who you are and empowered to use your voice to help others find theirs.
- If you can demonstrate that you meet the criteria above, please contact us as soon as possible.
- The exceptional EY experience. It s yours to build.
- EY | Building a better working world.
- EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.
- Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate.
- Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today.
Experience:
8 years required
Skills:
Automation, Software Development, ERP
Job type:
Full-time
Salary:
negotiable
- Establish a Global Test Team Operating Model: Define the structure, roles, and responsibilities within the Global Test Team to effectively support testing needs across all IT PMO projects..
- Develop and Implement Test Processes & Methodologies: Create and maintain comprehensive test strategies, plans, and processes that align with industry best practices and our organization's specific needs. This includes guidelines for various testing types (functional, regression, performance, security, etc.)..
- Drive Continuous Improvement: Continuously analyze test processes, identify areas for optimization, and implement improvements to increase efficiency, effectiveness, and test coverage..
- Resource Management: Oversee resource allocation and utilization within the Global Test Team, ensuring appropriate staffing for projects and initiatives..
- Tooling & Technology: Evaluate and implement appropriate testing tools and technologies to enhance automation, performance testing, and test management capabilities..
- Collaboration & Communication: Foster strong relationships with stakeholders across IT PMO, development teams, business analysts, and project managers to ensure seamless integration of testing activities within the project lifecycle..
- Reporting & Metrics: Define and track key performance indicators (KPIs) to measure the effectiveness of testing execution and communicate results to stakeholders..
- Mentorship & Training: Provide guidance, coaching, and training to test team members to enhance their skills and knowledge..
- Vendor Management: Manage relationships with third-party testing vendors when necessary..
- Knowledge/Skills/Competencies.
- Strong understanding of software development lifecycle (SDLC) and various testing methodologies (Agile, Waterfall)..
- Experience in establishing and implementing test processes and strategies in a global organization..
- Expertise in test planning, test case design, test execution, and defect management for applications such as PLM, ERP, MES..
- Experience with test automation tools and frameworks..
- Excellent communication, interpersonal, and leadership skills..
- Strong analytical and problem-solving skills, with the ability to identify root causes and implement effective solutions..
- Experience working in a customer-centric environment..
- Strong understanding of defect tracking, reporting, and resolution processes..
- Solid understanding of software development principles, databases, operating systems, and networking concepts..
- Ability to adapt to changing priorities and work effectively in a fast-paced environment..
- ISTQB certification is a plus..
- Physical Demands.
- Duties of this position are performed in a normal office environment..
- Duties may require extended periods of sitting and sustained visual concentration on a computer monitor or on numbers and other detailed data. Repetitive manual movements (e.g., data entry, using a computer mouse, using a calculator, etc.) are frequently required..
- Typical Experience.
- 8+ years of experience in software testing, with at least 3+ years in a leadership role managing testing teams..
- Typical Education.
- Bachelor's degree in Computer Science, Information Technology, or a related field..
- Educational requirements may vary by geography..
- Notes.
- This job description is not intended to be an exhaustive list of all duties and responsibilities of the position. Employees are held accountable for all duties of the job. Job duties and the % of time identified for any function are subject to change at any time.
- Celestica is an equal opportunity employer. All qualified applicants will receive consideration for employment and will not be discriminated against on any protected status (including race, religion, national origin, gender, sexual orientation, age, marital status, veteran or disability status or other characteristics protected by law).
- At Celestica we are committed to fostering an inclusive, accessible environment, where all employees and customers feel valued, respected and supported. Special arrangements can be made for candidates who need it throughout the hiring process. Please indicate your needs and we will work with you to meet them.
- Celestica (NYSE, TSX: CLS) enables the world s best brands. Through our recognized customer-centric approach, we partner with leading companies in Aerospace and Defense, Communications, Enterprise, HealthTech, Industrial, Capital Equipment and Energy to deliver solutions for their most complex challenges. As a leader in design, manufacturing, hardware platform and supply chain solutions, Celestica brings global expertise and insight at every stage of product development - from drawing board to full-scale production and after-market services for products from advanced medical devices, to highly engineered aviation systems, to next-generation hardware platform solutions for the Cloud. Headquartered in Toronto, with talented teams spanning 40+ locations in 13 countries across the Americas, Europe and Asia, we imagine, develop and deliver a better future with our customers.
- Celestica would like to thank all applicants, however, only qualified applicants will be contacted.
- Celestica does not accept unsolicited resumes from recruitment agencies or fee based recruitment services.
- 1
- 2
- 3