Security Information Consultant
7 months ago
Hi-Tech & IT
**RESPONSIBILITIES**:
**Typical Responsibilities**
- Extensive Information/Cyber Security consultancy experience facing security delivery expertise
- A deep knowledge in at least two of the following: PCI-DSS, ISO27001 (Information Security), Information Assurance, Security Policy, GRC, NIST, GDPR or Data Privacy.
**Preliminary Analysis**
- Identifying all the stakeholders (e.g., IT Project Manager, System admins and Management) of the client to define the pre-requisite and methodology.
- Work with key stakeholders to translate regulatory requirements and standards into policies, processes, and controls.
**Gap Analysis and Scoping**
- Assess changes to regulatory requirements and standards and determine the impact on internal policies, controls, and processes. Make recommendations for associated changes to policies, controls, and processes, and simplify implementation.
- Review of all locations and flows of cardholder data, as well as asset inventories.
- Conducting PCI standards interviews to have a complete map of information/data workflows, processes, and procedures, payment card data flow, information security controls.
- Conducting technical interviews to understand eventual data security problems from the in-depth technical point of view.
- Identify and evaluate technology risks, internal controls to mitigate risks, and related opportunities for continuous control improvement. Facilitate and document risk assessments and communicate key findings
- Producing Scoping and Gap Analysis Documentation.
**Remediation**
- Providing the customer with a remediation plan/gap report.
- Evaluate the implementation of new technologies/processes and agreements with third-party service providers to ensure continual compliance with regulatory requirements.
- Drive audit readiness and provide support for Payment Card Industry Data Security Standard (PCI DSS) assessments, Customer Security and Privacy audits.
- Guiding and supporting all the remediation processes ensuring that the gaps are mitigated correctly.
- Should have experience working with security and technology teams for the annual PCI DSS assessment and monitor the progress. Few follow-up activities are mentioned below.
- VA/PT Testing (Network and Application level both)
- Anti-virus and Malware
- Configuration Management
- File Integrity Monitoring
- Multi-Factor Authentication
- Encryption and Key Management
**Formal Assessment**
- Conducting technical interviews to understand eventual data security problems from the in-depth technical point of view.
- Analysis of network diagrams, asset lists to understand the infrastructure used by the customers.
- Analysis of system configuration, Encryption, Key management.
- Customer Contract reviews and negotiations regarding data protection clauses, related regulations, and compliance commitments.
**Documentation**
- Preparation, validation, of ROC (Reports on Compliance) and AOC (attestation of compliance).
- Preparation of GAP assessment, health check assessment report.
**REQUI**REMENTS**:
**Experience & Education**
- Undergraduate degree in Information Management, Computer Science, Engineering, or emphasis in technology or related field.
- 3+ years of information security experience and/or IT audit / IT security or IT security infrastructure experience.
- Previous experience working as a PCI QSA is mandatory.
- Experience interpreting industry and regulatory requirements and authoring supporting controls.
- Experience with information security-related frameworks (ISO 27001, COSO, Cloud Security Alliance).
**Skills**
- Certifications like CEH, CISA, CISM, CISSP, ISO 27001 LA/LI (any of these).
- Experience in technical skills like Virtualization, Cloud technologies, Cryptography principles, Authentication methods and techniques, Integrity controls, Networking (routing, switching, firewall network filtering), Operating Systems (Linux/Unix, Windows).
- Ability to work with teams to achieve goals and meet deadlines in a fast-paced environment.
- Works well under pressure and time constraints and can prioritize competing priorities appropriately.
- Demonstrable understanding of how to network and develop working relationships with various key stakeholders.
- Strong analytical, research, writing, and communication skills.
- Communicates effectively with meaningful and articulate verbal discussions. Creates clear and coherent written materials. Synthesizes information into succinct, concise and logical summaries and reports.
- Excellent interpersonal skills.
- Strong business and technical acumen.
