About Us:
A leading global technology conglomerate renowned for its extensive ecosystem of digital services and platforms. With a strong presence in cloud computing, gaming, social media, and enterprise solutions, the organization supports millions of users and businesses worldwide. It emphasizes innovation, scalability, and security, making it a key player in driving digital transformation across various industries.
Job Responsibilities:
- Responsilbe for daily alert monitoring, analysis, initial triage and classification.
- Use SIEM platform(Eg: Splunk, ElasticSearch)to collect logs and analyze the events.
- Response, record, escalate and report the security incident based on SOP.
- Review and process Parsec and PAN whitelisting request.
- Monitor the status and completion of vulnerability scans, and regularly review vulnerability scan reports.
- Monitor security tickets generated by platforms such as WAF, vulnerability scanning, EDR, and CPI, and identify the asset owner responsible for each ticket.
- Handle privilege access, system configuration compliance, and vulnerability management collaboration.
- Analyze network traffic and logs to identify potential threats.
- Conduct periodic vulnerability assessments and remediation follow-up
- Support the implementation of security policies, standards, and procedures.
- Perform routine maintenance on security devices (patching, configuration updates, firmware upgrades).
Job Requirements:
- Minimum Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field.
- Minimum 1 year working experience in network security and cyber security related fields
- Understanding networking, security devices (Firewall, IDS/IPS)
- Well understanding with common cybersecurity threats such as phishing emails, brute-force attacks, and malware.
- Well understanding with the use of common SaaS applications such as Jira and Office 365.
- Strong analytical and troubleshooting skills.
- Able to work shift and perform well under pressure.
- Willingness to solve the challenges in a practical/hands-on manner.
Good to have:
- Ability to perform automation when required, with any programming language such as PowerShell, Bash, Python, Java.
- Experience in SOC environment and participated cyber drills
- Strong knowledge on different standards, guidelines and best practices, such as ISO 27001, CIS Benchmark etc.
- Strong command of English and Chinese (Mandarin) with good communication and writing skills.