Insyghts Security is seeking a highly skilled and motivated Cyber Security Engineer to join our dynamic team. As a Cyber Security engineer, you will have the unique opportunity to work directly with our clients, providing expert guidance and support to ensure the security of their systems and data. This role offers the chance to immerse yourself in diverse environments, learning from both our esteemed clients and our experienced team at Insyghts Security.
Key Responsibilities
As a Cybersecurity Engineer, you will be responsible for, but are not limited to:
- Reviewing the design and architecture of our customers’ environments against industry security best practices and guidelines such as NIST 800-53, ISO27001, and CIS Top 20 Controls
- Aligning client’s business with relevant information security frameworks while developing and executing security strategy
- Identifying, proposing, and implementing solutions for the strengthening of internal cybersecurity capability in line with cybersecurity strategy
- Implementing IT Security Policy and managing security implementation projects.
- Providing hands-on review, configuration, and hardening of customers’ information assets (e.g. security and network devices, workstations, servers, applications and middleware) against security best practices and guidelines such as the CIS Benchmarks
- Manage and execute complex projects such as the integration and upgrade of security solutions (firewalls, proxies, web application firewalls, DDoS, End Detection and Response, Identity and Privilege account management solution, SIEM, vulnerability management solutions, etc)
- Evaluation and maintenance of security system plans and procedures to safeguard internal information systems
- Detecting and mitigating threats, managing endpoint protection while implementing infrastructure to monitor, detect, alert, and mitigate cyber threats.
- Supporting the cyber incident response team while performing detailed investigation for security-related incidents.
Experience:
- Bachelor's degree, preferably in computer science or information systems, or equivalent work experience. Minimally diploma for junior role.
- Minimum of two years direct Information and Cyber Security experience in a security analyst, engineer, architect, consultant, or a similar role
- Strong background in infrastructure and security architecture including deep knowledge of IT network and security (secure LAN, WAN, vLAN, MPLS, and secure network zoning and restricted network design) and cloud-based technologies
- Strong background and working knowledge of major cloud service and systems, such as AWS, Azure, etc
- High proficiency in a variety of operating systems such as Unix/Linux/Mac/Windows operating systems
- Strong background in Network Engineering including a deep understanding of Windows Server architecture, Windows Virtualization, Networking, Backup Solutions, and Disaster Recovery
- Strong knowledge and experience designing and implementing technical security solutions such as secure remote access, firewalls, web proxy, and identity management solutions both internally and within cloud provided services
- Proven understanding of the current vulnerabilities, response, and mitigation strategies used in cybersecurity
- Experience of designing and incorporating technical security controls that align to ISO 27001, NIST CSF, or NIST 800-53
- Strong oral and written communication skills, including a demonstrated ability to prepare quality documentation and presentations for technical and non-technical audiences
- CCNA, MSCA, MSCE, or other certifications demonstrating core technical skills
- Certifications such as CISSP, GSEC, CEH or CISM highly desired
What to expect
- Friendly and Family-like culture with many chances to learn
- Medical Benefits
- Annual Wage Supplement and Performance Bonus
- Handphone & Transport allowance (depending on your level)