Job Description:
As the IT Security Manager, you will play a critical role in safeguarding our digital assets, systems, data from cyber threats. You will be responsible fdeveloping, implementing, managing comprehensive security strategies, policies, procedures to ensure the confidentiality, integrity, availability of our information assets. This role requires a solid understanding in IT security infrastructure, with a deep understanding of network security, system architecture, cybersecurity best practices. You will work closely with cross-functional teams to identify security risks, implement appropriate controls, provide guidance on security best practices.
Responsibilities:
• Develop implement an IT security strategy, including policies, standards, procedures, guidelines.
• Conduct regular security assessments risk analyses to identify vulnerabilities threats, develop mitigation plans.
• Implement manage security technologies including firewalls, intrusion detection/prevention systems, next generation endpoint protection, patching solutions, encryption tools.
• Monitsecurity incidents conduct incident response activities, including investigation, containment, eradication, recovery.
• Lead security awareness training programs to educate employees on security policies, procedures, best practices.
• Collaborate with internal teams to integrate security controls the development lifecycle of applications, systems, networks.
• Stay up-to-date with the latest security trends, threats, technologies, make recommendations fcontinuous improvement.
• Prepare present reports to senimanagement on the status of IT security, including key metrics, incidents, compliance.
• Perform IT general controls review cybersecurity control (access controls, change management, disaster recovery, account management, etc.) fdomain-level ERP non-ERP systems.
• Document, test, assess IT systems controls to ensure compliance with internal policies, industry standards, regulatory requirements.
• Participate in special projects related to IT risk management initiatives.
• Provide advice on IT policies procedures to support business process improvements.
Qualifications:
• Bachelors master’s degree in information systems, Computer Science, Cybersecurity, a related field.
• IT security auditing experience (multiple years desired), with experience in Big 4, a technology company manufacturing environment like Amphenol desired.
• At least 2 years of experience in IT infrastructure, network administration, system engineering with a focus on security.
• Strong analytical skills with the ability to detect trends, identify root causes of issues, drive solutions.
• Deep understanding of security principles, technologies, protocols, best practices, including network security, identity access management, encryption, vulnerability management.
• Professional security management certifications such as Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), Certified Information Security Manager (CISM) are preferred.
• Experience with security frameworks compliance standards such as ISO 27001, NIST, GDPR, PCI DSS is a plus
• Strong understanding of network, ERP systems, databases, IT application controls.
• Excellentganizational project management skills.
• Ability to work effectively both independently in a team environment.
• Excellent written verbal communication skills.
• Familiarity with COBIT, COSO, other IT control frameworks is a plus.
• Able to travel across Asia, 40-50%
More