Security Information Consultant

2 weeks ago


Hanoi, Hanoi, Vietnam Talentnet Full time
Hi-Tech & IT

RESPONSIBILITIES:

Typical Responsibilities

  • Extensive Information/Cyber Security consultancy experience facing security delivery expertise
  • A deep knowledge in at least two of the following: PCI-DSS, ISO27001 (Information Security), Information Assurance, Security Policy, GRC, NIST, GDPR or Data Privacy.

Preliminary Analysis

  • Identifying all the stakeholders (e.g., IT Project Manager, System admins and Management) of the client to define the prerequisite and methodology.
  • Work with key stakeholders to translate regulatory requirements and standards into policies, processes, and controls.

Gap Analysis and Scoping

  • Assess changes to regulatory requirements and standards and determine the impact on internal policies, controls, and processes. Make recommendations for associated changes to policies, controls, and processes, and simplify implementation.
  • Review of all locations and flows of cardholder data, as well as asset inventories.
  • Conducting PCI standards interviews to have a complete map of information/data workflows, processes, and procedures, payment card data flow, information security controls.
  • Conducting technical interviews to understand eventual data security problems from the indepth technical point of view.
  • Identify and evaluate technology risks, internal controls to mitigate risks, and related opportunities for continuous control improvement. Facilitate and document risk assessments and communicate key findings
  • Producing Scoping and Gap Analysis Documentation.

Remediation

  • Providing the customer with a remediation plan/gap report.
  • Evaluate the implementation of new technologies/processes and agreements with thirdparty service providers to ensure continual compliance with regulatory requirements.
  • Drive audit readiness and provide support for Payment Card Industry Data Security Standard (PCI DSS) assessments, Customer Security and Privacy audits.
  • Guiding and supporting all the remediation processes ensuring that the gaps are mitigated correctly.
  • Should have experience working with security and technology teams for the annual PCI DSS assessment and monitor the progress. Few followup activities are mentioned below.
  • VA/PT Testing (Network and Application level both)
  • Antivirus and Malware
  • Configuration Management
  • File Integrity Monitoring
  • Multi-Factor Authentication
  • Encryption and Key Management

Formal Assessment

  • Conducting technical interviews to understand eventual data security problems from the indepth technical point of view.
  • Analysis of network diagrams, asset lists to understand the infrastructure used by the customers.
  • Analysis of system configuration, Encryption, Key management.
  • Customer Contract reviews and negotiations regarding data protection clauses, related regulations, and compliance commitments.

Documentation

  • Preparation, validation, of ROC (Reports on Compliance) and AOC (attestation of compliance).
  • Preparation of GAP assessment, health check assessment report.

REQUIREMENTS**:

Experience & Education

  • Undergraduate degree in Information Management, Computer Science, Engineering, or emphasis in technology or related field.
  • 3+ years of information security experience and/or IT audit / IT security or IT security infrastructure experience.
  • Previous experience working as a PCI QSA is mandatory.
  • Experience interpreting industry and regulatory requirements and authoring supporting controls.
  • Experience with information securityrelated frameworks (ISO 27001, COSO, Cloud Security Alliance).

Skills

  • Certifications like CEH, CISA, CISM, CISSP, ISO 27001 LA/LI (any of these).
  • Experience in technical skills like Virtualization, Cloud technologies, Cryptography principles, Authentication methods and techniques, Integrity controls, Networking (routing, switching, firewall network filtering), Operating Systems (Linux/Unix, Windows).
  • Ability to work with teams to achieve goals and meet deadlines in a fastpaced environment.
  • Works well under pressure and time constraints and can prioritize competing priorities appropriately.
  • Demonstrable understanding of how to network and develop working relationships with various key stakeholders.
  • Strong analytical, research, writing, and communication skills.
  • Communicates effectively with meaningful and articulate verbal discussions. Creates clear and coherent written materials. Synthesizes information into succinct, concise and logical summaries and reports.
  • Excellent interpersonal skills.
  • Strong business and technical acumen.

