- No elements found. Consider changing the search query.


ทักษะ:
Project Management
ประเภทงาน:
งานประจำ
เงินเดือน:
สามารถต่อรองได้
- Manage network-related projects and work with the IT team and 3rd parties on related IT projects.
- Designing and implementing new network solutions and/or improving the efficiency of current networks.
- Maintain, Optimize, troubleshooting and resolve system and network infrastructure to meet SLA Oversee and perform to fix various vulnerabilities of network, patch and upgrade to increase security.
- Manage network diagram, asset, component inventory and related documentation.
- Graduated from BSc/BA in computer science, engineering or relevant field.
- Understand network infrastructure (LAN/WLAN/WAN).
- Understand network vulnerability assessment.
- Proven experience with network capacity planning, network security principles, and general network management best practices.
- Experience at least 8 years with network design/planning/operation/troubleshooting.
- Network technical skill for switch, firewall, load balance, wireless, LAN/WAN/WLAN, network datacenter solution.
- Network design principles, best practices, and related technologies.
- Familiar with Cisco, Huawei equipment.
- Working in a team-oriented, collaborative environment.
- Strong analytical and troubleshooting skills.
- Strong IT project management.
- Strong interpersonal skill and service-oriented mindset.
ทักษะ:
Procurement
ประเภทงาน:
งานประจำ
เงินเดือน:
สามารถต่อรองได้
- Design & Develop solution to cover all required FBB & WIFI core network area and fulfill business and service requirement for Consumer, SME, Enterprise & FMC.
- Determine cost structure and propose best practice investment efficiency and control investment within assigned annual budget.
- Engage in exploration on new technology FBB & WIFI core network, data center and IT related system, which can lead to fulfill business requirements, evaluation and short listed for future procurement.
- Design and Develop network planning and operation tool to digitalize planning & operation process.
- Bachelor or higher degree in Computer, IT, or Telecom Engineering.
- At least 3-10 years experience in Mobile operator, Broadband network company especially in core network domain.
- Strong knowledge in Core Network (MPLS, BNG, DPI,CGN, DHCP, AAA) & IT System Infrastructure (Switch, Load Balance, Firewall/WAF, Server, Storage) Design/Planning.
ทักษะ:
Oracle, VMware, Linux, English
ประเภทงาน:
งานประจำ
เงินเดือน:
สามารถต่อรองได้
- Perform daily system and network monitoring, verifying the integrity and availability of all hardware, server resources, systems and key processes, reviewing system and application logs and verifying completion of scheduled jobs such as backups for both on premise and on cloud platform.
- Cloud Management (Oracle, AWS and Azure) and Upgrade OS version and hardening KVM Host and VM.
- Perform Cloud based infrastructure operation management and system on.
- Provide technical consultant, support, troubleshooting and administration of all VMWare, Hyper-V, Oracle VM, Windows, Linux, Unix Storage systems.
- Troubleshoot system, storage and network problems, diagnosing and solving hardware or software.
- Ensure security through access controls, backing up system, restoring and recover system.
- Monitor performance, Manage and Maintain / troubleshoot IT systems, Storage and networks.
- Investigating, Diagnosing and solving software and hardware.
- RequirementsBachelor's or Master s degree in IT, Computer Science, Engineering, or related fields.
- Experience: 5+ years in System Administration (Unix/Linux, VMware, Hyper-V, Oracle VM, Cloud services like AWS, Azure, OCI).
- Cloud Expertise: Proficiency in cloud platforms (AWS, Oracle Cloud), cloud services (EC2, S3, Oracle Cloud Compute), and networking configurations in cloud environments.
- Operating Systems: Proficiency in Linux distributions (RHEL, CentOS, Oracle Linux) and familiarity with Windows.
- Scripting & Automation: Familiarity with scripting (e.g., Shell Script, AWS CLI, OCI CLI) and experience in automation for system operations and monitoring.
- Networking Knowledge: Understanding of networking protocols (TCP/IP, UDP, DNS, HTTP/HTTPS), AD, DNS, DHCP, and network configuration.
- Cost Management: Experience in cloud resource cost analysis and optimization.
- Cloud Solution Development: Experience in designing and maintaining cloud infrastructure and consulting with developers.
- Communication: Good English communication skills for interaction with teams and stakeholders.
ทักษะ:
Project Management, Linux, UNIX, English
ประเภทงาน:
งานประจำ
เงินเดือน:
สามารถต่อรองได้
- Manage CCII (Cloud, Cyber Security, IOT, ICT) project for single and multi-tower solution for Property, Retail, Conglomerate, and international customer segments.
- Be a committee of AIS bid management for validating large projects at TCV > 10MB.
- Manage project stakeholders to meet expectation and requirement.
- Communicate project progress to stakeholders.
- Plan and manage project issue and risk with proper actions.
- Plan and manage project to meet project objective, within timeline, project budget, scope and give customer satisfied.
- Manage project resource both internal delivery and external suppliers.
- Bachelor's degree or higher in computer science, business, or a related field.
- 8-15 years of project management and related experience.
- Strong in communication and stakeholder management.
- Project Management Professional certification preferred.
- Proven ability to solve problems creatively.
- Strong familiarity with project management software tools, methodologies, and best practices.
- Experience seeing projects through the full life cycle.
- Excellent analytical skills.
- Strong interpersonal skills and extremely resourceful.
- Proven ability to complete projects according to outlined scope, budget, and timeline.
- Engineering Specialist (Cyber Security).
- Oversee the implementation of cyber security solutions and services to ensure customer satisfaction and security effectiveness.
- Plan and establish procedures and systems that enhance operational efficiency.
- Delegate tasks effectively to team members to achieve organizational objectives.
- Strategically allocate resources to optimize project outcomes.
- Monitor and support staff in their work progress to ensure timely delivery of services.
- Evaluate staff performance through regular assessments and feedback mechanisms.
- Foster professional development among team members to enhance their skills and capabilities.
- Drive productivity and maintain high quality standards within the division.
- Provide guidance and coaching to staff to support exceptional service delivery.
- Bachelor s degree in Computer Science, Information Technology, Cybersecurity, or a related field. Some positions may require a master s degree.
- Relevant work experience in cybersecurity roles, typically ranging from 3-7 years, depending on the seniority of the position. Hands-on experience with security technologies and methodologies is essential.
- Relevant certifications such as Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), CompTIA Security+, Certified Information Security Manager (CISM), or Certified Information Systems Auditor (CISA) may be preferred or required.
- Proficiency in network security, firewalls, intrusion detection systems, and VPN.
- Knowledge of operating systems (Windows, Linux, UNIX) and databases.
- Experience with security protocols (SSL, IPsec, etc.) and encryption.
- Familiarity with security frameworks and standards (NIST, ISO 27001, etc.).
- Knowledge of Compliance: Understanding of regulatory requirements and compliance standards (e.g., GDPR, HIPAA, PCI-DSS).
- Ability to work both independently and collaboratively in a team environment.
- Strong attention to detail and the ability to prioritize tasks effectively.
- Engineering/IT Specialist (Cyber Security)
- Design/Implement Cyber Security project for Private Cloud and Global Cloud (AWS and MS Azure).
- Solution integration and migration.
- Control suppliers in the assigned project.
- Do project quality control.
- Do project risk assessment and management.
- Do project UAT with customer.
- Create final project document.
- Do customer project training (OJT).
- At least 4 years of Cyber Security experience.
- Bachelor s degree in Computer Engineering, Information Technology, Computer Science or related fields.
- Experience in installation and operation Security product e.g. Firewall, IPS, SIEM, NAC, Anti-Virus, Endpoint.
- Knowledge on network security and cloud technology.
- Knowledge of monitoring tools (What s up gold, Zabbix, Nagios).
- Has valid Security product Certification e.g. Fortinet NSE3-7, Palo Alto PCNSA, PCNSE, Cisco CCNA, CCNP Security.
