Kỹ năng


Mô tả công việc

• Implement and guide information security and cybersecurity practices across the
organization
• Ensure integrity and safety of our SaaS platform while maintaining compliance with
international standards
• Implement secure software development practices based on OWASP best
practices
• Coordinate annual secure coding training for development team
• Conduct integrity checks for new employees
• Guide development teams on secure coding techniques
• Ensure security aspects are addressed during code reviews
• Conduct regular security assessments of our software
• Advise DevOps team on security best practices and integrate security into CI/CD
pipeline
• Prepare product for SOC 2 Type 2, ISO 27001, and GDPR certifications
• Coordinate and prepare for penetration testing
• Implement security measures for technological and physical work environments
• Guide IT personnel on continuous monitoring and updating using Microsoft
Defender
• Establish access control protocols for physical and digital environments
• Implement security protocols for remote work scenarios
• Conduct regular audits of physical and digital access rights
• Establish incident response protocols for digital and physical scenarios
• Develop and implement company-wide information security policies and
procedures
• Conduct regular risk assessments and vulnerability scans
• Assist in developing incident response and disaster recovery plans
• Serve as key point of contact for all security-related matters
• Provide regular reports on security status, incidents, and improvements to
management

Yêu cầu công việc

• 5+ years of experience in information security, focusing on implementation and
guidance
• English fluent
• Deep understanding of software security principles and OWASP best practices
• Strong knowledge of SOC 2 Type 2, GDPR, and ISO 27001 standards and
implementation processes
• Experience with cloud security, particularly in SaaS environments
• Strong background in secure software development lifecycles
• Familiarity with DevOps practices and security integration in CI/CD pipelines
• Experience with Microsoft Defender and other security monitoring tools
• Knowledge of physical security measures and access control systems
• Excellent communication skills, ability to explain complex security concepts
• Ability to work collaboratively with various teams and guide them on security
Preferred Qualifications:
• Relevant certifications such as CISSP, CISM, or CEH
• Experience in the WiFi or networking industry
• Background in privacy law and data protection
• Experience with penetration testing and ethical hacking

Thời gian làm việc

Trong tuần: Từ thứ 2 - thứ 6

Trong ngày: Từ 08:30 giờ - 18:00 giờ


Quyền lợi ứng viên

- Onsite allowance 100k/working day.
- No need for probation, official job, 100% salary and full insurance according to Vietnamese labor law (social insurance, health insurance, unemployment insurance) after 2 months.
- Performance evaluation once every 6 months, corresponding to the salary review period based on capacity and performance.
- Long service bonus, project bonus, 13th month salary bonus, work efficiency bonus at the end of the year.
- Maternity allowance for female employees.
- Participate in company activities: Monthly, quarterly parties, teambuilding, travel, relaxation and other activities
- Opportunities to onsite and work with big customers, advanced technology, personal development...
- Opportunity to work in groups with many leading experts in the field of domestic and international IT.
- Opportunity to implement ambitious projects in many countries, gain exposure to the latest technologies and learn from talented colleagues.
- Work in a youthful, vibrant, modern and multicultural environment. Communication activities and events on holidays take place regularly.
- Promotion opportunities based on capacity with corresponding rank increases and salary increases.
- Have the right to participate in soft skills training courses (logical thinking, creative thinking, communication skills, project management skills, negotiation skills...) and Japanese language classes.
- And many other attractive benefits...

Địa chỉ làm việc

Địa điểm onsite: 9 P. Đào Duy Anh, Phương Liên, Đống Đa, Hà Nội

Tiền thưởng

Đăng nhập để xem

Mức lương

30-40 triệu

Thông tin

  • Kinh nghiệm 5 năm
  • Trình độ Đại học
  • Vị trí Middle
  • Hình thức Full-time
  • Hạn nộp hồ sơ 2024-10-08
  • Số lượng 1 người
  • Phỏng vấn 2 vòng
Hỗ trợ ứng tuyển
Hr Admin

Nguyễn Thanh Thảo

Hr

Đào Thị Thu Phương

Báo cáo lỗi

Sao chép đường dẫn để chia sẻ:


Việc làm cùng kỹ năng

DevOps Engineer

  • 1-1 triệu
  • Yongin
회사의 IT 애플리케이션과 서비스에 대해 DevOps 프로세스를 구축하고 최적화하며, CI/CD 구현 및 자동화 테스트를 수행합니다. 소프트웨어 개발 팀과 협력하여 서비스 배포 및 스테이징/프로덕션 시스템 운영을 담당합니다. 시스템 배포, 운영 및 모니터링을 수행합니다. 클라우드 서비스와 서버를 관리하고 모니터링합니다. 자세한 사항은 면접 시 논의합니다.

Tiền thưởng

Đăng nhập để xem

IT 보안 (한국어 가능)

  • 1-1 triệu
  • Seoul
Devwork 베트남 빌드 센터에서 함께할 한국어 능통한 IT 보안 엔지니어를 찾고 있습니다. 해당 후보자는 IT 인프라, 애플리케이션 및 네트워크 보안을 책임지며, 글로벌 보안 팀과 협력하여 보안 정책 및 리스크 관리 전략을 실행하는 역할을 맡게 됩니다. 주요 업무: IT 보안 정책, 프레임워크 및 베스트 프랙티스를 구현하고 모니터링 보안 위협, 취약점 및 사고를 식별, 분석 및 완화 내부 및 외부 규정을 준수하기 위해 보안 평가 및 감사를 수행 한국 및 글로벌 보안 팀과 협력하여 보안 작업을 원활하게 실행 조직의 보안 상태를 향상시키기 위한 직원 보안 인식 교육 지원 사고 대응, 포렌식 분석 및 보안 침해 복구 지원 SIEM(보안 정보 및 이벤트 관리) 도구 및 기타 보안 모니터링 솔루션 유지 관리 및 개선 새로운 IT 프로젝트에 대한 보안 추천을 제공하고 시스템 설계에 보안이 통합되도록 보장

Tiền thưởng

Đăng nhập để xem

Remote Senior Python backend with DevOps

  • 30-40 triệu
  • Tất cả địa điểm
- Participate in customer projects, do work as arranged by PM - Participate in code reviews, mentoring junior developers, and promoting best practices for software development. - Troubleshoot and debug application issues, providing timely resolutions. - Continuously learn and apply new technologies and techniques to improve software development processes.

Tiền thưởng

Đăng nhập để xem