Competencies

  • Problem Solving (analysis, helicopter view, problem setting, decision making)
  • Planning and Organization (time management, scheduling, and control)
  • Communication (clearness, listening, persuasion)
  • Networking (reinforce relationships, use emotional intelligence and personal proximity)

For more information, please contact:

  • Ms

Nguyen Thi Hoai Ext:
163

  • Hanoi, Hanoi, Vietnam Techcombank Full time

    09-Mar-2023Expert, Information Security : Category: Technology Division Job Type:Facility: TechnologyJob Purpose:The job holder perform duties in designing, building, testing and implementing banking information security solutions.Key Accountabilities (1):o Proposing action plans related to security development activities Participate in proposing the annual...


  • Hanoi, Hanoi, Vietnam CÔNG TY CỔ PHẦN VINSCHOOL Full time

    Mô tả công việc:(Mức lương: Thỏa thuận)The Information Security Director is responsible for establishing and maintaining the enterprise vision, strategy, and program to ensure information assets and technologies are adequately protected. The DIRECTOR will lead the Information Security function, working closely with other senior executives, IT...


  • Hanoi, Hanoi, Vietnam Techcombank Full time

    15-Mar-2023Senior Officer, Information Security : Category: Technology Division Job Type:Facility: TechnologyJob Purpose:The job holder is responsible for building, managing, participating in the development of one of the following areas:aIS Practice:Evaluate deployment, develop security solutions/Design, test information security/Ensure compliance with...

  • Security Consultant

    2 weeks ago


    Hanoi, Hanoi, Vietnam FPT Software Full time

    FPT Software***- FPT Cau Giay Building, Cau Giay, Ha Noi- F-Town 3, 3 Võ Chí Công, Phường Long Thạnh Mỹ, Thu Duc City, Ho Chi Minh- Tòa nhà FPT Complex, Đường Nam Kỳ Khởi Nghĩa, Phường Hòa Hải, Ngu Hanh Son, Da Nang- At office- Posted 7 hours ago- Skills: CloudAWSAzureTop 3 reasons to join us:Global Exposure Fast Track Career...


  • Hanoi, Hanoi, Vietnam Techcombank Full time

    17 May 2024**Manager, Information Security **:- Category: Technology Division- Job Type:- Facility: Technology**Job Purpose**:Responsible for building, managing, participating in the development of one of the following areas:a. Scope of Information Security Development: Evaluate deployment, develop security solutions/Design, test information security/Ensure...


  • Hanoi, Hanoi, Vietnam Talentnet Full time

    Hi-Tech & ITRESPONSIBILITIES: Planning/studying/designing and implementing clould strategy/solution/architect on multi cloud Analyze/Developing prerequisites for cloud Practice with modern DevSecOps with automation (nice to have) Ability to automate repetitive tasks (scripting skills in Bash/PowerShell/ Python) Researching and implementing the updated...


  • Hanoi, Hanoi, Vietnam Discova Full time

    Job no: 521386Brand: DiscovaWork type: Full timeLocation: Hanoi, VietnamCategories: Wholesale & ProductInformation Security AnalystAbout the opportunityKey Responsibilities Collaborate with IT teammates to implement optimal solutions for Discova. Communicate with internal IT and Global ETS to ensure requirements are met for security processes. Develop and...


  • Hanoi, Hanoi, Vietnam Techcombank Full time

    13 May 2024**Senior Officer, Information Security **:- Category: Technology Division- Job Type:- Facility: Technology**Job Purpose**:The job holder is responsible for building, managing, participating in the development of one of the following areas:a. IS Practice: Evaluate deployment, develop security solutions/Design, test information security/Ensure...


  • Hanoi, Hanoi, Vietnam Deloitte SEA Full time

    Title: Cyber Security ConsultantWhat You'll Achieve with Us?At Deloitte, we provide a special career experience where you can inspire and empower talents to have a meaningful impact on our clients, people, and community. Deloitte offers you an inclusive, collaborative workplace with unmatched opportunities for growth. We're on the lookout for individuals...


  • Hanoi, Hanoi, Vietnam Techcombank Full time

    13 May 2024**Senior Officer, Information Security **:- Category: Technology Division- Job Type:- Facility: Technology**Job Purpose**:The job holder is responsible for building, managing, participating in the development of one of the following areas:a. IS Practice: Evaluate deployment, develop security solutions/Design, test information security/Ensure...