- Experienced in ITIL framework.
- Senior Engineer (System Infrastructure)
- Implement Server, Storage, Virtualization, Backup system for Enterprise customer.
- Hypervisor and Operating system configuration and customization.
- Network and firewall integration for Cloud infrastructure.
- Hand-over completed solution to related team.
- At least 3 years experience on Server, Storage, VMware and Veeam delivery.
- Strong knowledge of Cloud environment and Operating system. (Windows and Linux).
- Basic skill of Database and Middleware installation.
- Strong organizational skills and ability to take on multiple assignments.
- Experienced firewall and cloud network implementation.
- Ability to occasionally work or assign work during nights/weekends during critical incidents per on-call rotation or major project implementations.
- Good command of English.
- VMware VCP or Linux certificate knowledge is an advantage.
ทักษะ:
Risk Management, Software Development, Kubernetes
ประเภทงาน:
งานประจำ
เงินเดือน:
สามารถต่อรองได้
- Design, develop, and maintain security systems, tools, and best practices across the stack (frontend, backend, mobile, and infrastructure).
- Identify, assess, and mitigate security vulnerabilities through proactive risk management and threat modeling.
- Collaborate with product managers and developers to embed security into the software development lifecycle (SDLC).
- Develop and enforce policies for secure coding, data protection, and incident response.
- Implement robust authentication and authorization mechanisms.
- Conduct regular security assessments, including penetration testing and code reviews.
- Monitor, detect, and respond to security incidents using advanced tools and methodologies.
- Enhance infrastructure security using Kubernetes, Docker, and cloud platforms (GCP, AWS).
- Stay current on emerging threats, vulnerabilities, and security trends, and recommend actionable insights to improve defenses.
- Champion security awareness across the organization, including training sessions and knowledge-sharing activities.
- Ensure compliance with relevant security standards and regulations such as ISO 27001, PDPA, GDPR, SOC 2, or PCI DSS.
- Basic QualificationsProven expertise in application security, cloud security, and infrastructure security.
- Proficiency in securing systems built with technologies such as Node.js, Golang, Elixir, Python, React, Svelte, or Flutter.
- Experience with tools like Docker, Kubernetes, and cloud services (GCP, AWS).
- Strong understanding of cryptographic principles and secure communication protocols.
- Familiarity with CI/CD pipelines and secure DevOps practices.
- Hands-on experience with security tools for vulnerability scanning, penetration testing, and threat detection.
- Deep understanding of database security, especially with PostgreSQL or other relational or non-relational databases.
- Strong analytical and problem-solving skills with a security-first mindset.
- Excellent communication skills and the ability to collaborate effectively in Agile teams.
- Self-motivation, adaptability, and a strong work ethic.
- Preferred Qualifications We re especially excited if you bring:Experience leading security initiatives or mentoring other engineers in security best practices.
- Expertise in compliance frameworks such as ISO 27001, PDPA, GDPR, SOC 2, or PCI DSS.
- Advanced knowledge of security monitoring and incident response systems.
- Strong system design skills with a focus on secure architectures and long-term trade-offs.
- A proven track record of securing fast-paced, high-growth tech environments.
- A passion for securing user-centric products and contributing to their success.
- Perks & Benefits Flat Structure As we continue to grow fast, we strive to retain our culture where everyone is heard, contributes, and grows with the company..
- Work-life Harmony We believe that quality time outside of work is important to sustaining a healthy and happy lifestyle.
- Remote Work Hybrid-mode activated! It comes with the package: flexibility, focus and productivity!.
- Urban Office One breath from Phrom Phong BTS. No sweat whatsoever! The office should also feel like a second home so we dedicated a lot of care and resources into building the best environment for you to wake up to every morning.
- Fun Workshop The best relationships are built over new experiences, that s why we have workshops filled with a range of activities for you to look forward to and enjoy.
- Game Tournament It s getting fun and competitive! Challenge doesn t only have to come from work. Own the championship and show the peeps how great of a gamer (and player) you are.
- Group Insurance Health comes first, we know, don t worry, we ve got you covered.
- Health & Wellness Only a healthy army wins the war. We invest to take care of you from physical, mental and happiness-level. Adopted health & wellness applications plus activities to make sure everyone here is on cloud nine
ทักษะ:
Procurement, Legal, Contracts
ประเภทงาน:
งานประจำ
เงินเดือน:
สามารถต่อรองได้
- Identify and evaluate new IT resource platforms (e.g., container orchestration, database, and API management solutions) that support cloud-native architecture and operational goals.
- Conduct market and trend analyses to assess emerging technologies and innovations that could benefit the organization s infrastructure.
- Partner with internal teams to understand business needs and technical requirements, ensuring platform selections are aligned with organizational objectives.
- Vendor Sourcing & RFP Management:Develop and manage Requests for Proposal (RFPs) for platform acquisitions, including defining requirements, evaluating vendor proposals, and managing the selection process.
- Coordinate with procurement and legal teams to structure contracts that ensure compliance and maximize value.
- Maintain and develop relationships with vendors to stay informed on platform updates, negotiate contracts, and manage service agreements.
- Implementation Planning & Coordination:Define and document implementation strategies, collaborating with operations and engineering teams to ensure smooth deployment of selected platforms.
- Oversee platform rollout phases, including testing, configuration, and integration with existing systems.
- Establish performance metrics and benchmarks, ensuring platforms meet operational standards and achieve target service levels.
- Standards Development & Continuous Improvement:Contribute to the development of best practices, standards, and guidelines for platform management within cloud-native environments.
- Continuously monitor platform performance and usage, making recommendations for improvements or optimizations as needed.
- Support training initiatives and provide guidance to teams on platform features and best practices..
- At least 4-6 years of IT infrastructure, cloud services, or platform engineer roles.
- Bachelor s degree in Computer Engineering, Information Technology, Computer Science or related fields. a master s degree is a plus.
- Demonstrated experience in vendor sourcing, RFP processes, and managing technical implementations.
- Experience in installation and operation IaaS service such as VMware Vsphere, esxi, HyperV e.g.
- Experience in installation or operation PaaS and container cluster service e.g. AKS, Kubernetes, Redhat openshift is a plus.
- Knowledge on network security and cloud technology.
- Knowledge of monitoring tools (Prometheus, Grafana, Zabbix, Nagios).
- Knowledge of container orchestration (e.g., Kubernetes, OpenShift), databases (e.g., PostgreSQL, MySQL), and API gateway technologies (e.g., Kong, Apigee). The certifications in specific area is a plus.
- Experienced in ITIL framework.
- Strong communication skills to coordinate across technical and business teams.
- Analytical and strategic mindset with the ability to solve complex problems and drive project success.
ประสบการณ์:
7 ปีขึ้นไป
ทักษะ:
System Security, Windows Server, Linux
ประเภทงาน:
งานประจำ
เงินเดือน:
฿60,000 - ฿90,000, สามารถต่อรองได้
- Identify and evaluate areas for improvement in detection, prevention, and cyber incident response.
- Work closely with stakeholders to develop and follow up on remediation plans.
- Provide expert consultation on mitigating strategies and actionable remediation plans to asset owners.
- Collaborate with various teams to create, implement, and monitor effective remediation strategies.
- Apply knowledge of IT infrastructure, with experience as a system administrator or system engineer, to enhance cybersecurity measures.
- Utilize an understanding of offensive and defensive cybersecurity strategies (e.g., red and blue teams).
- Perform penetration testing or demonstrate a strong understanding of penetration testing methodologies to assess the security of IT systems.
- Use computer forensic tools to examine and analyze electronic media in suspected hacking cases.
- Conduct tasks related to malware analysis and reverse engineering to identify and mitigate threats.
- Define a course of action if a security problem exists and explain in detailed technical reports what occurred when an incident happens, including the reasons it occurred, and the response taken.
