Discover Great Companies Discover Great Clients
Companies Salaries Jobs
Jobs |
Jobs Companies Salary Majors

信息安全分析师岗位职责

  • 成都 - 信息安全分析师(安全运营), ITS 岗位职责来自 毕马威

    򀀇
    KPMG China provides multidisciplinary services from audit tax to advisory, with a strong focus on serving our clients’ needs their industries. Not only do we have an overriding commitment to provide the highest quality services four clients, but we also strive to become a responsible corporate citizen that has a positive impact on our environment community. At KPMG, you’ll translate insights action reveal opportunities fall—our teams, our clients our world.



    Service Line Overview

    Information Technology Services (ITS) is a single, integrated serviceganization with global, national practice-based components that work together to meet service expectations deliver priority projects to KPMG China.



    About The Role

    As a part of the Security Operations Centre, you will work with a team of SOC analysts to deliver professional cyber security services, which spans the full range of security monitoring, incident investigation, response reporting, threat intelligent vulnerability management, other security analytics functions.



    Key Responsibilities 主要职责

    Ensuring timely incident identification, assessment, containment, recovery.
    负责网络安全事件的识别、评估、遏制与恢复全流程处置工作;

    Act as incident response specialist fcyber security incidents when required coordinate resources teams across the firm to adequately respond to security threats.
    紧急事件发生时担任应急响应分析师,统筹协调跨部门资源与团队协助,高效处置各类安全威胁;

    Develop enhance incident response processes playbooks.
    梳理、搭建并持续优化应急响应流程与标准化处置预案(playbook);

    Provide cyber security guidance on operational topics such as security incident response, vulnerability management, data breach prevention, security alert monitoring, etc.
    针对安全事件处置、漏洞管理、数据泄露防护、安全告警监控等日常运营工作,提供专业安全指导;

    Prompt response to latest cyber security news vulnerability updates.
    实时跟进行业*新安全动态、高危漏洞通告,并同步落地对应防护应对措施;

    Perform threat management, threat modelling, identify threat actors develop security monitoring use cases.
    开展威胁管理与威胁建模工作,梳理攻击者画像,输出检测规则与用例;

    Measure SOC performance metrics – ensuring compliance to policies SLA, process adherence process optimization.
    统计SOC安全运营核心指标,保障各项工作符合内部制度、服务SLA,跟进流程落地执行情况并推进持续优化;

    Ensure compliance with internal standards, international standard like ISO27001 regulatory requirements in China.
    落实内部安全规范、ISO27001等国际体系标准及国内相关法律法规、监管合规要求。


    Experience & Background 任职要求

    Bachelor’s degree, with a majin IT other relevant disciplines.
    本科及以上学历,计算机、信息技术、网络安全等相关专业;

    5+ year experience in IT Security / SOC / incident detection response field.
    拥有5年及以上信息安全、SOC安全运营、安全检测与应急响应相关从业经验;

    Holder of CISSP, CISM and/CISA preferred.
    持有CISSP、CISM、CISA等安全资质证书者优先;

    Experience in network security, cloud security container security.
    掌握网络安全、云安全、容器安全相关技术,具备落地实操经验;

    Proven experience in incident detection & response in multi-cloud hybrid-cloud environments.
    具备多云、混合云架构场景下安全检测、应急响应实战经验;

    Experience in data analytics, process automation, application development will be an advantage.
    具备数据分析、安全流程自动化、简易开发能力者优先考虑;

    Proven experience in SIEM, SOAR TIP tools, develop enhance IR playbook, security solutions evaluation recommendations.
    熟练使用SIEM、SOAR、威胁情报平台(TIP)等安全工具,可独立编写优化应急处置预案(IR playbook),完成安全产品测评、选型及方案推荐;

    Technical knowledge of MITRE ATT&CK, Cyber Kill Chain, NIST.
    熟悉MITRE ATT&CK框架、Cyber Kill Chain、NIST等主流安全模型;

    Experience with endpoint security products, firewall technologies, threat intelligence, penetration tests, information security principles practices will be an advantage.
    了解终端安全产品、防火墙技术、威胁情报运营、渗透测试及信息安全基础理论与实操者优先;

    Experience with China brsecurity vendors will be an advantage.
    熟悉国产主流安全厂商产品与方案者优先;

    Strong desire to develop follow standards procedures.
    具备较强的体系规范搭建意识,习惯遵循并落地标准化流程制度。



    About KPMG



    At KPMG China, we are committed to being an equal opportunity employer, with zero tolerance fany form of discrimination against any persons. It is important fus to an inclusive, diverse agile workplace four people to develop thrive at both a personal professional level.



    We strive to make ESG (environmental, social governance) a watermark running through ourganisation; from empowering our people to become agents of positive change, to providing better solutions services to our clients. To lead by example, we launched Our Impact Plan (OIP) which includes our ESG commitments progress across four key pillars – Planet, People, Prosperity Governance.

    We encourage you to come as you are, we welcome all qualified candidates to apply, hope you unlock opportunities with us. Visit KPMG China website fmore company information.

