Job Description
- Develop, implement, and drive compliance of IT General Controls throughout UTAC Organization (multi sites and multi system environment) through corporate policies, processes, standards, procedures, and technologies.
- Ensure compliance for Information Security and IT & SAP Controls as required by UTAC customers and external third-party audit firms.
- Coordinate and support internal & external audits, assessments, and certifications for UTAC, hosting auditors/examiners/testers and arranging documentation, requests, interviews, management responses, remediation plans and requisite tracking and reporting.
- Independently liaise with cross functional teams across all UTAC sites on ITGC & SAP matters and best practices.
- Develop and report on key activity- and performance indicators concerning ITGC and Cybersecurity for UTAC.
- Plan and conduct a quarterly ITGCs compliance check across various UTAC systems and sites.
- Stay abreast of emerging threats, vulnerabilities, and technologies in the cybersecurity landscape and recommend proactive measures to mitigate risks.
- Able to respond to critical cybersecurity threats triggered by Security Operations Centre (SOC) or external threat alert sources, and coordinate and lead the Sites to respond to the threats.
- Conduct forensic investigations and root cause analysis, to determine the cause and extent of security incidents, while identifying corrective actions required and preventive measures.
- Review system hardening checklist and execution performed by the Corporate and Sites IT.
- Participate in vendor evaluation for IT or security related initiatives.
- Develop, schedule and coordinate to deliver employee training and awareness program for information security as required, including IT advisory broadcasts.
Requirement
- Degree in IT, Computer Science, Engineering, or related discipline
- Minimum 5 years’ experience
- Experience in IT Audit, SAP Controls, Information Security, and cybersecurity solutions / tools.
- Knowledge in SAP Security Audit guidelines and proven experience in testing SAP Controls is a must.
- Experience in manufacturing environment preferably in semiconductor manufacturing preferred.
- Certification of CISA, ISO27001 preferred.
- Certifications of CISSP, CISM desirable
- Good verbal and written communication skills to relay IT Security Policies and Procedures