**Competencies**
- Problem Solving (analysis, helicopter view, problem setting, decision making)
- Planning and Organization (time management, scheduling, and control)
- Communication (clearness, listening, persuasion)
- Networking (reinforce relationships, use emotional intelligence and personal proximity)
**For more information, please contact**:
- Ms. Nguyen Thi Hoai (84) 24 3936 7618 - Ext: 163
-
Security Information Consultant
7 months ago
Hanoi, Vietnam Talentnet Full time$1,800 - $1,800 - Hi-Tech & IT **RESPONSIBILITIES**: **Typical Responsibilities** - Extensive Information/Cyber Security consultancy experience facing security delivery expertise - A deep knowledge in at least two of the following: PCI-DSS, ISO27001 (Information Security), Information Assurance, Security Policy, GRC, NIST, GDPR or Data...
-
Information Security Director
7 months ago
Hanoi, Vietnam CÔNG TY CỔ PHẦN VINSCHOOL Full time**Mô tả công việc**: (Mức lương: Thỏa thuận) The Information Security Director is responsible for establishing and maintaining the enterprise vision, strategy, and program to ensure information assets and technologies are adequately protected. The DIRECTOR will lead the Information Security function, working closely with other senior...
-
Information Security Expert/specialist
8 months ago
Hanoi, Vietnam Talentnet Full time**RESPONSIBILITIES**: **Cloud Cybersecurity risk and compliance framework and management**: - Accountable for development of the Cloud Security Design framework for new technology solutions - Responsible for embedding best practice security through evaluation of suppliers - Responsible for establishing security requirements needed to provide services...
-
Information Security Expert/specialist
7 months ago
Hanoi, Vietnam Talentnet Full time$2,100 - $3,500 - Hi-Tech & IT **RESPONSIBILITIES**: - Planning/studying/designing and implementing clould strategy/solution/architect on multi cloud - Analyze/Developing prerequisites for cloud - Practice with modern DevSecOps with automation (nice to have) Ability to automate repetitive tasks (scripting skills in Bash/PowerShell/ Python) - Researching...
-
Information Security Analyst
7 months ago
Hanoi, Vietnam Discova Full time**Job no**: 521386 **Brand**: Discova **Work type**: Full time **Location**: Hanoi, Vietnam **Categories**: Wholesale & Product **Information Security Analyst** **About the opportunity** **Key Responsibilities** - Collaborate with IT teammates to implement optimal solutions for Discova. - Communicate with internal IT and Global ETS to ensure...
-
Senior Clerk or Above
7 months ago
Hanoi, Vietnam Talentnet Full time**RESPONSIBILITIES**: - Execute functions and tasks of the IT Security & Risk Management Team - Design and implement security infrastructure. - Implement and manage security solutions. - Perform periodic risk analysis, vulnerability scanning and testing. - Implement and maintain security policies and procedures in line with local regulations, Head Office...
-
Senior Clerk or Above
7 months ago
Hanoi, Vietnam Talentnet Full time$6,000 - $6,000 **RESPONSIBILITIES**: - Execute functions and tasks of the IT Security & Risk Management Team - Design and implement security infrastructure. - Implement and manage security solutions. - Perform periodic risk analysis, vulnerability scanning and testing. - Implement and maintain security policies and procedures in line with local...
-
Information Security Analyst
7 months ago
Hanoi, Vietnam Optimizely (formerly Episerver) Full timeOptimizely (formerly Episerver) *** - 165 Thái Hà, Dong Da, Ha Noi- Remote, Other, Ho Chi Minh- At office- Posted 4 days ago- Skills: - Python Linux Cloud **Top 3 reasons to join us**: - Great international EU-US working environment - Microsoft leading technology - Work life balance, No OT **Job description**: - Security is the foundation of over...
-
Cyber Security Expert
3 days ago
Hanoi, Vietnam Công Ty Cổ Phần Đầu Tư TNG Holdings Việt Nam Full time**Mô tả công việc**: (Mức lương: Thỏa thuận) 1. Advise and consult the Board of Directors and develop strategies, policies, and security tools: - Develop strategies and operational plans related to information security and safety system administration - Develop security policies for the system and monitor policy implementation at units -...
-
Business Developement Executive
3 weeks ago
Hanoi, Vietnam CyStack Security Full timeWe offer solutions in data protection, cyber-attack prevention, and security risk management by adopting cutting-edge technologies of Automated Security and Crowdsourced Security. Our mission is to make the Internet a safer place, where individuals and businesses can focus on growing in the digital age. We manage to build a work environment where potentials...