- Document incidents thoroughly, providing detailed technical reports that include the cause of the incident, and the response measures implemented.
- Build relationships with other entities responsible for conducting cyber threat analyses, ensuring effective collaboration and information sharing.
- Bachelor s degree / master s degree or higher in Computer Engineering, Information Technology, Computer science or related field.
- Proficiency with SIEM, UBA, and SOAR tools.
- Experience with system monitoring tools.
- Coding ability in C, C++, C#, Java, ASM, PERL, PHP, and PowerShell.
- Knowledge of backup and archiving techniques.
- Use of enterprise system monitoring tools.
- Understanding of cloud computing.
- Proficiency in UNIX.
- Knowledge of network communication (IP/TCP).
- Familiarity with computer hardware systems.
- Experience with web-based application security.
- Strong knowledge of Windows and Linux Operating Systems.
- Experience in identifying and evaluating cybersecurity risks and providing actionable insights.
- Previous experience as a penetration tester (pentester) is highly beneficial.
- Experience as a system administrator/system engineer is advantageous.
- Familiarity with computer forensic tools and techniques.
- Experience in malware analysis and reverse engineering.
- Ability to work well under pressure while handling multiple tasks.
- Remark: The Bank requires the verification of criminal records prior consideration for employment to ensure secured and maintain standards of the organization.
ทักษะ:
Research, Automation
ประเภทงาน:
งานประจำ
เงินเดือน:
สามารถต่อรองได้
- Lead the Cyber Security Incident Response (CSIR) team in day-to-day operations, managing complex incidents, and communicating progress to senior management.
- Ensure clear incident documentation and oversee the implementation and follow-up of realistic remediation plans.
- Detect and independently respond to security incidents across the organization.
- Assume the role of an Incident Manager during major security events.
- Collaborate with management to execute and iterate on the incident response process.
- Develop the threat-response matrix, incident-response playbook, and processes. Design and implement metrics for incident response, continually improving efficiency and effectiveness.
- Stay informed of emerging threats, security technologies, and relevant research for continuous improvement.
- Identify and mitigate complex security threats before exploitation.
- Implement and monitor security measures for infrastructure protection.
- Utilize log analysis platforms for security analytics and threat detection.
- Perform root cause analysis (RCA) and incident reviews.
- Mentor other members of the Security Incident Response Team.
- Help the team grow their skills and experience.
- Provide security recommendations to security architecture, issues, and features.
- Create a supportive environment for team members.
- Build strong partnerships with the other departments as a supporter of the cyber security incident response team. (CSIRT).
- Train team members to prioritize efforts and ensure alignment with company direction.
- Be a role model for positive thinking, and conflict resolution.
- Draft and successfully deliver on quarterly OKRs (Objectives and Key Results).
- Bachelor's degree or higher in Computer Engineering, Computer Science, IT, or related fields.
- A minimum of 5 years of working experience in Security Operations (SecOps), incident response, threat analysis, incident management, or relevant investigations during medium and large-scale security events.
- Robust understanding of security issues, mitigations, and a solid grasp of the current global threat landscape.
- Experience in security solutions, secure network design, firewalls, authentication, authorization systems, log analysis platforms, security incident response, monitoring, and intrusion detection.
- Profound knowledge of attacks, mitigation methods, and threat modeling.
- Experience in digital forensics, SOAR automation, and cloud providers like GCP, AWS, and Azure is advantageous.
- Strong written and verbal communication skills are required, including conducting presentations and creating security reports. Experience with executive-level communications is a plus.
- Substantial engineering mindset.
- Capability to build working relationships with key stakeholders.
- Capability to make concrete progress in the face of ambiguity and imperfect knowledge.
- Hold the certificate of CompTIA Security +, CompTIA CySA+, and others would be an added advantage.
ประเภทงาน:
งานประจำ
เงินเดือน:
สามารถต่อรองได้
- Responsible in troubleshooting basic end-user issues related to workstation, server, network, voice, assets and mobile.
- Workstation installations, movement, upgrades, back-up, monitoring, and related workstation tasks based on agreed targets.
- Application of break-fix analysis on workstation operating systems, applications, utilities, Internet/Intranet tools, and related workstation services.
- Performing/assisting with the troubleshooting on managed active directory and other related services.
- Performing/assisting with the network/connectivity related tasks, and preventive maintenance
- Proactive monitoring of voice systems to ensure maximum availability and optimal operation of office phone systems including phone handsets, MDF/ IDF wiring, VoIP systems and voice circuits.
- Responsible in coordinating workstation hardware related issues to vendor.
- Responsible in providing timely and accurate update and information on assigned incidents and service request.
- Responsible on the timely escalation of incidents which cannot be resolved on time or would need vendor/third party support.
- Coordinates with concerned teams, vendors, and/or appropriate third party as part of operations escalation as necessary. Ensures that all escalation information is accurate and periodically updated, and that all relevant members of the team are regularly informed on the status of the operations escalation process
- Work closely with service providers to resolve workstation related issues and/or in provisioning new services.
- Responsible in performing workstation installation, upgrade, preventive maintenance, back-up, monitoring, access administration and other related communication and server infrastructure tasks.
- Maintains data integrity and ensures the security of workstations in accordance to standards and best practices (e.g., standards implementation/configuration hardening, secure access control, patch updates, etc.)
- Act as endpoint process expert.
- May be tasked as a Dedicated Support Engineer where required.
- May be tasked to coordinate or be a member of various continuous improvement initiatives of the organization.
- Responsible for Network Load Conversions for troubleshooting and training room set-ups. 14. Performs assigned activities or tasks which are aligned to the set objectives by the management.
- New graduate and candidate 1 year experience are welcome
ประสบการณ์:
5 ปีขึ้นไป
ทักษะ:
Network Infrastructure, Compliance, Procurement, English
ประเภทงาน:
งานประจำ
เงินเดือน:
สามารถต่อรองได้
- Design, implement, and manage network infrastructure to ensure optimal performance and reliability.
- Collaborate with stakeholders to identify network requirements and develop solutions that meet business needs.
- Configure and maintain network hardware, including routers, switches, firewalls, and wireless access points.
- Monitor network performance and troubleshoot issues to minimize downtime and ensure seamless connectivity.
- Implement and manage VPN solutions to support secure remote access for staff members across multiple locations 1.
- Ensure compliance with network security policies and procedures, including firewall rules and web filtering 2.
- Conduct regular network assessments and provide recommendations for improvements and upgrades.
- Document network configurations, changes, and procedures to maintain an accurate and up-to-date knowledge base.
- Provide technical support and guidance to IT teams and end-users regarding network-related issues.
- Participate in IT projects and initiatives, providing network expertise and support as needed.
- Manage relationships with internet service providers and hardware suppliers, ensuring timely procurement and installation of network components 3.
- Stay updated with the latest network technologies and best practices to continuously enhance network infrastructure.
- Have more than 5 years of experience in network engineering or related roles.
- Strong knowledge of network infrastructure, including routers, switches, firewalls, and wireless access points.
- Proficient in configuring and managing VPN solutions for secure remote access.
- Experience with network monitoring tools and troubleshooting techniques.
- Familiar with network security policies and procedures, including firewall rules and web filtering 2.
- Excellent communication and stakeholder management skills.
- Strong analytical and problem-solving skills with attention to detail.
- Proficient in documenting network configurations and procedures.
- Proficient in English.
- Certification in network engineering or related fields (e.g., CCNA, CCNP) is a plus.
ประสบการณ์:
3 ปีขึ้นไป
ทักษะ:
Compliance, Project Management, Business Development
ประเภทงาน:
งานประจำ
เงินเดือน:
สามารถต่อรองได้
- Design, Implement, and Optimize Secure Landing Zones: Lead the creation and enhancement of secure landing zones across multiple cloud service providers (CSPs) such as AWS, Azure, and Google Cloud for clients in Southeast Asia.
