The Manager, Server & Endpoint Protection Engineering role will execute the server and endpoint security strategy and technical governance, product configuration standards definition and security engineering advisory.
As a member of the Infrastructure Security Engineering team, the selected candidate will be part of the product lifecycle management for the Group Information Security (GIS) technical capabilities. This includes product implementation, solution architecture, engineering, production support and service delivery/management, and provide infrastructure security configuration standards definition and technical security assurance over servers and endpoints managed by the infrastructure and platform team.
Key Responsibilities:
- To help in developing and maintaining the server and endpoint security roadmaps and planning for future enhancements and capabilities as party of continuous improvement process
- Product lifecycle management for the Group Information Security (GIS) technical capabilities over server and endpoint security solutions which includes but is not limited to anti-virus, anti-malware, firewalls, intrusion
- detection/prevention systems, and other relevant technologies
- Production support and monitoring to ensure control efficiency and solution reliability & stability
- Product research and define requirements for new projects, perform product evaluation and technical Proof of Concept
- Support of the development of server and endpoint security policies, standards, and procedures to ensure compliance with regulatory requirements and industry best practices
- Provide support for all audit and regulatory requests
Education:
- Diploma/Degree in Engineering/Computer Science/IT/Cyber Security from a recognized education institution
- Professional security related qualifications (e.g., CISSP, CISA, CISM, etc.) will be favorable although not mandatory
Technical Skills:
- Overall experience 5 to 10 years of experience
- In-depth knowledge of system protection and security incident response
- Proven experience leading relevant security programs in large organizations
- Strong understanding of regulatory requirements such as MAS TRM, PCI DSS, etc.
- Hands-on experience in the use of Splunk, scripting (e.g., Python, Bash) will be favorable
Soft Skills:
- Excellent communication, leadership, and collaboration skills
- Process aware mindset
- Strong analytical and problem-solving skills
- Effective time management and organizational skills
- Team player, including ability to establish and maintain effective working relationships within and across the organization