Manager Threat Intelligence

JOB DESCRIPTION

PURPOSE
Manager for IT Security Monitoring and Incident Response team, within the Company Group and all Business Units (10 Business Units) in Asia Pacific.
Lead, drive and support Initiatives and Projects to enhance or build new capabilities in the Company, related to Threat Intel function.
Define, Test, Build and continuous enhancement of IT Security Threat Intel Platform, as well as commercial sources and services.
Define Operational requirements and SOPs related to Threat Intel.
Define and implement enhancement detection and protection capabilities, leveraging IOCs propagation in IT Security solutions.
Support Incident Response in automation of contextualization of Cyber Alerts, leveraging the Threat Intel Platform.
Identify and coordinate with IT Security Engineering threats that require configuration uplifts in the Company's Protect or Detect solutions.
Identify and coordinate with Cyber Incident Response team threats that require Threat Hunting activities.
Provide expertise to Business Units when needed, in building local IT Security solutions.
KEY ACCOUNTABILITIES
Support the Head of IT Security Monitoring and Incident Response in define and maintain the Threat Intel framework for the Company Group.
Manage the Threat Intel services and solutions to maximize value of Threat Intel function in the Company.
Drive Threat Intel Projects definition and implementation, selection of solutions and architecture, as well as define operations framework and its continuous improvement.
Work closely with the Head of IT Security Monitoring and Incident Response, and Security Engineering to ensure regular updates to management on the Threat Intel Program status and risks.
KEY PERFORMANCE INDICATORS
On Time on budget delivery of key Threat Intel Program uplifts or deployments, aligned with Group IT Security roadmap.
Support the Head of IT Security Monitoring and Incident Response in continuous uplift of the Program.
Ensure Threat Intel program across Business Units is carried out in alignment with the Company business objectives and defined IT Security Plan timelines.
Group Threat Intel Framework implementation and controls are delivered in a cost-effective way using processes and resources (including people and technologies) aligned with the Company's business goals.
Threat Intel Program awareness is conducted when necessary.
Doing things right, creating synergies for the overall goals and objectives, along with a people first approach.
EXTERNAL & INTERNAL CONTACTS
Head of IT Security Monitoring and Incident Response
Group IT Security Monitoring and Incident Response team
Group IT Security Engineering
Group CISO
Business Units IT Security Teams
Group and Business Units Chief of Technology and Operations
Group and Business Units IT & Operations
Group and Business Units Internal Audit
External Auditors
Vendors and/or Service Providers

JOB REQUIREMENT

QUALIFICATIONS / EXPERIENCE
Minimum 5 years working experience in a hands-on technical role in Cyber Security Threat Hunting, APT/Crimeware analysis, Malware analysis, Monitoring and Incident Response.
Experience in an operational capacity as part of security incident response function.
Experience with a programming/scripting language.
Experienced in multi-cultural virtual team management and coordination.
Degree from Information Technology or equivalent discipline.
KNOWLEDGE & TECHNICAL SKILLS
Excellent knowledge of Advanced Persistent Threats, attack tools, techniques, and methods used by adversaries.
Strong decision-making capability on remediation actions to respond to security incidents.
Ability to define, prioritize and execute process in a structured manner.
Excellent interpersonal and influential skills to enable the implementation and enforcement of the IT Security Engineering program.
Good communication and presentation skills.
Desirable: GIAC Cyber Threat Intelligence (GCTI) certification, CREST Certified Threat Intelligence Manager, ECCouncil Computer Hacking Forensics Investigator (CHFI), GIAC Certified Incident Handler (GCIH), GIAC Reverse Engineering Malware (GREM), GIAC Certified Forensic Analyst (GCFA).

WHAT'S ON OFFER

13th salary
Bonus paid in April next year if joining before Oct 2024
Paid leave up to 22 days per year (prorated for partially joining)
Work remote 1 day per week
Health insurance for employees and direct dependents

CONTACT

PEGASI – IT Recruitment Consultancy | Email: recruit@pegasi.com.vn | Tel: +84 28 3622 8666
We are PEGASI – IT Recruitment Consultancy in Vietnam. If you are looking for new opportunity for your career path, kindly visit our website www.pegasi.com.vn for your reference. Thank you!

