Information Technology Security Manager (Insurance)
ประกาศจากแหล่งภายนอกPhillip Life Assurance
เทคโนโลยี
ทำงานที่ออฟฟิศลงประกาศ 62 วันที่แล้ว
สมัครที่เว็บไซต์บริษัท
คุณสมัครได้โดยตรง — เราจะพาคุณไปยังหน้าสมัครงานของบริษัท ไม่ต้องสมัครสมาชิก ไม่มีคนกลาง ไม่ต้องล็อกอิน ThaiJobz
รายละเอียด
เงินเดือนตามตกลง
ประเภทการจ้าง
เต็มเวลา
รูปแบบ
ทำงานที่ออฟฟิศ
รายละเอียดงาน
Responsibilities
- Manage security system-related operations including DDEI and TrendMicro.
- Manage and respond to security alerts, incidents, and breaches from SOC.
- Identify vulnerabilities in the network and server infrastructure and collaborate with IT to ensure timely remediation.
- Perform penetration tests on websites and coordinate remediation with IT.
- Review and validate system hardening and baseline configurations and work with IT to ensure prompt remediation.
- Document and report IT audit findings, recommendations, and follow-up actions; collaborate with IT and related teams to address identified issues.
- Respond to audit findings from OIC (including Annual OIC IT Audit, CRAF, IT Environment Survey and Electronic Registration and Certificate) and external IT audits.
- Perform account reviews on Active Directory and conduct high-privilege account reviews.
- Maintain security awareness materials and training videos for new staff; run annual security awareness and training programs and targeted training for individuals who clicked on links during cyber drills.
- Create training materials and promote a culture of security awareness across the organization.
- Maintain ISMS documentation: policies, procedures, forms; manage document control, facilitate management reviews, and implement continuous improvement based on audit findings.
Required Skills
- Cybersecurity vulnerability assessment and remediation
- Penetration testing coordination
- IT audit and regulatory compliance management
- Active Directory and privileged access review
- Security awareness and phishing simulation programs
- IT risk assessment, third-party risk management, and KRI monitoring/reporting
- ISMS governance, security policy and documentation management
- Cross-team collaboration and promoting a security culture
Additional Information
- Organization: Phillip Life Assurance
- Work arrangement: onsite
- Employment type: full_time
คุณสมบัติผู้สมัคร
- ประสบการณ์
- 6-10 ปี
- การศึกษา
- ไม่ระบุ
ใบรับรอง / ทักษะเพิ่มเติม
Cybersecurity Vulnerability AssessmentPenetration Testing CoordinationIT Audit ManagementRegulatory Compliance ManagementActive Directory ReviewPrivileged Access ReviewSecurity Awareness ProgramsPhishing Simulation ProgramsIT Risk AssessmentThird-Party Risk ManagementKRI MonitoringInformation Security Management SystemSecurity Policy ManagementDocumentation ManagementCross-Team Collaboration
เกี่ยวกับบริษัท
Phillip Life Assurance
www.linkedin.com/company/philliplife