专栏名称: 安世加
安世加 专注于信息安全⾏业,通过互联⽹平台、线下沙⻰、培训、峰会、⼈才招聘等多种形式,培养安全⼈才,提升⾏业的整体素质,助推安全⽣态圈的健康发展。
51好读  ›  专栏  ›  安世加

安全聘 | 某大型公司(物流地产、金融、新能源)领域招安全专家

安世加  · 公众号  ·  · 2024-06-26 18:48

正文

E-mail

[email protected]

Working Location

Shanghai, China


Job Title

Senior Manager,Global Security Operations

Job Purpose

This position is one of security operation team to manage security tools and handle security operations for Company’s global business


The focus will be on:

1、Manage Cybersecurity Operations and Vulnerability management

2、Manage information security operations improvements

3、Manage the security tools to cover and protect global users/services

4、Manage vendors and cooperate with internal teams to drive the success of objective


Job Responsibilities

1、Responsible for managing Global Security Operations Center (SOC), including daily operations, operations processes, operations quality, and team resources

2、Responsible for detection and response related tools’ operations, change request and effectiveness improvement

3、Responsible for Vulnerability management, including but not limited to Vulnerability lifecycle from Finding, Scanning, Track until closure

4、Negotiate terms and conditions with vendors to ensure optimum price and high-quality products, review/revise SOW

5、Coordinate and liaise with global, regional, local IT team

6、Responsible for incident investigation and forensic analysis

7、Coordinate other information security functions and business functions on cross functional tasks

Other information security operations tasks assigned by CISO or business


Key Performance Measures

1、Operations and Effectiveness on Security Tools

2、Vulnerability management

3、Procedure and workflow setup

4、Independence and cooperation

5、Team and vendor management


Competency

1、Proven leadership for a lean team

2、Proven solid technical skills on global security operations, SOC management

3、Proven hands-on and technical skills on Security Products/Tools for Threat Intelligence, Threat hunting, detection, response, and vulnerability, including but not limited to XDR, Zero Trust, SIEM and SOAR

4、Proven management skills on Incident management, Vulnerability Management, Identity & Access Management (IAM) or Mobile Device Management (MDM)

5、Knowledge of incident investigation and forensic analysis

6、Knowledge of and experience with NIST Cybersecurity Framework (CSF)

7、Knowledge of and experience with MITRE ATT&CK and Cyber Kill Chain

8、Knowledge of common cyber-attacks and counter measures

9、Ability of scripting and/or programming is a plus

10、Ability to work independently with or without direction and/or supervision

11、Ability to prioritize and multitask in a complex environment

12、Ability to influence and communicate effectively with both technical and non-technical audiences, including senior business executives and managers

13、Technical ability of hands-on work when needed


Qualification

Education Background

Bachelor Degree of Information Security or Other Related Majors

Professional Skill

1、At least 5 years CyberSecurity related work experience

2、Global enterprise experience is 5a plus

3、Meet the competencies as defined above

4、Fluency of English language

5、Microsoft Security Products operation (Entra ID, Intune, Microsoft Defender) is a plus

Professional Authentication

1、At least 5 years CyberSecurity related work experience

2、Global enterprise experience is a plus

3、Meet the competencies as defined above

4、Fluency of English language

Microsoft Security Products operation (Entra ID, Intune, Microsoft Defender) is a plus

Professional Authentication

Certified Information Systems Security Professional (CISSP) or equivalent

END







请到「今天看啥」查看全文