- DevSecOps Pipelines: Architect and implement DevSecOps pipelines, integrating security controls into CI/CD processes to automate security and compliance testing.
- Infrastructure as Code (IaC): Design and deploy infrastructure as code using tools like Terraform, AWS CloudFormation, and Azure Resource Manager (ARM) templates to aut ...
- High Availability Architectures: Implement multi-region and high availability architectures to meet performance, scalability, and disaster recovery requirements.
- Security Configurations: Configure Web Application Firewalls (WAFs), DDoS protection (e.g., AWS Shield, Azure DDoS Protection), and network firewalls (e.g., AWS Network Firewall, Azure Firewall).
- Access Control: Implement role-based access control (RBAC), least privilege principles, and multi-factor authentication (MFA) across cloud environments.
- Cloud-Native Security Expertise: Provide subject matter expertise in cloud-native security technologies, including identity and access management (IAM), encryption, security monitoring, and vulnerability management.
- Project Management and Leadership: Ensure the successful delivery of cloud security solutions through strong project management and leadership.
- Business Development: Assist in business development efforts, including proposal creation and identifying opportunities to grow cloud security service offerings.
- Client Relationships: Build and nurture positive working relationships with clients, aiming to exceed their expectations.
- Engagement Profitability: Identify opportunities to improve engagement profitability.
- Mentorship: Mentor and develop junior staff, promoting knowledge sharing and skills development within the team.
- Your role as a leader At Deloitte, we believe in the importance of empowering our people to be leaders at all levels. We connect our purpose and shared values to identify issues as well as to make an impact that matters to our clients, people and the communities. Additionally, Assistant Managers across our Firm are expected toDevelop diverse, high-performing people and teams through new and meaningful development opportunities.
- Collaborate effectively to build productive relationships and networks.
- Understand and lead the execution of key objectives and priorities for internal as well as external stakeholders.
- Influence stakeholders, teams, and individuals positively - leading by example and providing equal opportunities for our people to grow, develop and succeed.
- Deliver superior value and high-quality results to stakeholders while driving high performance from people across Deloitte.
- Apply their understanding of disruptive trends and competitor activity to recommend changes, in line with leading practices.
- Enough about us, let's talk about you.3+ years of experience in cloud security implementations across multiple CSPs (AWS, Azure, GCP).
- Extensive hands-on experience in designing and implementing Security Landing Zones, cloud security architectures, and securing hybrid/multi-cloud environments.
- Relevant certifications such as AWS Certified Security - Specialty, Microsoft Certified: Azure Security Engineer, Google Cloud Professional Cloud Security Engineer, or CISSP, CCSP are highly desirable.
- Proven experience managing cloud security projects, including landing zone implementations and security automation.
- Expertise in cloud-native security controls, including IAM, key management, network security, and security monitoring tools (e.g., AWS Security Hub, Azure Security Center).
- Strong knowledge of compliance frameworks such as NIST,CSA CCM, and CIS Benchmarks and how to apply them to cloud security implementations.
- Ability to travel 25-50%, on average, based on the work you do and the clients and industries/sectors you serve.
- Bachelor s degree in Computer Science, Information Security, or a related field; Master s degree preferred.
- Limited immigration sponsorship may be available.
- Excellent problem-solving skills and proven ability to lead a team of engineers.
- Ability to optimally communicate and advocate key security requirements to senior stakeholders.
- Strong critical-thinking and problem-solving skills with clear communication.
- Due to volume of applications, we regret that only shortlisted candidates will be notified.
- Please note that Deloitte will never reach out to you directly via messaging platforms to offer you employment opportunities or request for money or your personal information. Kindly apply for roles that you are interested in via this official Deloitte website. #LI-AA1 Requisition ID: 106369In Thailand, the services are provided by Deloitte Touche Tohmatsu Jaiyos Co., Ltd. and other related entities in Thailand ("Deloitte in Thailand"), which are affiliates of Deloitte Southeast Asia Ltd. Deloitte Southeast Asia Ltd is a member firm of Deloitte Touche Tohmatsu Limited. Deloitte in Thailand, which is within the Deloitte Network, is the entity that is providing this Website.
ทักษะ:
Research, System Administration, Android
ประเภทงาน:
งานประจำ
เงินเดือน:
สามารถต่อรองได้
- Implements IT security improvements by assessing current situation; evaluating trends; anticipating requirements.
- Protects IT system by defining access privileges, control structures, and required resources.
- Process & analyze to gain insights on past IT areas on, current or potential attacks and threats that pose a risk to the organization.
- Primary point of contact with Internal Audit. Periodically review, update, implement and communicate changes to IT policies and procedures and General IT Controls. Facilitate internal and external audit processes by participating in scoping discussions and walk-throughs, delivering evidence that controls are operating as defined, remediating deficiencies, and acting on recommendations.
- Safeguards IT infrastructure and system as well as information system assets by identifying and solving potential and actual security problems.
- Research cyber security topics and promote Cyber security awareness throughout Thaioil.
- EDUCATION.
- Bachelor s degree in computer science, Information Systems, or equivalent education or work experience.
- EXPERIENCE.
- Relevant experience, especially in IT working environment.
- Understanding of TCP/IP, common networking ports and protocols, traffic flow, system administration, OSI model, defense-in-depth, and common security elements.
- Hands-on experience analyzing high volumes of logs, network data (e.g., Netflow, FPC), and other attack artifacts in support of incident investigations.
- Experience with vulnerability scanning solutions.
- Familiarity with Vulnerability Management program.
- Proficiency with any of the following: Anti-Virus, HIPS, ID/PS, Full Packet Capture, Host-Based Forensics, Network Forensics, and RSA Security.
- Have knowledge of architecture, engineering, and operations of at least one enterprise SIEM platform.
- Understanding of mobile technology and OS (i.e., Android, iOS, Windows), VMware technology, and Unix and basic Unix commands.
- OTHER REQUIREMENTS.
ประสบการณ์:
4 ปีขึ้นไป
ทักษะ:
Quality Assurance, Assurance, Industry trends
ประเภทงาน:
งานประจำ
เงินเดือน:
สามารถต่อรองได้
- Customer Obsession, matching customer needs with appropriate Microsoft resources and repeatable IP, e.g., by giving the customer confidence that we can help them achieve their desired business outcomes, including readying them for AI at scale, using Value Based Delivery.
- Understanding the critical levers that impact achievement of targets/ business objectives and planning ahead to overcome any associated constraints or risks.
- Continuously building their capabilities to meet MS/Customer priorities and personal ...
- Becoming your customers AI Ready transformation consultant by upskilling in workloads/scenarios that ready them to innovate with AI at scale. Use this knowledge at every opportunity to support customers in their AI journey.
- Understanding the focus areas for your role & team.
- Customer CentricityGathers customer/partner insights (e.g., feedback around technical preferences, environments, business needs, competitive landscape), and maps architecture and digital transformation solutions to customer/partner business outcomes. Acts as the voice of the customer (VOC)/partner by driving new feedback, insights, and resources across internal teams to add and prioritize. Represents the customer/partner to internal teams (e.g., Engineering) to shape products and services by providing insights across the territory. Advocates for the customer/partner at all opportunities and shares customer success stories with the wider internal team.
- Develops and expands existing impactful relationships with customer and partner architects and technical specialists, technical decision makers (TDMs), and business stakeholders. Receives and synthesizes data about customer/partner business and technical requirements, addresses them with technical architecture(s), and demonstrates and proves those solutions' capability and value through design collaboration sessions with the customer/partner. Contributes to and understands how work aligns with customer success plan and meets customer/partner needs by partnering with the appropriate internal teams and resources to deliver customer outcomes. Supports customer/partner skilling and addressing identified capability gaps (e.g., skills, capacities) by delivering as a trusted technical advisor to ensure customer readiness by facilitating technical discussions and adoption of technical best practices (e.g., architecture, well-architectured principles, required technical skills and roles) and enabling operational health and cloud readiness. Assesses and transfers knowledge to close customer/partner capability skill gaps, taking action through peers as appropriate. May identify and recommend most qualified partners to meet customer project needs.
