Job Summary
Thales is seeking suitable candidate for the position of Engineer (System Security).
You will be looking after the governance of the infrastructure and systems for mission-critical Command and Control (C2) system that Thales Solutions Asia (TSA) have developed for government agency. You will be part of a team to manage the security of system, to ensure the system adhere to the security policies, and is well protected from any threats, risks or exploits.
Job Duties
Provide security expertise and management services to support Authority in activities such as:
- Internal / external audits (IM8, Cybersecurity, etc)
- Policies compliance (IM8, Cybersecurity, etc), work with vendor on:
- Disaster Recovery (DR) and Business Continuity Planning (BCP):
- ICT/Threat Risk Assessments (TRA)
- Monthly reviews of privileged accounts and non-privileged account, disable inactive accounts
- Seek security waivers (IM8, Cybersecurity Act, Circulars etc)
- Circulate security notifications/alerts to vendors and ensure status updates too all stakeholders including cybersecurity centre
- Security monitoring/tracking:
- Monitor alerts from SOC
- Update stakeholders regarding SOC alerts
- Review compliance reports with vendors to ensure that system is compliant
- Manage, track and update any security incidents/ issues to all stakeholders
- Review Incident Report (if any)
- Patching:
- Ensure patches are tested and verified before seeking approval for patching downtime
- Communicate system downtime to all stakeholders
- Ensure system availability after patching is completed
- Obsolescence management for software licenses, hardware, operating systems and certificates
- Security enhancement/ integration
- Support the submission of security clearance for related vendors
- Perform other related duties as assigned or requested
Job Requirements
- Working hours will be 0830 hrs to 1800 hrs (for Monday to Thursday) and 0830 hrs to 1730hrs (for Friday), excluding weekends and Public Holidays
- Outside of working hours, to provide online support via emails and group chats when required based on the priority and severity of issues related to the system
- Able to cope in a highly pressured fast-paced environment
- Prior working experience in cyber security and vulnerability management is preferred
- Strong knowledge of security principles, best practices, and industry standards, such as NIST, ISO 27001, and CIS Critical Security Controls
- Able to understand security posture of systems
- Prior working experience in Project Management is a plus point
- Able to understand the system and software architecture, and user operations environment
- Willingness to pick up any new technologies
Education
Diploma or Bachelor’s Degree in Cybersecurity/ InfoSec/ Information Technology / Information Systems / Business IT or its equivalent
Relevant professional certifications, such as CISSP, CISM, CEH, or other security certifications
Experience
Minimally 3-5 years of experience in cybersecurity and supporting mission critical systems with very stringent SLA e.g. 99.9%
Well-versed in cybersecurity best practices and establishing of its policies
Well-versed in IT Service Management (ITSM) standards, processes, guidelines and best practices
At Thales we provide CAREERS and not only jobs. With Thales employing 80,000 employees in 68 countries our mobility policy enables thousands of employees each year to develop their careers at home and abroad, in their existing areas of expertise or by branching out into new fields. Together we believe that embracing flexibility is a smarter way of working. Great journeys start here, apply now!