Developing and implementing security policies, procedures, and guidelines to ensure compliance with industry standards and regulations.
Leading the design and implementation of security controls, including firewalls, intrusion detection systems, endpoint protection, and security information and event management (SIEM) systems.
Conducting regular security assessments and vulnerability scans to identify potential risks and vulnerabilities.
Responding to and investigating security incidents and breaches, and implementing measures to prevent future occurrences.
Managing and monitoring security systems and tools to detect and respond to security events and threats.
Collaborating with other IT teams to ensure security best practices are followed during system and software development.
Providing guidance and support to junior security operations engineers and other team members.
Staying up-to-date with the latest security trends, threats, and technologies, and making recommendations for improvement.
Participating in incident response and disaster recovery planning and testing.
Collaborating with external vendors and partners to ensure the security of third-party systems and services.
Requirements:
Bachelor's degree in Computer Science, Information Systems, or related field.
Strong technical knowledge and experience in security operations, network and systems administration, and incident response.
Experience with programming languages (Rust is a plus), Embedded Systems, Hardware peripherals.
Familiarity with Operating System Security (e.g. Linux, Windows).
Excellent problem-solving and analytical skills.
6+ years of professional experience in hardware and firmware security.
Chinese speaking to liaise with Chinese counterparts.