- Guides other team members to focus on customer/partner experience through efficient delivery and ensuring a seamless and connected customer experience. Supports definition of customer/partner conditions of success. Anticipates customer/partner dissatisfaction and unmet needs and executes strategies to improve experience, value realization, and acceleration of customer transformation.
- Actively listens and respectfully challenges customers/partners when going in the wrong direction, presents insights and alternatives, and takes action appropriately.
- Business Impact Identifies and anticipates issues and advises customers/partners to operate and optimize performance in accordance with Microsoft best practices. Adapts methodology and applies governance to identify, communicate, and minimize business and technical risks. Adheres to quality assurance standards and calculates risks while ensuring excellence in the design and/or delivery of solutions. Leverages standard tools to ensure accurate opportunity and milestone execution and pipeline hygiene.
- Drives customer/partner relationships to anticipate, identify, escalate, and work to resolve technical blockers to accelerate consumption and solution implementations (e.g., by application of technical capabilities). Routes non-technical issues for removal by the appropriate party. Applies broad business and technical knowledge across various architecture or other Microsoft solutions to meet business and information technology (IT) requirements and resolve identified technical constraints. Shapes and enhances customers' requirements.
- Proactively uses knowledge of the offerings, practices, products, services, solutions, and value propositions of Microsoft and its competitors in customer/partner conversations to identify and/or guide and support partners in developing growth opportunities based on knowledge of customer/partner needs. Contributes to increase in consumption and aligns with Customer Success Account Management or other Account Team members on customer/partner priorities to drive growth in consumption via cost optimization, operational excellence performance efficiency, and security. Drives architecture design, resiliency reviews, and technical optimization that result in production deployment application and increase customer/partner usage and consumption. Ensures that the customer/partner's application has as few points of failure as possible. Consults and provides thought leadership for technical solution clarity, design, development, and deployment (including with and through partner technical stakeholders) and supports the customer/partner throughout implementation to achieve value outcomes and Microsoft's Customer Promise.Understands industry trends and the competitor's architecture solutions and identifies Microsoft's strengths over competitive solutions to drive conversations with customers/partners and convince them of solution.
- Technical Leadership Proactively develops technical and professional learning and development plan in alignment with and support from their manager. Role models effective technical readiness. Acts as a mentor and role model to less experienced colleagues to educate them on technical and non-technical concepts. Participates in development opportunities (e.g., Ready, Build, Ignite).
- Shares ideas, insights, and strategic technical input with technical teams, internal communities across the field, and the larger virtual team across Microsoft using a thorough knowledge of specific Microsoft products and their context in the competitive landscape. Participates in external technical community events (e.g., conferences, seminars, technical meetups, Webcasts, blogs, hackathons) and shares learnings with the internal team. May obtain management support for assembling and leading a local virtual team.
- Generates new ideas for changes and improvements to existing intellectual property (IP), technologies, and processes for designated customers/partners. Drives opportunities for IP reuse, best practice sharing, and consumption acceleration. Proactively identifies gaps through delivery and communicating those gaps to others (e.g., Leadership, managed intellectual property [MIP], Design, and Governance). Applies subject matter expertise to develop new IP that fills identified gaps.
- Specialty Responsibilities Understands solution area-specific market opportunities (e.g., competitor insights) and collaborates with Global Partner Solutions (GPS) business stakeholders to lead and execute initiatives to translate opportunities into actions. Proactively guides and supports partners in developing repeatable offerings, practices, products, and solutions. Advises the partner throughout initial strategic customer implementations.*.
- Identifies and prioritizes several opportunities that align with revenue goals, and orchestrates growth of solution utilization pipeline with partners. Provides assistance with partner and sales teams to bring clarity to specific opportuniites through proof of concept and technical pre-sales support.*.
- Required/Minimum Qualifications Bachelor's Degree in Computer Science, Information Technology, Engineering, Business, or related field AND 4+ years experience in cloud/infrastructure technologies, information technology (IT) consulting/support, systems administration, network operations, software development/support, technology solutions, practice development, architecture, and/or consulting OR equivalent experience.
- Additional or Preferred Qualifications Bachelor's Degree in Computer Science, Information Technology, Engineering, Business, or related field AND 8+ years experience in cloud/infrastructure technologies, information technology (IT) consulting/support, systems administration, network operations, software development/support, technology solutions, practice development, architecture, and/or consulting OR Master's Degree in Computer Science, Information Technology, Engineering, Business, or related field AND 6+ years experience in cloud/infrastructure technologies, technology solutions, practice development, architecture, and/or consulting.
- OR equivalent experience.
- 4+ years experience working in a customer-facing role.
- 4+ years experience working on technical projects.
- Technical Certification in Cloud (e.g., Azure, Amazon Web Services, Google, security certifications).
- MCAPSRegionsASEAN Microsoft is an equal opportunity employer. Consistent with applicable law, all qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.
ทักษะ:
Linux, Good Communication Skills, English
ประเภทงาน:
งานประจำ
เงินเดือน:
สามารถต่อรองได้
- Conduct advanced penetration tests to identify vulnerabilities in computer systems, networks, and applications.
- Perform vulnerability assessments and security audits to evaluate the effectiveness of existing security measures.
- Develop and execute simulated cyber-attacks to assess the organization s readiness to defend against real-world threats.
- Employ various attack methodologies to test the resilience of systems against hacking attempts and security breaches.
- Perform threat modeling to anticipate potential attack vectors.
- Analyze risks associated with identified vulnerabilities and recommend appropriate mitigation strategies.
- Develop custom tools and scripts to automate penetration testing and exploit known vulnerabilities.
- Keep up to date with the latest exploitation techniques and security tools.
- Prepare detailed reports on findings from penetration tests and security assessments.
- Document and present risks and vulnerabilities to relevant stakeholders, along with recommended countermeasures.
- Collaborate with the Blue Team to enhance the organization s defensive strategies based on offensive findings.
- Share insights and knowledge on emerging threats and attack techniques with the cybersecurity team to continually improve defensive measures.
- Bachelors or Masters Degree in Computer Engineering, Computer Science or related field.
- At least 10 years of experience in penetration testing and vulnerability assessments or related roles.
- Strong knowledge of network and application security, ethical hacking, and cybersecurity principles.
- Familiarity with penetration testing tools (e.g., Metasploit, Burp Suite, Kali Linux).
- Excellent problem-solving skills and ability to think like an adversary.
- Good communication skills for effective reporting and stakeholder engagement.
- Rapid learning capability and able to work under pressure.
- Good command in written and spoken Thai and English language.
- Ability to present technical solutions with stakeholders in an easy way.
- Knowledge of International Security frameworks, Standards, and Guidelines e.g., NIST-800-53, PCI-DSS, OWASP, etc.
- Professional Certificated related to work e.g. (CISSP, OSCP, OSWE) is desirable.
- Location: True Digital Park, Punnawithi.
ประสบการณ์:
5 ปีขึ้นไป
ทักษะ:
Research, ISO 27001, Enthusiastic, English
ประเภทงาน:
งานประจำ
เงินเดือน:
สามารถต่อรองได้
- Collect and analyze threat intelligence reports covering new threats, vulnerabilities, products.
- Conduct technical and operational threat intelligence research, both independently and as part of a wider team.
- Identify emerging threats, techniques and trends, the means of protecting or defending against them, and articulate these in a range of report formats to relevant stakeholders.
- Conduct deep-level analysis of malware, including how it is developed, functions, and employed.
