Position Summary:
The Security Engineer supports security systems and operations administration, monitoring and maintenance. He/She monitors security alerts and events.
He/She assists with the analysis of security-related information and events, escalation of incidents for validation and remediation.
He/She is required to be on standby with on-call availability with varied shifts including nights, weekends and holidays.
He/She is alert and vigilant in performing monitoring activities and is able to analyse and resolve security-related issues critically. He/She communicates clearly in his/her interactions with others and coordinates effectively with his/her team to perform security operations.
Role and Responsibilities:
- To Configure, implement and maintain all security platforms (E.g. Firewall, Intrusion Prevention, Web Application Firewalls, Web Proxies, DNSSEC)
- Perform assessment of Security Advisories and provide recommendations to the team
- Ensure that all security devices are configured in accordance network security best practices
- Perform periodic vulnerability testing and ensure the remediation of all findings
- Perform regular review of security logs to identify potential operational/security issues
- Perform regular patching of security devices to ensure that devices firmware are kept up to date
- Ensure that all incidents are resolved within the required SLA
- Ensure that all Service Requests are completed within the required SLA
- Ensure that Work Instructions are in place and kept up-to-date for the delivery of all operational tasks
- Continuously review and improve Operations Efficiency (E.g. improving operational efficiency through automation)
- Generates routine reports in the required format
- Secure users and servers internet access
- To support and implement new initiatives
Requirements / Qualifications:
- Possess a Bachelor Degree in Computer Engineering
- 5 years experience and knowledge in Enterprise IT infrastructure covering routing, switching, load balancers, data centre nexus/ACI and security devices
- Strong knowledge with Web proxy and CCNP is a must
- Experience working with automation tools (E.g. ansible), monitoring & observability and logging systems (E.g. ELK).
- Holding any of following professional certificate are preferable: CISSP, CISCO CCIE, PCNSE and ITILv4xtensive technical know-how of network security devices (E.g. Firewall, Intrusion Prevention, Web Application Firewalls, Web Proxies, DNSSEC)
- Hands-on experience in at least 2 of the security devices (E.g. Firewall, Intrusion Prevention, Web Application Firewalls, Web Proxies, DNSSEC)
- Strong problem-solving skills and be able to troubleshoot and resolve complex issues quickly.
- Strong technical skills in areas of systems engineering, systems administration, networking, and security.
- Proficient in at least one scripting languages (E.g. YAML, JSON, Bash)
- Excellent communication skills