-
Frontend Engineer
3 days ago
Hanoi, Vietnam CyStack Security Full timeCyStack's solutions focus on data protection, cyber attack prevention, and security risk management in the enterprise which won prestigious awards in the cybersecurity industry. Our researchers are regular speakers at world-known cyber security conferences and also talented bug hunters who discovered many critical vulnerabilities in the products and are...
-
Product Manager
3 weeks ago
Hanoi, Vietnam NavigosSearch Full time**What We Can Offer**: - Consulting, presenting products and solutions on Security system, - Collect and search for information of potential customers and the Project about the security system; - Follow up and take care of existing customers; Seeking to expand the market, new customers for the Security system; - Building, maintaining and developing...
-
Marketing Manager
1 week ago
Hanoi, Vietnam CyStack Security Full timeCyStack's solutions focus on data protection, cyber attack prevention, and security risk management in the enterprise which won prestigious awards in the cybersecurity industry. Our researchers are regular speakers at world-known cyber security conferences and also talented bug hunters who discovered many critical vulnerabilities in the products and are...
-
Digital Marketing Specialist
3 weeks ago
Hanoi, Vietnam CyStack Security Full timeCyStack's solutions focus on data protection, cyber attack prevention, and security risk management in the enterprise which won prestigious awards in the cybersecurity industry. Our researchers are regular speakers at world-known cyber security conferences and also talented bug hunters who discovered many critical vulnerabilities in the products and are...
-
Data Protection
7 months ago
Hanoi, Vietnam Talentnet Full time$3,000 - $3,000 - Financial Services **RESPONSIBILITIES**: **PMO of PDPD implementation project** - Lead the project working team for the task implementation and delivery of the deliverables successfully - Cooperate with K.Phan, legal & compliance, and HQ Data Governance & DPO (Pinhatai) for the project planning and PDPD implementation requirements and...
-
Senior Content Marketing Executive
2 days ago
Hanoi, Vietnam CyStack Security Full timeCyStack's solutions focus on data protection, cyber attack prevention, and security risk management in the enterprise which won prestigious awards in the cybersecurity industry. Our researchers are regular speakers at world-known cyber security conferences and also talented bug hunters who discovered many critical vulnerabilities in the products and are...
-
Senior Security Architect
7 months ago
Hanoi, Vietnam Techcombank Full timeTechcombank *** - C5 Building Tower, D’Capitale Tower, 119 Tran Duy Hung, Cau Giay, Ha Noi- Số 23 Lê Duẩn, phường Bến Nghé, District 1, Ho Chi Minh- At office- Posted 44 minutes ago- Skills: - Security Software Architect Solution Architect **Top 3 reasons to join us**: - Top-tier banking environment in Vietnam - Challenging opportunities...
-
Software Tester
2 weeks ago
Hanoi, Vietnam CyStack Security Full timeCyStack's solutions focus on data protection, cyber attack prevention, and security risk management in the enterprise which won prestigious awards in the cybersecurity industry. Our researchers are regular speakers at world-known cyber security conferences and also talented bug hunters who discovered many critical vulnerabilities in the products and are...
-
Information Security Engineer
1 day ago
Hanoi, Vietnam Mcredit - Công ty Tài chính TNHH MB Shinsei Full time**Information Security Engineer (System Admin/Networking)**: Mcredit - Công ty Tài chính TNHH MB Shinsei - Ứng Tuyển System Engineer System Admin Networking - Đăng nhập để xem mức lương - Tầng 9,10,11,12 Tòa nhà MB Bank, số 21 Cát Linh - Phường Cát Linh, Dong Da, Ha Noi- Xem bản đồ- Tại văn phòng- 7 giờ trước **3...
-
[so] Data Security Partner for Bgsv
7 months ago
Hanoi, Vietnam Bosch Group Full time**Company Description**: - The Bosch Group is a leading global supplier of technology and services. It employs roughly 394,500 associates worldwide (as of December 31, 2020). According to preliminary figures, the company generated sales of 71.6 billion euros in 2020. Its operations are divided into four business sectors: Mobility Solutions, Industrial...