Analyst, Security Architecture and Technology, Information Security
Περιγραφή εργασίας
POSITION SUMMARY:
The Analyst, Security Architecture and Technology, Information Security leads the security assessment to comply with the architecture design that the organization needs to take under consideration.
Drives the differential security architecture and technology review in order to identify potential risks. Evaluates the organization’s security postures in order to provide recommunication to the management team.
PRIMARY RESPONSIBILITIES:
- Leads the security assessment on the new corporate initiatives including the architecture design, data/privacy protection, compliance framework, DevSecOps, etc to identify potential risks and ensure compensation controls are put in place
- Drives differentiated security architecture and technology review with stakeholders and providers through the understanding of business needs, challenges, risks together with the external threats to ensure the most adequate solution is deployed
- Evaluates the organization security posture with the latest industrial security trend / technology to identify the enhancement opportunity and provide effective recommunication to management team
- Liaises and facilitate with business units, IT Engagement, PMO and other Information Security function teams to ensure the company security best practice is applied and identify any residual risk throughout the project life cycle
- Participates in regular review and utilize the Security framework (e.g. ISO 27001, NIST) to develop the security standard and guideline as the company control framework
QUALIFICATIONS:
Experience
- Minimum 3 years relevant experience in Information Security from recognized consultancy firm or highly regulated organization
- Good understanding of emerging technologies and associated risks on Cybersecurity, DevSecOps, Cloud Security, etc)
- Strong technical knowledge that able to conduct security assessments and risk control on different technology domains and cloud platforms e.g. AWS, Microsoft Azure
- Experience on process in project management (Agile), DevOps and digital transformation, data & privacy management, etc
- Experience on security frameworks/standards/guidelines e.g. CIS, NIST, PCI-DSS, ISO 27001 / 27017 / 27018 / 27701
- Familiar with compliance and regulatory frameworks e.g. GDPR, will be an advantage
- Hands on experience on various security platforms such as IAM, PAM, CASB, SIEM, SOAR, WAF, EDR, DLP, UEBA, email security, etc is highly desirable
Education
- Bachelor’s degree in management information system, Computer Science or related disciplines
- Certification in Information Security (e.g. CISSP, CISM, CISA, CCSP, DevOps, DevSecOps, etc) is preferable
- Certification in Privacy (e.g. CIPP/E, CIPM, CIPT, CDPO etc) will be considered as an advantage
Skills / Competencies
- Good communication skills on report writing and presentation (PowerPoint)
- Able to work independently and cope with result-oriented demand
- Strong business insight and able to understand business challenges
- Well organized and detail-oriented on delivering the assigned task
- Commit and strong sense of responsibility to the role and the team
PERSONAL COMPETENCIES:
- Displays a high commitment to delivering results
- Leads others to achieve business objectives
- Communicate effectively
- Achieves agreed objectives and accepts accountability for results
- Displays the highest level of integrity
- Ability to maintain discretion
- Self-motivated
- Approachable
If you are interested please send your CV to careers@melco-resorts.com.cy
Πώς να υποβάλετε αίτηση
Οι ενδιαφερόμενοι υποψήφιοι παρακαλούνται να στείλουν το βιογραφικό τους στον Διευθυντή Ανθρώπινου Δυναμικού στο careers@melco-resorts.com.cy.