职业类别
Security Engineer, Business Development, Tax/GST, Internal Information Systems/EDP/MIS, Support/Maintenance/Operation/Training, Other(Finance), Business/Corporate Planning, Finance/Financial Consultant
工作内容
OBJECTIVES:Specialize in IT Security; implement and monitor security measures for the protection of computer systems, networks, and information to ensure that all IT related security components are implemented in accordance with the compliance against Information Security Policy and Standards, Statutory Legal and Regulatory requirements.RESPONSIBILITIES:• Lead, oversee day-to-day IT security incidents/administration/health check current servers and network infrastructure security control. Monitor, response to event log & alert notification on the servers/network to proactively identify, minimize disruption & impact to the systems /network/end point devices. Identify IT security risks, threats, vulnerabilities in the company’s technology. Analyse and report computer network/servers/Application security breaches or attempted breaches. Investigates cyber security incidents, updates, and security control documents, perform vulnerability scan and patch management, penetration test assessment, take appropriate action to minimize harm and make recommendations to corrective action. Perform problem management, root cause analysis, and postmortem reviews following the occurrences of all incidents, maintain incident documentation, participate in post-mortems, & establish incident reports.• Participate in IT security assessment review, analyse business risks and creation of IT security requirements and controls to ensure that all IT related security components are implemented in accordance with the compliance guidelines. Take ownership; evaluate and recommend information related to IT security control & enhancements projects. If need be in correcting security vulnerabilities by configure, implement, monitor, and support IT security software, systems, technologies and processes are compliant with regulatory, industry, corporate policies, procedures, and BNM Information Security standards.• Serve & being the in-house subject matter expert to provide IT security related advice, guidance, & work with others team members in designing, implementing IT security control initiatives, risk mitigation & remediation. Responsible for recommending, implementing, and managing security controls for system, network, application by design system security architecture and develop detailed security designs. Prepare, conduct security awareness briefing, training & phishing simulation.• Centrally facilitate, interacts with internal and external audit engagement, facilitate remediation based on agreed recommendation and associated risks pertaining to Global Information Security Group or any others corporate requirement. Periodical tracking and following-up with relevant party to ensure audit and compliance gaps are addressed and rectified according to committed timeline.• Establish and maintains IT security related policies, procedures, and guidelines. Periodically reviewing the security related guideline & control to ensure the efficiency and effectiveness of the information security controls as a whole, recommending improvements wherever they is necessary. Develop comprehensive reports including assessment-based findings, outcomes, and propositions for further system security enhancement
福利制度
・Basic Salary = RM 8,000 ~ RM 11,000
・AL: 18 days for executive, 21 days for Asst Manager and above
・MC: 28 days
・EPF = 16%
・Medical Claim
- Unlimited for employee
- Max up to RM 1,000 / year for immediate family
・Dental or Optical Claim
- RM 200 for single employee
- RM 400 for married employee (covering immediate family)
- RM 700 for married employee with children (covering immediate family)
・Accident, Hospitalization and Life Insurance
・Increment 5% ~ 6% (Appraisal in April)
・Bonus: Average 3 ~ 4 months salary ** Subject to Company & Individual Performance
** Previous 2 years bonus payout = 5 months
・CSR Events (Blood Donation, Animal Shelter, Hair Donation)
・Company Trip
・Team Building
・Annual Dinner (during MCO substitute by RM 400 voucher for each employee)