  • Information Security

    2 weeks ago


    Hanoi, Hanoi, Vietnam ABBANK Full time

    **Information Security**:ABBANK- Ứng TuyểnDatabase English System Admin- Đăng nhập để xem mức lương- 36 Hoàng Cầu, Dong Da, Ha Noi- Xem bản đồ- Tại văn phòng- 5 giờ trước**3 Lý Do Để Gia Nhập Công Ty**:- Lương/ thưởng hấp dẫn- Cơ hội thăng tiến nghề nghiệp cao- Môi trường làm việc thân...


  • Hanoi, Hanoi, Vietnam EBSCO Information Services Full time

    EBSCO International is the international operations group of EBSCO Information Services (EIS). EIS provides a complete and optimized research solution comprised of e-journals, e-books, and research databases - all combined with the most powerful discovery service to support the information needs and maximize the research experience of our end-users....

  • Senior Consultant

    1 month ago


    Hanoi, Hanoi, Vietnam Deloitte SEA Full time

    Title: Senior Consultant - Cyber Security Risk Advisory (VN)What sets this role apart?At Deloitte, we provide a distinctive career journey that aims to inspire and empower individuals like you to create meaningful contributions for our clients, colleagues, and society. Regardless of your ambitions, Deloitte offers a highly inclusive, team-oriented...

  • Senior Consultant

    4 weeks ago


    Hanoi, Hanoi, Vietnam Deloitte SEA Full time

    Title: Senior Consultant - Cyber Security Risk Advisory (VN)What sets this role apart?At Deloitte, we provide a distinctive career journey that aims to inspire and empower individuals like you to create meaningful contributions for our clients, colleagues, and society. Regardless of your ambitions, Deloitte offers a highly inclusive, team-oriented...

  • Security Consultant

    2 weeks ago


    Hanoi, Hanoi, Vietnam Công ty Cổ phần Phát triển Công nghệ Viễn thông Tin học Sun Việt Full time

    Mô tả công việc:(Mức lương: triệu VNĐ) Research and study the features, technical factors, and market suitability of security solutions. Propose and advise leaders on technology roadmaps in the security field by market needs and company orientations. Update information and train sales staff/related departments on new products. Write product...

  • IT Security

    2 weeks ago


    Hanoi, Hanoi, Vietnam Adecco Full time

    Job summary:Our client, a leading foreign financial organization is actively looking for an experienced and highly responsible IT Security & Risk Management Manager based in its Hanoi office right at center of the city.Responsibilities: Lead and execute functions and tasks of the IT Security & Risk Management Team To be the Branch Information Security and...


  • Hanoi, Hanoi, Vietnam Techcombank Full time

    Techcombank***- C5 Building Tower, D'Capitale Tower, 119 Tran Duy Hung, Cau Giay, Ha Noi- Số 23 Lê Duẩn, phường Bến Nghé, District 1, Ho Chi Minh- At office- Posted 44 minutes ago- Skills: SecuritySoftware ArchitectSolution ArchitectTop 3 reasons to join us:Top-tier banking environment in Vietnam Challenging opportunities for the "Greater" You...

  • Software Tester

    2 weeks ago


    Hanoi, Hanoi, Vietnam CyStack Security Full time

    CyStack's solutions focus on data protection, cyber attack prevention, and security risk management in the enterprise which won prestigious awards in the cybersecurity industry. Our researchers are regular speakers at world-known cyber security conferences and also talented bug hunters who discovered many critical vulnerabilities in the products and are...


  • Hanoi, Hanoi, Vietnam One Mount Group Full time

    **Information Security GRC Specialist**:One Mount Group- Ứng TuyểnPython C# Fresher Accepted- Đăng nhập để xem mức lương- Tower 2 (T26) Times City, 458 Minh Khai, Hai Ba Trung, Ha Noi- Xem bản đồ- Tại văn phòng- 5 giờ trước**3 Lý Do Để Gia Nhập Công Ty**:- Môi trường đẩy nhanh phát triển năng lực- Nơi quy...


  • Hanoi, Hanoi, Vietnam IOM Full time

    CONSULTANCY NOTICEPosition Title:National Consultant in CRVS (Civil Registration and Vital Statistics)Duty Station:Ha Noi, Viet Nam (home-based)Type of Appointment:Consultancy ContractEstimated Start Date:As soon as possibleClosing Date:26 March 2023Reference code:VN2023/HN/008 (C)1.General background:The lack of legal identity has wide implication in...