Perform IT security operations involving activities such as security log reviews, vulnerability assessments, security access review and security configuration review to ensure compliance based on customers' requirements.
Critical Key Functions and Key Tasks
Vulnerability Assessment Scanning Work with the internal project team and customers to establish the in-scope inventories. Prepare the environment and complete the pre-scan activities. Conduct vulnerability assessment scanning using the designated tool. Review the scan results, process the results, and issue the scan reports to stakeholders. Follow up with the internal teams on the remediation. Publish the remediation status.
IT Security Incident Management Involved in IT Security Incident Response Team (SIRT). Work with internal teams to resolve the reported security incidents. Provide periodic status updates to IT Security Manager.
IT Security Alerts & Advisory Tracking of IT security alerts and advisory issued by SOC and threat intelligence authorities. Inform the appropriate stakeholders on the alert notifications. Track the progress of remediations by the respective teams to ensure proper closure.
Conduct Security Log Reviews Perform review of security logs in accordance to the agreed frequency. Investigate and clarify any anomaly with the respective towers. Escalate potential security incidents to project team and customers for attention. Prepare periodic log review reports.
Security Advisory and Briefing Be the point-of-contact/customer liaison to assist and advise customer for ICT security related matters. Conduct in Weekly / Monthly meeting with Customers on security related matters. Prepare the content and material relevant to the projects. Conduct information security awareness training.
Support Audit & Compliance Act as the liaison officer for the IT security reviews and audits. Collate and review information requested by auditors from respective teams. Support the auditors during audit period. Work with the team to review and respond to audit issues. Work with the team to remediate audit findings. Monitor and track the closure of audit findings.