CIMB

Cyber and IT Security Engineering Principal Specialist SG

CIMB
BankingSingaporeOnsitePosted 3 weeks ago

About the role

Senior cybersecurity engineering role focused on securing enterprise IT systems and applications for a large-scale organization. Responsible for implementing and managing security solutions across multiple domains including EDR, PAM, SIEM, and network security while ensuring compliance with regulatory requirements.

BankingOnsite

Key Responsibilities

  • Responsible for ensuring IT systems and applications within our organization meet the needs of the business while adhering to security best-practices, compliance and regulatory requirements
  • Responsible and accountable for delivering security solutions and fully operationalizing the key security tools for the bank
  • Experience in leading and implementing multiple security solutions and technologies across one or more IT Security domains (EDR, PAM, SIEM, IPS/IDS)
  • Exposed to other domains such as Cloud Security
  • Manage security programs and stakeholders to ensure security practices are implemented as per policy, standards, SOPs and processes

Requirements

  • Min. Bachelor's degree in computer science
  • Minimum 5-8 years' experience working in a large-scale IT environment; Including five (5) years of information security and risk experience within the past six (6) years; including risk analysis, endpoint, server, network and web application security
  • Security industry certifications such as CISSP, CISM, SANS, GSEC , etc are preferred
  • Other industry certifications such as PMP, ITIL, Microsoft, CISCO (preferred, but not required)
  • Good understanding of TCP/IP protocol and OSI Seven Layer Model
  • Strong knowledge of security best practices and concepts
  • Analyzes & prepares recommendations relating to security for existing IT infrastructures / Applications
  • Expert understanding of firewall technologies
  • Advance knowledge & Hands-on experience in supporting and maintaining enterprise IT Security solutions and technologies such as Firewall, IDS/IPS and Proxy, etc
  • Advanc knowledge of Windows and/or Unix-based systems / architectures and related security
  • Advance knowledge of cryptography / cryptographic systems
  • Advance level of knowledge of LAN / WAN technologies
  • Knowledge of VPN technologies
  • Articulate threats and risk to business and technology leaders