Responsibilities:
- Manage IT Security Protection System, address technical and security issues, and perform Health Checks.
- Review and enhance IT security policies, procedures, and documentation based on industry standards.
- Enforce IT Security Policy compliance, assess security posture, and recommend measures to mitigate threats.
- Develop and enforce security policies to safeguard against unauthorized access and potential threats. Configure and manage IPSEC for secure communication and maintain Access Control Lists (ACLs).
- Implement POA to enhance network security and address vulnerabilities. Develop Plans of Action (POA) based on specific requirements and execute them efficiently.
- Implement and enforce IT security policies on firewalls to safeguard the network infrastructure. Manage and maintain various firewall platforms, including ASA, Juniper SRX, Fortinet, and Palo Alto.
- Utilize network monitoring tools such as SolarWinds, Manage Engine, Netflow, Cacti, and Tivoli to ensure proactive network management and security.
- Analyze and resolve complex network problems, ensuring minimal impact on business operations. Provide comprehensive network support, ensuring smooth operations and quick issue resolution.
- Support Cyber Security Incident management and response for both internal and external parties
- Collaborate with cross-functional teams to address network-related challenges and implement effective solutions.
- Leverage these tools for real-time analysis and reporting on network performance.
Requirements:
- Bachelor's degree in Information Technology, Computer Science, or a related field.
- At least 2 years proven experience in information security and network administration. Familiarity with industry best practices and emerging trends in information security.
- Proficient in Cyber and Network Security Management, IT Compliance and/or Risk Management. In-depth understanding of IPv4, Network Address Translation (NAT), Address Resolution Protocol (ARP), and Dynamic Host Configuration Protocol (DHCP).
- Firm understanding of TCP/IP, OSI Layer, network security, network routing and switching, firewall and etc
- Experienced with Gemalto, RSA, Splunk, SEP and other cybersecurity technologies is advantageous.
- Certification in cybersecurity and/or network design (e.g. SSCP, CISSP, CCNA, CISA)
- Strong understanding of ISO27001 and/or PCI Data Security Standards.
- Strong project management and communication skills (written and spoken)
- Be on standby to provide support for critical security alerts and incident management outside office hours.