- Support the Consulting and Managed CTI teams, Vulnerability Management, Incident Response and CSOC team with up-to-date technical intelligence, detection logic and situational awareness on current and emerging threats.
- Support Cybersecurity Posture Management to guarantee that a good cybersecurity posture is consistently maintained at an acceptable level. Liaison with external audit, internal audit, financial crime and associated consultants, and the group firm.
- Assist technology security team leaders/others in responding to cybersecurity incidents that have an impact on cybersecurity posture, in order to guarantee quick reaction, tracking, and proper maintenance.
- Assist in R&D and innovation on cybersecurity technology and approaches for continuous cybersecurity uplift.
- Qualifications Bachelor s or Master degree in computer science, Computer Engineering, Information Technology, or related field.
- At least 5 years of experience in Information Security or a related field.
- Knowledge of security technology e.g. WAF, SIEM, EDR, IAM, CSOC and Vulnerability Management.
- Experience in cloud cybersecurity technologies and services.
- Exposure to malware reverse engineering, network intrusion analysis, host intrusion analysis, log analysis, vulnerability research or digital forensics is preferred.
- Strong understanding of industry best practices and standards, including ISO 27001, NIST, and CIS is preferred.
- Relevant certifications such as CISSP, CISM, or CISA are a plus.
- Excellent communication and problem-analytical skills, with the ability to communicate complex security issues to non-technical stakeholders.
- Effective English for verbal, written communication.
- Enthusiastic, thriving, good interpersonal skills.
- We're committed to bringing passion and customer focus to the business. If you like wild growth and working with happy, enthusiastic over-achievers, you'll enjoy your career with us.
ประสบการณ์:
5 ปีขึ้นไป
ทักษะ:
Problem Solving, English
ประเภทงาน:
งานประจำ
เงินเดือน:
สามารถต่อรองได้
- Design, implement and maintain the IT Security of the organization which involves developing and executing security strategies, standards and procedures to protect IT assets from cyber threats and vulnerabilities.
- Develops solution conceptual designs and solution blueprints for IT projects.
- Design security architecture elements to mitigate emerging threats.
- Reviewing security measures and recommending to implementing enhancements.
- Review and advise security solution architect for the proposed system such as: Network Segmentation, Application protection, Defense-in-depth, Remote Access, Encryption Technologies.
- Conducting security advisory consultancy and working with RED and BLUE team for security testing along the pipeline of the system delivery.
- Bachelors or Masters Degree in Computer Engineering, Computer Science or related field.
- At least 5 years of experience of IT Security Advisory, Penetration tester or Enterprise Architect or related role.
- Comprehensive understanding of the IT Security Concept, Security Architect, Risk assessment.
- Ability to analyst finding form Offensive and Defensive Security team.
- Ability to analyze end-to-end security processes and provide advice in order to reduce risk to acceptable levels.
- Strong analytical and problem solving.
- Rapid learning capability and able to work under pressure.
- Good command in written and spoken Thai and English language.
- Ability to present technical solutions with stakeholders in an easy way.
- Knowledge of International Security frameworks, Standards, and Guidelines e.g., NIST-800-53, PCI-DSS, OWASP, and etc.
- Professional Certificated related to work e.g. (CISSP, CSSLP, CDPSE, OSCP, TOGAF) is desirable.
- Location: True Digital Park, Punnawithi.
ประสบการณ์:
3 ปีขึ้นไป
ทักษะ:
Industry trends
ประเภทงาน:
งานประจำ
เงินเดือน:
สามารถต่อรองได้
- Risk Assessment & Analysis: Conduct comprehensive assessments of clients OT environments to identify vulnerabilities and recommend mitigation strategies.
- Security Strategy Development: Design and implement tailored OT security frameworks and policies in alignment with industry standards (NIST, ISA/IEC 62443, etc.).
- Stakeholder Engagement: Collaborate with cross-functional teams, including IT, operations, and management, to foster a culture of security awareness and resilience.
- Training & Mentorship: Provide training and mentorship to junior consultants and client teams on OT security best practices and emerging threats.
- Thought Leadership: Stay abreast of industry trends, emerging technologies, and regulatory changes; contribute to white papers, presentations, and client workshops.
- Your role as a leader
- At Deloitte, we believe in the importance of empowering our people to be leaders at all levels. We expect our people to embrace and live our purpose and shared values, challenging themselves everyday to identify issues that are most important to our clients, our people and the communities, and to make an impact that matters. In addition to living our purpose, Senior Consultants across our firm are expected to:Understand objectives for stakeholders, clients and Deloitte whilst aligning own performance to objectives and sets personal priorities.
- Develop themselves by actively seeking opportunities for growth, shares knowledge and experiences with others, and acts as a strong brand ambassador.
- Seek opportunities to challenge themselves, collaborate with others to deliver and takes accountability for results.
- Build relationships and communicates effectively in order to positively influence peers and stakeholders.
- Work effectively in diverse teams within a highly inclusive team culture where everyone is supported, respected and recognized for their contribution.
- Enough about us, let's talk about youBachelor s degree in Cybersecurity, Information Technology, Engineering, or a related field; a Master s degree is a plus.
- At least 3 years of experience in cybersecurity, with a focus on operational technology and industrial control systems (ICS).
- Relevant certifications such as CISSP, CISM or GICSP,.
- Deep understanding of relevant standards and guidelines.
- Proficiency in network security, vulnerability assessment tools, and incident response methodologies specific to OT environments.
- Strong knowledge of industrial control systems, SCADA systems, and PLCs.
- Experience with network segmentation, access control, and secure communication protocols.
- Exceptional verbal and written communication skills, with the ability to articulate complex concepts to technical and non-technical stakeholders alike.
- Strong analytical and problem-solving skills, with a proactive approach to identifying and addressing potential security issues.
- Due to volume of applications, we regret that only shortlisted candidates will be notified.
- Please note that Deloitte will never reach out to you directly via messaging platforms to offer you employment opportunities or request for money or your personal information. Kindly apply for roles that you are interested in via this official Deloitte website. #LI-AA1 Requisition ID: 106367In Thailand, the services are provided by Deloitte Touche Tohmatsu Jaiyos Co., Ltd. and other related entities in Thailand ("Deloitte in Thailand"), which are affiliates of Deloitte Southeast Asia Ltd. Deloitte Southeast Asia Ltd is a member firm of Deloitte Touche Tohmatsu Limited. Deloitte in Thailand, which is within the Deloitte Network, is the entity that is providing this Website.
ทักษะ:
Product Owner, Project Management
ประเภทงาน:
งานประจำ
เงินเดือน:
สามารถต่อรองได้
- Provide governance and guidance to deliver world class network products and services in-line with industry standards, and internal process/procedures with an emphasis on risk-based approaches.
- Participates and provides governance to all elements from the delivery of technologies to service improvements through lifecycle management, vendor coordination, and operational support, documenting the risk profile along the way.
- Defines the Service Level Objectives (SLO) and Service Level Indicators (SLI) and de ...
- Acts as the driver for continuous improvement of NPS products and services.
- Responsibilities Works closely with product managers of NPS to define SLI/SLI.
- Works closely with the service owner of the network products and services to make sure we deliver to agreed SLO/CLI.
- Works closely with business partners and product managers to make sure the demands from business can be supported on time with quality following proper prioritization calls.
- Owns the service reports and service review meetings for network products and services, proactively tracks the critical metrics of network services and provides insight on improvement opportunities, leads/drives the Service Improvement Plan (SIP) in a systematic approach.
- Governs the process used by NPS and make sure the team is complaint to process, and introduces industry standard methodologies and continually improve those processes for a mature service delivery process.
- Join service owners in TRT and PIR with the target to drive for systematic improvement on how we handle incidents/problems.
- Provides oversight to the network ITSM process and results to proactively prevents service disruptions through analysis of changes adhering to ITSM principles and process.
