该职位已失效,看看其他机会吧

信息技术安全经理

3-3.5万·13薪
  • 北京丰台区
  • 10年以上
  • 本科
  • 全职
  • 招1人

职位描述

CISACISMQUALYSACUNETIX漏洞挖掘渗透测试安全扫描
    Background and Role Summary
    The primary responsibility of the IT security manager is to execute the company's cyber security agenda by evaluating, identifying, enforcing, mitigating, and overseeing security measures.

    Responsibilities and duties
    • To liaise with IT development and system teams to ensure IT security best practice is catered throughout the system development and maintenance processes. Ensure security is factored into the evaluation, selection, installation, and configuration of hardware, software, and applications.
    • To put in place and work on the results of the measuring tools and management of the IT security, including host-system vulnerability and web application security scanner.
    • To keep current with the latest security threats and risks. Manage regular review of IT security on system infrastructure, access control, network, software, applications, desktops, and endpoints.
    • To perform IT security incident verification and investigation and work with various teams to resolve security incidents.
    • Coordinate IT security activities such as IT security review meetings, reporting, and trainings.
    • Prepare reports on IT compliance reviews, vulnerability management statistics, and security incidents, etc.
    • Follow through any issues reported and ensure they are resolved or mitigated in a timely manner.
    • Facilitate cross-departmental collaboration to ensure that technical teams, business lines, and other relevant departments implement compliance requirements effectively.
    • Communicate and coordinate with external regulatory bodies, auditing firms, and groups to ensure transparency and credibility in security compliance matters.
    • Organize and oversee cyber security compliance training programs for employees to enhance overall security awareness.
    • To support, advise, and teach/train the end-users in the field of IT security.
    • To elaborate on the engagement of service (SLA) and translate them into internal demands (OLA) in the field of IT security & compliance.

    Preferred qualifications
    • Degree in Computer Science, IT or related disciplines.
    • Professional certificate in CISA, CISM; and with CISSP preferable.
    • Minimum 10 years of IT experience in the role of IT security.
    • Excellent knowledge in latest IT trends and tools e.g. Qualys, Acunetix, SIEM (Splunk or similar).
    • Excellent and hands-on experience in project management in security program, e.g. penetration testing.
    • Able to quickly acquire excellent knowledge of the Company's IT operations, infrastructure, policy and procedures.
    • Good track records in deployment and implementation of IT security program.
    • Excellent analytical skills and strong interpersonal and communication skills.
    • Result-oriented with capability to drive, and work independently, efficiently and innovatively.
    • Good teamwork player.
    • Fluent in both written and spoken English and Mandarin.
查看全部

奖金绩效

年度绩效奖金

工作地点

聚杰金融大厦
以担保或任何理由索要财物,扣押证照,均涉嫌违法。一经发现,

职位发布者

刘女士/HRD

今日活跃
立即沟通
威立雅(中国)环境服务有限公司
威立雅集团是全球生态转型的标杆企业,位列世界五百强。集团拥有员工近22万名,遍布世界五大洲,在水务、废弃物及能源管理三个领域设计与实施切实有效的解决方案,协助彻底扭转当前生态危局。凭借三个互补的业务领域,威立雅实现获得资源,保护资源并补充资源的愿景。自二十世纪90年代初以来,威立雅在中国迅猛发展,确立了自身在水务、废弃物和能源服务市场的领先地位,目前在中国约50个城市投资及运营超过100个项目,包含以下七个业务领域。供水和排污设施固废回收和再利用液体和危险废弃物处置和回收地区能源循环楼宇能源服务为工业客户提供现场服务水务技术与方案
公司主页