Job Summary

Company Type:

insurance, Hongkong company

Technical Skills:

Security

Location:

Ho Chi Minh - Viet Nam

Working Policy:

Salary:

Negotiation

Job ID:

J01576

Status:

Close

Related Job:

Penetration Tester

Ha Noi - Viet Nam


Product

  • Pentest

Tham gia triển khai dịch vụ pentest cho khách hàng: tiếp nhận yêu cầu, xác định phạm vi và điều kiện đảm bảo của các dự án pentest được giao. Phân chia công việc theo quy trình pentest và giao cho các thành viên thực hiện dự án. Hướng dẫn các pentester thực hiện kiểm tra đánh giá ATTT cho ứng dụng. Kiểm soát chất lượng dịch vụ, tuân thủ quy trình, nguồn lực và thời gian triển khai cho các dự án được giao. Là đầu mối kỹ thuật, làm việc với các bộ phận nội bộ và Khách hàng để phối hợp giải quyết các vấn đề trong phạm vi cung cấp dịch vụ. Nghiên cứu cải tiến quy trình, checklist và các kỹ thuật mới nhằm nâng cao chất lượng dịch vụ và năng suất lao động, giảm tỉ lệ sót lỗi. Đảm bảo SLA theo hợp đồng đã ký với Khách hàng.

Negotiation

View details

SOC Management Specialist

Ho Chi Minh, Ha Noi - Viet Nam


Product

  • Security
  • System
  • Network

Quản lý và kiểm soát chất lượng dịch vụ: Đảm bảo chất lượng các dịch vụ an toàn thông tin (ATTT) cung cấp cho nhóm khách hàng của công ty, bao gồm: Giám sát ATTT 24/7, Xử lý sự cố, Threat Hunting, Threat Intelligence, ... Quản lý mức độ trưởng thành ATTT: Thực hiện đánh giá, tư vấn và đề xuất giải pháp nhằm nâng cao mức độ trưởng thành về ATTT cho khách hàng. Quản lý rủi ro và mối đe dọa ATTT: Theo dõi, phân tích và quản lý rủi ro ATTT cũng như tiếp xúc liên tục với các mối đe dọa đối với hệ thống của khách hàng. Nhận diện và xử lý vấn đề ATTT: Phát hiện và quản lý các vấn đề phát sinh liên quan đến ATTT trong quá trình giám sát vận hành và xử lý sự cố. Phối hợp liên phòng ban: Đại diện Trung tâm Giám sát (TTGS) làm việc với các bộ phận nội bộ VCS như Triển khai, Phát triển giải pháp, Quản lý dự án (PM), Kinh doanh, Pre-sale, Account Manager (AM), Chăm sóc khách hàng (CSKH), ... và khách hàng để phối hợp xử lý các vấn đề trong phạm vi dịch vụ cung cấp. Đảm bảo cam kết dịch vụ (SLA): Theo dõi và đảm bảo các chỉ số SLA được thực hiện đúng theo hợp đồng đã ký kết với khách hàng.

Negotiation

View details

Engineering Manager

Ho Chi Minh - Viet Nam


Product

70% of the job role involves Engineering & Architecture, while 30% is focused on People & Project Management. Develop, enhance, and streamline backend services through the use of Java, Spring, and Kotlin Lead conversations on system architecture and steer the technical direction for the Security Domain (QR Code, Shorten URL, and Static Application Security Testing Tool) Oversee code reviews, ensure compliance with coding standards, and uphold system quality Coordinate with teams from the Korean headquarters to harmonize technology and the roadmap Enhance system scalability, performance, and reliability Provide guidance and mentorship to over 10 engineers spanning various domains Establish and assess team objectives and individual OKRs/KPIs Take the lead on sprint planning, tracking deliveries, and nurturing a culture of code reviews Cultivate an engineering culture centered on growth and ownership Strategize and execute quarterly domain goals (such as rolling out security products, releasing new features, etc.) Monitor progress using quantifiable KPIs (velocity, release quality, incident rate, etc.) Maintain effective communication across teams (Product, QA, Infra, and Korean stakeholders)

Negotiation

View details