
Search by job, company or skills
As a Cybersecurity engineer, you will provide leadership in the DevSecOps areas of Vulnerability Scanning, Certificate/Secrets Management, Password Policy Management, Analysis for Security Monitoring, coordination of Remediation Patching, and other daily Security and Compliance efforts.
Additionally, you will assist in developing an automated security framework for robust deployment tools and processes, leveraging various scripting languages and open-source solutions. In a nutshell, you will implement security fabric in all Thales applications.
Responsibilities:
You will ensure the effectiveness of the vulnerability management process. Implement and coordinate the remediation of high risk, complex vulnerabilities as part of the devsecops team. Be hands on by making system and applications changes to improve cybersecurity to systems and applications
You will implement security fabric into the applications pipelines
You will define how to release securely new features part of Thales portfolio
You will provide support for the implementation and ongoing support of security monitoring and alerting systems that are part of the Cybersecurity Operations Center (CSOC)
You will support audit and compliance efforts affecting the platform environment and operations such as PCI, SOC2, GDPR
You will determine appropriate controls are in place via periodic assessment and testing. Identify and engage operations teams for needed remediation
You will develop and maintain security policies, standards and in conjunction with production IT and DevOps teams
You will apply security best practices and standard operating procedures for the platform solutions
You will collaborate with stakeholders to ensure good communication and quality solutions that meet the company's technical needs
You will create the documentation for the platform solutions
Requirements:
A bachelor's degree in computer science, software engineering, or another related field.
5+ Years experience in a Production Engineering/ Vulnerability Remediation/ Agile or related position
Experience with cloud providers such as AWS or Azure.
Experience with Kubernetes, Docker, Jenkins, Helm, and Terraform
Experience with data technologies like MongoDB, Azure CosmosDB, MySQL, MariaDB, Azure Data Lake, Azure SQL Data Warehouse and Microsoft SQL Server
Experience with security concepts, protocols, industry best practices, strategies, frameworks and regulations such as International Standards Organization (ISO) 2700x, NIST Cybersecurity Framework, Payment Card Industry Data Security Standard (PCI DSS), Sarbanes-Oxley (SOX), and General Data Protection Regulation (GDPR).
Experience working with Developers, DevOps, and Engineering teams in a dynamic environment to promote/implement the CyberSecurity program throughout the organization
Experience coordinating and performing vulnerability assessments through the use of automated and manual tools (Tenable, NMAP, etc.).
Comprehension in the security areas of Key Management Systems, Certificate Management, Encryption, Penetration Testing, Vulnerability Scanning, Security and Monitoring tools, etc
Other Information:
Working Location: Suntec City
Working Hours: Monday - Friday, 9am - 6pm
Job ID: 138982473