Senior Information Security Officer (Security Control & Compliance)

ABOUT CLIENT

Our client is a leading financial services company in Vietnam

JOB DESCRIPTION

Implementing and operating application security solutions such as WAF, DDoS protection, and PAM (Privileged Access Management).
Monitoring privileged access activities, detecting abnormal behavior, and escalating security risks.
Collaborating with development and infrastructure teams to embed security measures across the application lifecycle (SDLC/DevSecOps).
Supporting application vulnerability assessment activities and tracking remediation progress.
Supporting the development, maintenance, and updates of information security policies and procedures.
Ensuring compliance with internal security standards and external regulatory requirements, and preparing documentation and reports for internal and external audits.
Monitoring application-related security events and access activities, analyzing and reporting security risks, vulnerabilities, and incidents to management.
Tracking the remediation status of identified security issues and ensuring timely resolution.
Supporting the execution of information security awareness programs for employees and assisting in developing related training materials and communication.
Participating in the research, testing, and deployment of new application security solutions, and supporting security-related initiatives in digital transformation and system upgrade projects.
Contributing to security requirement definition in IT and business projects.

JOB REQUIREMENT

Proficiency in web application security and OWASP Top 10.
Familiarity with security tools like WAF, PAM, DDoS protection, SIEM is beneficial.
Understanding of SDLC/DevSecOps processes.
Knowledge of information security standards such as ISO 27001, NIST, CIS, and compliance frameworks.
Strong analytical and problem-solving skills in dealing with security incidents and vulnerabilities.
Ability to collaborate with cross-functional teams.
Proficient in reporting and documentation with strong logical thinking.
Bachelor's degree in Information Technology, Computer Science, Information Security, or related fields.
2-5 years of experience in Application Security, Information Security, or IT Security roles.
Preference for certifications in Application Security (CEH, eWPT, eJPT, BSCP or equivalent).
ISO/IEC 27001 Lead Implementer/Lead Auditor or CISA qualifications.
SC-300 (Identity & Access Management) certification or IAM/PAM experience.
Experience in banking, securities, fintech, or regulated financial environments is a plus.

WHAT'S ON OFFER

CONTACT

PEGASI – IT Recruitment Consultancy | Email: recruit@pegasi.com.vn | Tel: +84 28 3622 8666
We are PEGASI – IT Recruitment Consultancy in Vietnam. If you are looking for new opportunity for your career path, kindly visit our website www.pegasi.com.vn for your reference. Thank you!

Job Summary

Company Type:

Product

Technical Skills:

Security

Location:

Ho Chi Minh - Viet Nam

Working Policy:

Onsite

Job ID:

J02144

Status:

Active

Related Job:

Senior Full-Stack Engineer (C# / React, AI Customer Support Platform)

Ho Chi Minh - Viet Nam


Outsource

  • .NET
  • ReactJS
  • Azure

Create and maintain backend services and APIs using C# and .NET technologies Construct contemporary frontend applications and interfaces using React Create adaptable integrations and workflows across platform services Team up with AI and product teams to incorporate intelligent support features and automation Collaborate with frontend, backend, and DevOps teams to produce top-notch solutions Enhance application performance, maintainability, and reliability Engage in technical discussions, code reviews, and architecture decisions Contribute to engineering standards and development best practices

Negotiation

View details

Senior Full-Stack Engineer (C# / React - BI & Analytics Platform)

Ho Chi Minh - Viet Nam


Outsource

  • .NET
  • ReactJS
  • Azure

Create and manage backend services and APIs utilizing C# and .NET technologies Construct contemporary frontend applications and dashboard interfaces utilizing React Establish adaptable integrations between operational systems, analytics services, and reporting layers Coordinate with frontend and data teams to provide modern BI and reporting experiences Translate business requirements into technical solutions in collaboration with engineering and product teams Enhance application performance, maintainability, and scalability Engage in technical discussions, code reviews, and architecture decisions Contribute to engineering standards and development best practices

Negotiation

View details

Senior Software Engineer (Typescript/ Node.js - Pay Team)

Ho Chi Minh - Viet Nam


Outsource

  • NodeJS
  • ReactJS
  • Azure

Create and maintain a TypeScript-based Web API for managing payment transactions Develop and maintain the Hub App using React and integrate it with the Payment API Design and implement secure authentication and authorization mechanisms such as OAuth2 and JWT Establish and manage automated CI/CD pipelines using GitHub Actions Conduct unit, integration, and end-to-end testing, as well as implement test automation Utilize AI-assisted development tools like GitHub Copilot and Claude to enhance productivity and quality Work closely with the Product Manager and Team Lead Take ownership of the entire API ensuring its availability 24/7

Negotiation

View details