- Proactively tracks and maintains a service risk catalog with continual updates provided to leadership, while working with business partners to clearly highlight the risk profile as it relates to business decisions.
- Tracks audit results and issues exposed in OpsRes and TechRes discussion and provide inputs to product manager, product owner, service owner to resolve the potential issues in a timely manner.
- Defines and manages the vendor operational performance indicators and holds vendors accountable through proper engagement and governance.
- Manages network vendor performance and drives for improvement systematically when there is trend.
- On top of the individual SM role, can lead a team of SMs to provide consistent governance globally.
- Qualification 10+ years working in global technology service based organization.
- Experience of working in a global 24/7 network or infrastructure service operations.
- ITIL Certification (ideally ITIL 4) with demonstrable application on large 24 x7 global organisation.
- Passionate in leading continuous improvement and has knowledge on continuous improvement methodologies.
- Demonstrated ability to influence and hold others accountable for service quality - more senior people in the organization and business partners.
- Not only can lead initiatives in own areas, can also help wider organization.
- Strong leadership and excellent problem-solving and analytical skills.
- Good communication and interpersonal skills.
- Project management expertise.
- Ability to work under stress and manage multiple priorities.
- Certifications (Preferred): Cisco Certified Network Professional (CCNP) or Cisco Certified Internetwork Expert (CCIE).
- Certified Information Systems Security Professional (CISSP).
- ITIL Foundation Certification.
- This role is ideal for professionals passionate about technology leadership, network innovation, and delivering seamless connectivity in a dynamic environment. LSEG is a leading global financial markets infrastructure and data provider. Our purpose is driving financial stability, empowering economies and enabling customers to create sustainable growth. Our purpose is the foundation on which our culture is built. Our values of Integrity, Partnership, Excellence and Change underpin our purpose and set the standard for everything we do, every day. They go to the heart of who we are and guide our decision making and everyday actions. Working with us means that you will be part of a dynamic organisation of 25,000 people across 65 countries. However, we will value your individuality and enable you to bring your true self to work so you can help enrich our diverse workforce. You will be part of a collaborative and creative culture where we encourage new ideas and are committed to sustainability across our global business. You will experience the critical role we have in helping to re-engineer the financial ecosystem to support and drive sustainable economic growth. Together, we are aiming to achieve this growth by accelerating the just transition to net zero, enabling growth of the green economy and creating inclusive economic opportunity. LSEG offers a range of tailored benefits and support, including healthcare, retirement planning, paid volunteering days and wellbeing initiatives. We are proud to be an equal opportunities employer. This means that we do not discriminate on the basis of anyone s race, religion, colour, national origin, gender, sexual orientation, gender identity, gender expression, age, marital status, veteran status, pregnancy or disability, or any other basis protected under applicable law. Conforming with applicable law, we can reasonably accommodate applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs. Please take a moment to read this privacy notice carefully, as it describes what personal information London Stock Exchange Group (LSEG) (we) may hold about you, what it s used for, and how it s obtained, your rights and how to contact us as a data subject. If you are submitting as a Recruitment Agency Partner, it is essential and your responsibility to ensure that candidates applying to LSEG are aware of this privacy notice.
ประสบการณ์:
2 ปีขึ้นไป
ทักษะ:
Public Relations, Legal, Computer Security, English
ประเภทงาน:
งานประจำ
เงินเดือน:
สามารถต่อรองได้
- Executes cybersecurity engineer tasks including, but not limited to, security patch management, security vulnerability management, and security configuration management.
- Tests, implements, deploys, maintains, reviews, and administers the cybersecurity tools.
- Assist in identifying, prioritizing, and coordinating the protection of critical cyber defense infrastructure and key resources.
- Coordinate with Cyber Defense Analysts to manage and administer the updating of rules and signatures (e.g., intrusion detection/protection systems, antivirus, and content blacklists) for specialized cyber defense applications.
- Identify potential conflicts with the implementation of any cyber defense tools (e.g., tool and signature testing and optimization).
- Operates and maintains production information security systems.
- Ensures proper cybersecurity documentation is in place regarding standard operating procedures.
- Monitors the industry and external environment for emerging threats and advises relevant stakeholders on appropriate courses of action.
- Oversees incident response planning and the investigation of security breaches and assists with any associated disciplinary, public relations, and legal matters.
- Applies expert knowledge and skills to resolve problems, including support concepts and methods, problem isolation and troubleshooting procedures, system and file recovery processes, and operating system and network configurations.
- Prepares and presents cogent and cohesive analyses and briefings advising management on new technological developments, techniques, and enhancements that result in increased time and cost efficiencies.
- Provides advice and assistance to troubleshoot the most complex problems in a manner that minimizes interruptions in the ability to carry out critical business activities.
- Supports rapid response teams in response to customer service problems resulting from catastrophic events such as virus infections or widespread power outages.
- Supports the development of a formal cyber security risk assessment program.
- Supports and assists in maintaining a vulnerability/gap/response assessment program.
- Supports the ongoing maintenance of the cyber-Kill Chain for the company, focusing on phases of cyber-attack and remediation/mitigation for each phase.
- Supports ongoing activities to develop, communicate, and support appropriate standards and risk controls associated with digital data.
- Supports the development and maintenance of a company Data Protection program.
- Responds to cybersecurity alerts.
- Cascade and leverage cybersecurity control and practice to the entire company group.
- Bachelor s or Master s degree in Computer Engineering, MIS, IT, or a related field.
- At least 2 years experience in computer security and 5 years in IT infrastructure.
- Have a foundation in good information security practices.
- Knowledge of International Security frameworks, Standards, and Guidelines, e.g., COBIT, NIST-800, ISO 27001, PCI-DSS, OWASP, etc.
- Experience in Security tools, e.g., EDR, ATP, WAF, IPS/IDS, Deception, TI/TIP, Anti DDoS.
- Experience in Cloud Environments, e.g., Google Cloud, AWS, Microsoft Azure.
- Experience with system and application security management and control.
- Experience with system, network, and OS hardening techniques. (e.g., remove unnecessary services, password policies, network segmentation, enable logging, least privilege, etc.).
- Experience with facilitating information security risk assessments.
- Technical writing, documentation development, process mapping, and visual communication skills.
- Hands-on experience with computer programming languages and/or scripting languages such as Python, Java, and Shell for automation.
- Professional certificates related to work (e.g., CISSP, CISM, AWS Certified Security, or similar general security certification) are desirable.
- Talent to identify and create a broad vision for a security solution and to execute it;.
- Systems Thinking - the ability to see how parts interact with the whole (big picture thinking).
- Proven experience of acting as an expert in project teams.
- A positive, can-do attitude who naturally expresses a high degree of empathy to others.
- Ability to explain your thoughts or findings also to non-technical professionals.
- Strong problem-solving and analytical abilities Able to work under minimal supervision, detail oriented.
- Excellent English (Spoken and Written).
- Location: True Digital Park, Punnawithi.
ทักษะ:
DevOps, Jenkins, Automation, English
ประเภทงาน:
งานประจำ
เงินเดือน:
สามารถต่อรองได้
- Enable rapid developer onboarding to LSEG developer tools, ensuring they become productive quickly to build applications on their chosen Cloud platform.
- Improve Developer Experience by increasing their ability to improve cadence of delivery of new features.
- Unlock Developer Capacity and enable greater Innovation by modernising tooling and processes.
- Ensure that development on the integrated platform is both secure and compliant by design.
- Tech Profile/Essential Skills Good knowledge of Infrastructure as Code concepts (IAC) and basics of Microservices architecture.
- Knowledge of Cloud Technology basics across CSPs - Amazon, Microsoft, and Google (at least one).
- Knowledge and implementation experience of DevOps, CI/CD, DevSecOps concepts.
- Good level of understanding of Architecture principles, design methodologies and their applicability.
