Cybersecurity BA

ABOUT CLIENT

Our client is one of the world’s largest providers of Consulting, Outsourcing and Technology Services

JOB DESCRIPTION

Create, construct, implement, set up, and document DLP Technologies in different environments.
Diagnose issues and use technical skills to develop solutions and options for technical problems, supporting remediation and recovery efforts.
Monitor data protection platform performance regularly to detect and address issues and maintain uninterrupted system operation.
Identify opportunities for process, policy, and business operating model enhancements.
Use data management, analysis, and data mining techniques to identify patterns and trends in data.

JOB REQUIREMENT

Proficient in verbal and written English skills
3+ years of experience in Cybersecurity incident handling and Security Operation Centre in Banking/Finance industry
Familiarity with security policy and technical standard development, multi-tiered trust zone structures, and complex EDR, XDR management systems
Familiarity with MS Purview, ZScaler, MDE, Insider Risk Management, etc
Experience with Splunk and other similar tools/platforms
Ability to enhance and automate reports
Proficiency in programming or scripting with Python or other languages
High level of technical competency in designing, engineering, and operating security platforms
Strong technical analytical skills
Ability to deliver and execute
Strong communication and documentation skills
Knowledge of data security threats, vulnerabilities, and controls
Experience in incident response process and security policies
3-5 years of experience in a data science environment, preferably in corporate, research/government, or academia, along with relevant tertiary qualifications up to Masters or PhD level in a technical field

WHAT'S ON OFFER

Competitive compensation, comprehensive health insurance for employees and dependents.
Participation in international projects within a professional and dynamic work setting.
Gaining valuable experience with diverse projects, new technologies, and a multitude of talents.
Access to training opportunities, including technical seminars and soft skill courses.
Potential for promotion through a regular performance review system.

CONTACT

PEGASI – IT Recruitment Consultancy | Email: recruit@pegasi.com.vn | Tel: +84 28 3622 8666
We are PEGASI – IT Recruitment Consultancy in Vietnam. If you are looking for new opportunity for your career path, kindly visit our website www.pegasi.com.vn for your reference. Thank you!

Job Summary

Company Type:

Outsource

Technical Skills:

Security, Business Analyst

Location:

Ho Chi Minh, Ha Noi - Viet Nam

Working Policy:

Hybrid

Job ID:

J01750

Status:

Close

Related Job:

Senior AI DevSecOps Engineer

Ho Chi Minh - Viet Nam


Product

  • Devops
  • AWS
  • Azure
  • Security

Management of CI/CD Pipeline: Ensure automation, security, and scalability across all stages of the development lifecycle. Infrastructure & Security: Design and implement secure multi-cloud infrastructure solutions leveraging cloud services, containerization, and orchestration tools. Policy as Code: Define and enforce security and compliance policies across Kubernetes clusters using OPA or Kyverno, ensuring guardrails are automated and auditable. AI & Platform Automation: Drive the adoption of AI-powered tools and workflows to automate infrastructure operations, optimize CI/CD pipelines, accelerate root cause analysis, improve security posture, and enhance engineering productivity. Observability & Alerting: Build and maintain a comprehensive observability stack with proactive alerting, dashboards, and runbooks for critical business flows and security events. Secret & Credential Management: Design and enforce secrets management practices across all environments ensuring zero hardcoded credentials in codebases and pipelines. Incident Response & On-Call: Own and continuously improve incident response processes, define runbooks, lead post-mortems, track MTTR, and participate in on-call rotation to maintain platform reliability and SLO adherence. Threat Modelling & Penetration Testing: Conduct regular threat modelling sessions with engineering teams and coordinate or perform penetration testing activities to proactively identify attack surfaces before they reach production. Code Security: Conduct regular code reviews and static/dynamic analysis to identify and remediate security vulnerabilities. Compliance and Best Practices: Ensure compliance with industry standards and best practices. Collaboration: Collaborate with development, operations, and security teams to foster a culture of automation and security-first thinking. Mentorship: Mentor junior engineers and other team members on security best practices. Documentation: Maintain thorough and up-to-date documentation of security policies, procedures, and incident reports. Trend Scouting: Stay updated with the latest trends in technology and AI to integrate innovative solutions into our processes.

Negotiation

View details

Senior Business Analyst

Ho Chi Minh - Viet Nam


Product

  • Business Analyst

Act as a bridge between business teams and development/system teams Conduct workshops, interviews, and requirement sessions Analyze and document business requirements Create and maintain comprehensive Business Analysis Documentation Collaborate with UX/UI, development, and QA teams Support translation of business requirements into high-level functional specifications Work on projects related to stocks, bonds, derivatives, fund, and settlement processes Analyze and support enhancements for broker trading systems Collaborate with operation and business teams to solve issues related to trading functions Use AI tools to draft and refine requirement documents, user stories, and test cases Manage and track requirements throughout the project lifecycle Work closely with development and QA/testing teams Contribute to designing and reviewing test conditions Provide guidance and on-the-job support to junior BAs or new team members Share domain knowledge and contribute to internal knowledge bases and reusable BA templates

Negotiation

View details

Lead Penetration Tester

Ho Chi Minh, Ha Noi - Viet Nam


Outsource

  • Security

Conduct authorized penetration testing for various digital platforms, including web applications, mobile applications, APIs, infrastructure, and cloud environments. Identify and document security vulnerabilities, validate and exploit when necessary, covering areas such as authentication, authorization, session management, input validation, encryption, access control, and business logic issues. Perform security assessments according to industry standards (e.g. OWASP Top 10, OWASP API Security Top 10, OWASP Mobile Security Testing Guide) and relevant security practices. Analyze application flows, user journeys, transaction processes, access controls, and data handling mechanisms to uncover potential security risks. Conduct vulnerability assessment and manual verification to reduce false positives, confirming actual exploitability in authorized environments. Retest to validate remediation effectiveness and ensure vulnerabilities are properly resolved. Support security testing activities within the software development life cycle (SDLC), including security requirement review, threat analysis, test planning, and release security validation. Stay updated with emerging cyber threats, attack techniques, security risks, and security testing best practices. Lead the planning, scoping, and execution of penetration testing activities across assigned projects. Define the penetration testing approach, test strategy, testing scope, priorities, timelines, and required evidence based on project and client requirements. Guide and mentor penetration testers or security engineers in testing methodology, vulnerability validation, reporting quality, and remediation discussions. Review vulnerability findings, risk ratings, evidence, and remediation recommendations to ensure accuracy, consistency, and practical value. Serve as the main technical point of contact for penetration testing activities, working with client stakeholders, security teams, development teams, DevOps, infrastructure teams, and compliance teams. Facilitate vulnerability walkthroughs, risk clarification sessions, remediation discussions, and retesting alignment with relevant stakeholders. Support estimation, planning, status tracking, issue escalation, and delivery reporting for security testing activities. Contribute to improving security testing processes, reporting templates, testing checklists, knowledge sharing, and reusable testing practices. Support regulatory, audit, and compliance requirements by providing security testing evidence, reports, remediation status, and technical clarification when needed.

Negotiation

View details