ตำแหน่งงาน
ที่ไหน

18,236 ตำแหน่ง

กลับไปยังหน้าหางาน
อัพโหลด CV ของคุณ

เราจะใช้ AI อ่าน แล้วช่วยหาโอกาสที่ใช่ให้คุณ

คลิกเพื่ออัพโหลด หรือลากไฟล์มาวาง · PDF, DOC, DOCX · ไม่เกิน 10 MB

KTC - Krungthai Card

Information Technology Security Specialist

ประกาศจากแหล่งภายนอก
KTC - Krungthai Card
เทคโนโลยี
ทำงานที่ออฟฟิศลงประกาศ 54 วันที่แล้ว
สมัครที่เว็บไซต์บริษัท

คุณสมัครได้โดยตรง — เราจะพาคุณไปยังหน้าสมัครงานของบริษัท ไม่ต้องสมัครสมาชิก ไม่มีคนกลาง ไม่ต้องล็อกอิน ThaiJobz

รายละเอียด
เงินเดือนตามตกลง
ประเภทการจ้าง
เต็มเวลา
รูปแบบ
ทำงานที่ออฟฟิศ

รายละเอียดงาน

Responsibilities

  • Lead and manage end-to-end incident response activities, including detection, analysis, containment, eradication, and recovery.
  • Act as the primary liaison between internal stakeholders and external SOC teams during security incidents.
  • Validate and triage alerts received from the SOC, ensuring completeness and accuracy of analysis.
  • Conduct root cause analysis and post-incident reviews to identify gaps and recommend improvements.
  • Maintain incident documentation, timelines, and evidence for compliance and audit purposes.
  • Develop and maintain correlation rules, dashboards, and alerts to improve threat detection (Splunk SIEM).
  • Perform regular health checks and tuning of Splunk to ensure optimal performance.
  • Collaborate with IT, network, and application teams to investigate and remediate incidents.
  • Provide timely and detailed incident reports to management and stakeholders.

Qualifications

  • Bachelor’s degree in Cybersecurity, Information Technology, or related field.
  • 3+ years of experience in cybersecurity operations or incident response.
  • Hands-on experience with Splunk SIEM (Enterprise Security preferred).
  • Strong understanding of network protocols, operating systems, and threat vectors.
  • Familiarity with MITRE ATT&CK framework and threat intelligence integration.
  • Excellent communication and documentation skills.
  • Ability to work under pressure and manage multiple incidents simultaneously.
  • Experience working with outsourced SOC or MSSP environments.
  • Experience with other security tools (EDR, NDR, SOAR, vulnerability scanners).

Skills / Required Skills

  • Splunk SIEM, EDR, NDR, SOAR, vulnerability scanners
  • MITRE ATT&CK and threat intelligence
  • Network protocols and operating systems
  • Incident documentation and reporting for compliance

คุณสมบัติผู้สมัคร

ประสบการณ์
3-5 ปี
การศึกษา
ไม่ระบุ
ใบรับรอง / ทักษะเพิ่มเติม
Incident ResponseSplunk SIEMCybersecurityThreat DetectionRoot Cause AnalysisCommunicationDocumentationNetwork ProtocolsOperating SystemsThreat VectorsMITRE ATT&CKThreat IntelligenceEDRNDRSOAR

เกี่ยวกับบริษัท