- Creating and deploying CI/CD pipelines (GitLab / Jenkins / GitHub).
- Configuring and running Code/Binary scans using solutions like SonarQube, Semgrep, Blackbuck, Trivy, GitLeaks Veracode, etc.
- Configuring and using Secrets management tools like Vault and Cloud native solutions.
- Broad knowledge of SDLC Tools, specifically Build, Test and Deploy Automation tools, e.g., Maven, Gradle, Selenium, Ansible, etc.
- Good understanding of Source code mgmt solutions like GitHub, GitLab, BitBucket, etc.
- Good understanding of Artifact and dependency mgmt solutions like JFrog, Nexus, etc.
- Good understanding on Containerisation solutions, e.g., K8, Docker, Kaniko, etc.
- Proficiency in at least one of the standard programming languages - Java/JavaScript, C#, Python, or similar Object-oriented programming.
- Proficiency in at least one of the standard scripting languages - Terraform, Bash, Ansible, etc.
- Good understanding of Software engineering concepts, e.g., coding techniques (DRY principles), Trunk based development (Branching/Merging techniques), etc.
- Good understanding of Developer Desktops - both Physical and Virtual (W365) and implementation of tooling framework/solutions for Desktops.
- Good understanding of the basics of Gen AI concepts and solutions - GitHub Copilot, GitLab Duo, Q developer.
- Previous experience in a Project delivery, Coordination or Support role.
- Previous experience of Software Development, Business and Technical Analysis, Quality Assurance, and / or Emerging Technology and Governance.
- PPM Tools (ex: Clarity, JIRA, Asana).
- Preferred Skills and Experience Hands-On experience of working on Windows/ Linux Servers. Cloud services (AWS/Azure/GCP).
- Managing incidents, change requests, service requests and driving TRT (Technical Recovery Team) calls.
- Strong problem solving skills on these platforms.
- Minimum knowledge and understanding of financial markets are desirable.
- Ability to work independently and in a team environment.
- Ability to communicate effectively in English with all levels of staff, both orally and written.
- Ability to manage own work and multitask to meet tight deadlines without losing sight of priorities under minimum supervision.
- Highly motivated, self-directed individual with a positive & pro-active attitude to work.
- Customer and service focused, with determination to meet their needs and expectations.
- Be driven and committed to the goals and objectives of the team and organization.
- Second line point of escalation in event of a major incident.
- KEY COMPETENCIES Deploys agile best practices as appropriate throughout the software development lifecycle.
- Analyses infrastructure requirements and designs the architecture for central or distributed processing to meet user requirements.
- Creates, applies and implements technologies to deliver and produce services with minimal human intervention, to improve the efficiency, reliability and speed tasks.
- Develops, tests and maintains software applications and related programs and procedures; demonstrates creativity and innovation using available software development tools and following design requirements.
- Creates and maintains documentation to describe the system and its parts, including requirements documents, design decisions, architecture descriptions, program source code and support documentation.
- Possesses depth of technical expertise, knowledge of technologies and design, development and implementation of technologies.
- Possesses knowledge of features and facilities for integration, and communication among applications, databases and technology platforms to bring together different components and form a fully functional solution to a business problem.
- Shows ability to come up with new ideas and novel approaches to problems and establish solutions through different methods.
- Partners with clients and resolves issues by diagnosing problems, determining possible resolutions and implementing effective solutions.
- Defines a problem, generates solutions, and evaluates and identifies the best solution to overcome the problem.
- Interacts well with others, quickly establishing rapport building positive relationships and networks.
- Ensures a product/service meets or exceeds specified standards and objectives to achieve desired level of quality.
- Education and Professional Skills Curious about new technologies and tools, creative thinking and initiative taking.
- Solid English reading/writing capability required.
- Strong communication & collaboration skills.
- Commitment to DevOps culture.
- Familiarity with Agile principles including any hand on experience.
- Detailed Responsibilities Ensure quality deliverables to ensure software meets or exceeds specified standards and objectives.
- Apply software engineering principles and practices to design, build, and run solutions which are scalable and reliable.
- Design, develop, modify, adapt and implement short and long-term solutions to technology needs through new and existing applications, systems architecture, network systems and applications infrastructure.
- The team(s) continuously fine-tune systems to meet stringent non-functional requirements on performance, resilience and operability, and design.
- Demonstrates significant knowledge of a single or multiple technologies and advises on design, development and implementation.
- Advances tools and applications by producing clean and efficient code and reviews others' code when required.
- Handles own workload and promotes an inclusive and open culture.
- Demonstrates depth of knowledge and expertise in software development and is regarded as the SME in their domain. Develops knowledge of other domains to understand linkages and dependencies.
- Understands the tech strategy and culture, and how they impact own work as well as adjacent teams.
- Oversees the design work and planning for user journeys ensuring the achieve the desired objectives.
- Supports the creation of solutions for Epics and the associated implementation tasks.
- Adapts existing patterns to develop robust solutions.
- Develops understanding of LSEG's commercial direction and how technology is forming a part of this.
- Completes the delivery of given tasks with some guidance and oversight.
- Builds strong relationships with senior internal stakeholders, growing network and collaborating with own team and colleagues in other domains. Communicates complex information clearly to relevant audiences.
- Takes initiative to develop knowledge in technology products and tools through on the job learning, certifications and projects.
- Must interact with global teams in time zones spanning UK, US, APAC areas.
- Engage in and improve the whole lifecycle of services from inception and design, through to deployment, operation, and refinement.
- Support services before they go live through activities such as system design consulting, developing software platforms and frameworks, capacity planning and launch reviews.
- Maintain services once they are live by measuring and monitoring availability, latency, and overall system health.
- Scale systems sustainably through mechanisms like automation and evolve systems by pushing for changes that improve reliability and velocity.
- Build a CI/CD pipeline and maintain the pipeline for Software Delivery.
- Collaborate with Security and Infrastructure teams to ensure the patching are up to date.
- Co-ordinate and work with Devops Capability team to perform the Disaster recovery for the applications.
- Participate in Project related activities to meet operational needs.
- To ensure knowledge Articles of all supported systems is continually updated.
- To provide a high level of customer service, whilst working under pressure.
- To follow and adhere to established Incident Management, Change Management and Problem Management procedures.
- LSEG is a leading global financial markets infrastructure and data provider. Our purpose is driving financial stability, empowering economies and enabling customers to create sustainable growth. Our purpose is the foundation on which our culture is built. Our values of Integrity, Partnership, Excellence and Change underpin our purpose and set the standard for everything we do, every day. They go to the heart of who we are and guide our decision making and everyday actions. Working with us means that you will be part of a dynamic organisation of 25,000 people across 65 countries. However, we will value your individuality and enable you to bring your true self to work so you can help enrich our diverse workforce. You will be part of a collaborative and creative culture where we encourage new ideas and are committed to sustainability across our global business. You will experience the critical role we have in helping to re-engineer the financial ecosystem to support and drive sustainable economic growth. Together, we are aiming to achieve this growth by accelerating the just transition to net zero, enabling growth of the green economy and creating inclusive economic opportunity. LSEG offers a range of tailored benefits and support, including healthcare, retirement planning, paid volunteering days and wellbeing initiatives. We are proud to be an equal opportunities employer. This means that we do not discriminate on the basis of anyone s race, religion, colour, national origin, gender, sexual orientation, gender identity, gender expression, age, marital status, veteran status, pregnancy or disability, or any other basis protected under applicable law. Conforming with applicable law, we can reasonably accommodate applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs. Please take a moment to read this privacy notice carefully, as it describes what personal information London Stock Exchange Group (LSEG) (we) may hold about you, what it s used for, and how it s obtained, your rights and how to contact us as a data subject. If you are submitting as a Recruitment Agency Partner, it is essential and your responsibility to ensure that candidates applying to LSEG are aware of this privacy notice.
- 1
- 2