    Please note that all information in this form has been voluntarily supplied will be used by KPMG fselection purposed only.
    更新于 2026-08-07
  • 信息安全分析师 岗位职责来自 北京讯通通信服务有限公司广州分公司

    򀀇
    公司描述:
    HKT Enterprise Solutions作为香港领先的信息及通讯科技解决方案供货商,秉持着多年的行业经验和专业技术,为企案客户提供全面的一站式数码转型方案。香港电讯的解决方案涵盖宽带网络、云端运算、物联网、人工智能、网络安全及能源管理等多个范畴,助企业提升营运效率、优化客户体验、增强竞争力,为香港发展成为智慧城市做出贡献。
    香港电讯亦一直致力于技术创新,以帮助企业客户提升璟球竞争力。近年来,香港电讯企业方案积极将人 工智能(AI)技术融入到各类应用解决方案中,希望为客户带来的智能化管理体验。AI应用方案涵盖多个领域,例如AI智能客服、AI能源管理系统、AI影像分析技衍及AI-PC等。
    通过持续创新,香港电讯将继续为企业客户开发更智能、更高效的数礁化解决方案。我们将持续投入资源,深化AI等前沿技术在企业应用中的创新应用,助客户实现全方位产业升级。
    职位描述: 岗位职责:02
    1. 02 02对受损系统进行事件响应和取证分析,识别并提供DDoS事件修复建议和逆向工程恶意软件的能力;02
    2. 02 02主动识别危害指标,并在发现后生成和执行事件响应计划;02
    3. 02 02提供事故补救和预防文件;02
    4. 02 02处理客户突发事件的所有配置和关键问题;02
    5. 02 02在SIEM和/或SOAR上进行用例开发;02
    6. 02 02为事件编写剧本并提供回应;02
    7. 02 02集成各种安全设备和应用程序,实现安全操作自动化;02
    8. 02 02就突发事件和日常安全行动与客户保持联络;02
    任职资格:02
    1. 02 02本科及以上学历,信息技术、计算机、工程相关专业优先;02
    2. 02 02相关领域的一个或多个级别认证,如CISSP / CEH / OSCP / SANS GIAC;02
    3. 02 023年以上服务器和操作系统管理和运营或网络经验;02
    4. 02 022年以上安全运营中心或安全运营工作经验优先,或3年以上网络或安全设备安装配置经验优先;02
    5. 02 02有网络安全事件响应经验者优先;02
    6. 02 02有红队或渗透测试或数据分析或系统集成经验者优先;02
    7. 02 02有PHP, Python, Java和脚本编程经验者优先;02
    8. 02 02能够领导虚拟团队进行网络安全事件管理,包括整个事件处理周期的活动;02
    9. 02 02粤语流利,英文书面表达能力优秀。
    更新于 2025-12-08
  • 信息安全分析师 岗位职责来自 珠海永亚软件有限公司

    򀀇
    主要工作职责:
    1. 协助开展安全风险评估、技术风险管理,并编写信息安全报告;
    2. 协助编制并维护安全文档清单,如医管局(HA)IT 安全政策、标准、指南及相关安全文档;
    3. 协助管理安全保障活动,包括确保符合医管局 IT 安全政策、标准与指南,并推动其落地;
    4. 跟踪安全问题整改情况,并编写管理报告。

    岗位必备要求:
    1. 至少 6 年 IT 安全保障与合规领域的实战经验;
    2. 必须具备高等教育学历或同等经验;
    3. 掌握以下领域知识:信息安全管理(如安全保障与治理)、风险评估、技术合规、IT 安全政策与标准、安全工程;
    4. 扎实掌握技术风险评估、信息安全管理框架、IT 政策与标准、技术风险合规、安全审查及风险状况报告相关知识;
    5. 持有 CISP、CISSP、CISA、CISM、SSCP、PMP 认证或同等资质。

    岗位优选要求:
    1. 具备项目管理经验;
    2. 具备较强的团队协作能力、人际交往能力及沟通能力;
    3. 具备自我驱动力,能独立开展工作。
    更新于 2025-10-20
  • 信息安全分析师 岗位职责来自 成都人瑞网络科技有限公司

    򀀩
  • Security Analyst 信息安全分析师 岗位职责来自 奔驰

    򀀩

招聘学历要求:本科最多

信息安全分析师需要什么学历?本科占比最多,占85.7%,大专占14.3%

按学历统计

说明:信息安全分析师工资按学历统计,大专工资¥7.0K,本科工资¥24.0K

招聘经验要求:不限最多

信息安全分析师经验要求高吗?不限占比最多,占57.1%,3-5年占28.6%,1-3年占14.3%

按经验统计

说明:信息安全分析师工资按经验统计,1-3年工资¥40.0K,3-5年工资¥16.0K

信息安全分析师工资待遇怎么样

薪酬区间: 4.5-50K,其中57.2%的岗位拿¥20-50K/月,年薪¥24-60W

数据统计来自近一年 7 份样本,截至 2026-09-30

¥20-50K
57.2%的岗位拿
¥21.6K
月平均工资

说明:信息安全分析师一个月多少钱?数据统计依赖于各平台发布的公开薪酬,仅供参考。

出国留学
客服
由百度提供